Airline security: Getshell may affect the security of multiple hosts on the intranet due to a system vulnerability in Sichuan Airlines

Source: Internet
Author: User

Airline security: Getshell may affect the security of multiple hosts on the intranet due to a system vulnerability in Sichuan Airlines

The shell process is rugged.

Axis2 default password and can execute system commands

It was discovered that it was already done by our predecessors.

Http: // **. **: 8080/axis2/services/Cat/exec? Cmd = whoami
 


 


 


 


 

This person tried to write shell in various poses and probably did not write it.

I also tried it for a long time. I got a correct posture and wrote it down. It's complicated and bumpy.

It's so tiring to bypass and write the pony, then upload the zhongma, and then upload the big horse.
 


 


 


 


 


 

 

Solution:

Shell: http: // **. **: 8080/axis2/cxx. jsp

Password 520

Deleted files for other tests. For files or shells uploaded by the predecessors, check them by yourself.



Note:

On the C drive, a lcx.exe is uploaded. I think it was uploaded in January 1. The main function is used for port forwarding,

Forward 3389 on the Intranet to the Internet. It is suspected that it is used to facilitate penetration into the Intranet. I am not in depth, just click here.

Related Article

Contact Us

The content source of this page is from Internet, which doesn't represent Alibaba Cloud's opinion; products and services mentioned on that page don't have any relationship with Alibaba Cloud. If the content of the page makes you feel confusing, please write us an email, we will handle the problem within 5 days after receiving your email.

If you find any instances of plagiarism from the community, please send an email to: info-contact@alibabacloud.com and provide relevant evidence. A staff member will contact you within 5 working days.

A Free Trial That Lets You Build Big!

Start building with 50+ products and up to 12 months usage for Elastic Compute Service

  • Sales Support

    1 on 1 presale consultation

  • After-Sales Support

    24/7 Technical Support 6 Free Tickets per Quarter Faster Response

  • Alibaba Cloud offers highly flexible support services tailored to meet your exact needs.