Advertisement
Guest User

Untitled

a guest
Dec 28th, 2018
413
0
Never
Not a member of Pastebin yet? Sign Up, it unlocks many cool features!
text 51.11 KB | None | 0 0
  1. =================================================================================================
  2. LINUX PRIVILEGE ESCALATION CHECKER
  3. =================================================================================================
  4.  
  5. [*] GETTING BASIC SYSTEM INFO...
  6.  
  7. [+] Kernel
  8. Linux version 3.10.0-327.4.5.el7.x86_64 SMP Mon Jan 25 22:07:14 UTC 2016
  9.  
  10. [+] Hostname
  11. EXAMPLEBOX.XMPL
  12.  
  13. [+] Operating System
  14. \S
  15. Kernel \r on an \m
  16.  
  17. [*] GETTING NETWORKING INFO...
  18.  
  19. [+] Interfaces
  20. ens32: flags=4163<UP,BROADCAST,RUNNING,MULTICAST> mtu 1500
  21. inet 10.11.1.200 netmask 255.255.0.0 broadcast 10.11.255.255
  22. inet6 fe80::250:56ff:fe89:3451 prefixlen 64 scopeid 0x20<link>
  23. ether 00:50:56:81:32:56 txqueuelen 1000 (Ethernet)
  24. RX packets 1622627 bytes 342732579 (326.8 MiB)
  25. RX errors 0 dropped 598 overruns 0 frame 0
  26. TX packets 1159564 bytes 551644827 (526.0 MiB)
  27. TX errors 0 dropped 0 overruns 0 carrier 0 collisions 0
  28. lo: flags=73<UP,LOOPBACK,RUNNING> mtu 65536
  29. inet 127.0.0.1 netmask 255.0.0.0
  30. inet6 ::1 prefixlen 128 scopeid 0x10<host>
  31. loop txqueuelen 0 (Local Loopback)
  32. RX packets 8820329 bytes 1362136783 (1.2 GiB)
  33. RX errors 0 dropped 0 overruns 0 frame 0
  34. TX packets 8820329 bytes 1362136783 (1.2 GiB)
  35. TX errors 0 dropped 0 overruns 0 carrier 0 collisions 0
  36.  
  37. [+] Netstat
  38. Active Internet connections (servers and established)
  39. Proto Recv-Q Send-Q Local Address Foreign Address State PID/Program name
  40. tcp 0 0 0.0.0.0:3306 0.0.0.0:* LISTEN -
  41. tcp 0 0 0.0.0.0:80 0.0.0.0:* LISTEN -
  42. tcp 0 0 0.0.0.0:22 0.0.0.0:* LISTEN -
  43. tcp 0 0 127.0.0.1:25 0.0.0.0:* LISTEN -
  44. tcp 0 0 127.0.0.1:49066 127.0.0.1:3306 ESTABLISHED -
  45. tcp 0 0 127.0.0.1:3306 127.0.0.1:49056 ESTABLISHED -
  46. tcp 0 0 127.0.0.1:49340 127.0.0.1:3306 ESTABLISHED -
  47. tcp 0 0 10.11.1.200:44718 10.11.0.121:443 ESTABLISHED 7099/python
  48. tcp 0 0 10.11.1.200:44694 10.11.0.121:443 CLOSE_WAIT 7052/python
  49. tcp 0 0 127.0.0.1:3306 127.0.0.1:49058 ESTABLISHED -
  50. tcp 0 0 127.0.0.1:49342 127.0.0.1:3306 ESTABLISHED -
  51. tcp 0 0 127.0.0.1:49052 127.0.0.1:3306 ESTABLISHED 7098/sh
  52. tcp 0 0 127.0.0.1:49054 127.0.0.1:3306 ESTABLISHED 7051/sh
  53. tcp6 0 0 :::80 :::* LISTEN -
  54. tcp6 0 0 :::8080 :::* LISTEN -
  55. tcp6 0 0 :::22 :::* LISTEN -
  56. tcp6 0 0 ::1:25 :::* LISTEN -
  57. tcp6 1 0 127.0.0.1:8080 127.0.0.1:38815 CLOSE_WAIT -
  58. tcp6 1 0 127.0.0.1:8080 127.0.0.1:38791 CLOSE_WAIT -
  59.  
  60. [+] Route
  61. Kernel IP routing table
  62. Destination Gateway Genmask Flags Metric Ref Use Iface
  63. default master.thinc.lo 0.0.0.0 UG 100 0 0 ens32
  64. 10.11.0.0 0.0.0.0 255.255.0.0 U 100 0 0 ens32
  65.  
  66. [*] GETTING FILESYSTEM INFO...
  67.  
  68. [+] Mount results
  69. /dev/mapper/centos-root on / type xfs (rw,relatime,attr2,inode64,noquota)
  70. devtmpfs on /dev type devtmpfs (rw,nosuid,size=498384k,nr_inodes=124596,mode=755)
  71. tmpfs on /dev/shm type tmpfs (rw,nosuid,nodev)
  72. devpts on /dev/pts type devpts (rw,nosuid,noexec,relatime,gid=5,mode=620,ptmxmode=000)
  73. mqueue on /dev/mqueue type mqueue (rw,relatime)
  74. hugetlbfs on /dev/hugepages type hugetlbfs (rw,relatime)
  75. proc on /proc type proc (rw,nosuid,nodev,noexec,relatime)
  76. systemd-1 on /proc/sys/fs/binfmt_misc type autofs (rw,relatime,fd=34,pgrp=1,timeout=300,minproto=5,maxproto=5,direct)
  77. sysfs on /sys type sysfs (rw,nosuid,nodev,noexec,relatime)
  78. securityfs on /sys/kernel/security type securityfs (rw,nosuid,nodev,noexec,relatime)
  79. tmpfs on /sys/fs/cgroup type tmpfs (ro,nosuid,nodev,noexec,mode=755)
  80. cgroup on /sys/fs/cgroup/systemd type cgroup (rw,nosuid,nodev,noexec,relatime,xattr,release_agent=/usr/lib/systemd/systemd-cgroups-agent,name=systemd)
  81. cgroup on /sys/fs/cgroup/freezer type cgroup (rw,nosuid,nodev,noexec,relatime,freezer)
  82. cgroup on /sys/fs/cgroup/cpu,cpuacct type cgroup (rw,nosuid,nodev,noexec,relatime,cpuacct,cpu)
  83. cgroup on /sys/fs/cgroup/perf_event type cgroup (rw,nosuid,nodev,noexec,relatime,perf_event)
  84. cgroup on /sys/fs/cgroup/memory type cgroup (rw,nosuid,nodev,noexec,relatime,memory)
  85. cgroup on /sys/fs/cgroup/hugetlb type cgroup (rw,nosuid,nodev,noexec,relatime,hugetlb)
  86. cgroup on /sys/fs/cgroup/devices type cgroup (rw,nosuid,nodev,noexec,relatime,devices)
  87. cgroup on /sys/fs/cgroup/blkio type cgroup (rw,nosuid,nodev,noexec,relatime,blkio)
  88. cgroup on /sys/fs/cgroup/cpuset type cgroup (rw,nosuid,nodev,noexec,relatime,cpuset)
  89. cgroup on /sys/fs/cgroup/net_cls type cgroup (rw,nosuid,nodev,noexec,relatime,net_cls)
  90. pstore on /sys/fs/pstore type pstore (rw,nosuid,nodev,noexec,relatime)
  91. configfs on /sys/kernel/config type configfs (rw,relatime)
  92. debugfs on /sys/kernel/debug type debugfs (rw,relatime)
  93. tmpfs on /run type tmpfs (rw,nosuid,nodev,mode=755)
  94. /dev/sda1 on /boot type xfs (rw,relatime,attr2,inode64,noquota)
  95. /dev/mapper/centos-root on /tmp type xfs (rw,relatime,attr2,inode64,noquota)
  96. /dev/mapper/centos-root on /var/tmp type xfs (rw,relatime,attr2,inode64,noquota)
  97. tmpfs on /run/user/1004 type tmpfs (rw,nosuid,nodev,relatime,size=101720k,mode=700,uid=1004,gid=1004)
  98.  
  99. [+] fstab entries
  100. #
  101. # /etc/fstab
  102. # Created by anaconda on Fri Feb 5 02:24:38 2016
  103. #
  104. # Accessible filesystems, by reference, are maintained under '/dev/disk'
  105. # See man pages fstab(5), findfs(8), mount(8) and/or blkid(8) for more info
  106. #
  107. /dev/mapper/centos-root / xfs defaults 0 0
  108. UUID=2c61a40f-03ff-4807-94e6-394a9f730b25 /boot xfs defaults 0 0
  109. /dev/mapper/centos-swap swap swap defaults 0 0
  110.  
  111. [+] Scheduled cron jobs
  112. -rw-------. 1 root root 0 Jul 27 2015 /etc/cron.deny
  113. -rw-r--r--. 1 root root 451 Jun 9 2014 /etc/crontab
  114. /etc/cron.d:
  115. total 16
  116. drwxr-xr-x. 2 root root 20 Feb 5 2016 .
  117. drwxr-xr-x. 80 root root 8192 May 8 2016 ..
  118. -rw-r--r--. 1 root root 128 Jul 27 2015 0hourly
  119. -rwxrwxrwx. 1 root root 128 Jul 27 2015 backup.sh
  120. -rwxr-xr-x. 1 root root 128 Jul 27 2015 logbackup.py
  121. /etc/cron.daily:
  122. total 24
  123. drwxr-xr-x. 2 root root 62 Feb 5 2016 .
  124. drwxr-xr-x. 80 root root 8192 May 8 2016 ..
  125. -rwxr-xr-x. 1 root root 332 Dec 3 2015 0yum-daily.cron
  126. -rwx------. 1 root root 180 Jul 31 2013 logrotate
  127. -rwxr-xr-x. 1 root root 618 Mar 17 2014 man-db.cron
  128. /etc/cron.hourly:
  129. total 20
  130. drwxr-xr-x. 2 root root 44 Feb 5 2016 .
  131. drwxr-xr-x. 80 root root 8192 May 8 2016 ..
  132. -rwxr-xr-x. 1 root root 392 Jul 27 2015 0anacron
  133. -rwxr-xr-x. 1 root root 362 Dec 3 2015 0yum-hourly.cron
  134. /etc/cron.monthly:
  135. total 12
  136. drwxr-xr-x. 2 root root 6 Jun 9 2014 .
  137. drwxr-xr-x. 80 root root 8192 May 8 2016 ..
  138. /etc/cron.weekly:
  139. total 12
  140. drwxr-xr-x. 2 root root 6 Jun 9 2014 .
  141. drwxr-xr-x. 80 root root 8192 May 8 2016 ..
  142.  
  143. [+] Writable cron dirs
  144.  
  145.  
  146. [*] ENUMERATING USER AND ENVIRONMENTAL INFO...
  147.  
  148. [+] Logged in User Activity
  149. 02:34:05 up 1 day, 5 min, 0 users, load average: 0.00, 0.03, 0.10
  150. USER TTY FROM LOGIN@ IDLE JCPU PCPU WHAT
  151.  
  152. [+] Super Users Found:
  153. root
  154.  
  155. [+] Environment
  156. PATH=/usr/local/sbin:/usr/local/bin:/usr/sbin:/usr/bin
  157. LC_MESSAGES=POSIX
  158. _=/usr/bin/env
  159. PWD=/dev/shm
  160. LANG=C
  161. NOTIFY_SOCKET=/run/systemd/notify
  162. SHLVL=4
  163.  
  164. [+] Root and current user history (depends on privs)
  165.  
  166. [+] Sudoers (privileged)
  167.  
  168. [+] All users
  169. root:x:0:0:root:/root:/bin/bash
  170. bin:x:1:1:bin:/bin:/sbin/nologin
  171. daemon:x:2:2:daemon:/sbin:/sbin/nologin
  172. adm:x:3:4:adm:/var/adm:/sbin/nologin
  173. lp:x:4:7:lp:/var/spool/lpd:/sbin/nologin
  174. sync:x:5:0:sync:/sbin:/bin/sync
  175. shutdown:x:6:0:shutdown:/sbin:/sbin/shutdown
  176. halt:x:7:0:halt:/sbin:/sbin/halt
  177. mail:x:8:12:mail:/var/spool/mail:/sbin/nologin
  178. operator:x:11:0:operator:/root:/sbin/nologin
  179. games:x:12:100:games:/usr/games:/sbin/nologin
  180. ftp:x:14:50:FTP User:/var/ftp:/sbin/nologin
  181. nobody:x:99:99:Nobody:/:/sbin/nologin
  182. avahi-autoipd:x:170:170:Avahi IPv4LL Stack:/var/lib/avahi-autoipd:/sbin/nologin
  183. dbus:x:81:81:System message bus:/:/sbin/nologin
  184. polkitd:x:999:998:User for polkitd:/:/sbin/nologin
  185. tss:x:59:59:Account used by the trousers package to sandbox the tcsd daemon:/dev/null:/sbin/nologin
  186. postfix:x:89:89::/var/spool/postfix:/sbin/nologin
  187. sshd:x:74:74:Privilege-separated SSH:/var/empty/sshd:/sbin/nologin
  188. jerry:x:1003:1003:jerry:/var/jerry:/bin/bash
  189. systemd-bus-proxy:x:998:996:systemd Bus Proxy:/:/sbin/nologin
  190. systemd-network:x:997:995:systemd Network Management:/:/sbin/nologin
  191. apache:x:48:48:Apache:/usr/share/httpd:/sbin/nologin
  192. mysql:x:27:27:MariaDB Server:/var/lib/mysql:/sbin/nologin
  193. otrs:x:1004:1004:OTRS user:/opt/otrs/:/bin/bash
  194. nginx:x:996:993:Nginx web server:/var/lib/nginx:/sbin/nologin
  195.  
  196. [+] Current User
  197. apache
  198.  
  199. [+] Current User ID
  200. uid=48(apache) gid=48(apache) groups=48(apache)
  201.  
  202. [*] ENUMERATING FILE AND DIRECTORY PERMISSIONS/CONTENTS...
  203.  
  204. [+] World Writeable Directories for User/Group 'Root'
  205. drwxrwxrwt 2 root root 40 May 8 2016 /dev/mqueue
  206. drwxrwxrwt 2 root root 120 Apr 3 02:34 /dev/shm
  207. drwxrwxrwt 0 root root 6 May 8 2016 /tmp
  208. drwxrwxrwt 2 root root 6 Apr 2 03:34 /var/tmp
  209.  
  210. [+] World Writeable Directories for Users other than Root
  211.  
  212. [+] World Writable Files
  213. --w--w--w- 1 root root 0 May 8 2016 /sys/fs/cgroup/net_cls/cgroup.event_control
  214. --w--w--w- 1 root root 0 May 8 2016 /sys/fs/cgroup/cpuset/cgroup.event_control
  215. --w--w--w- 1 root root 0 May 8 2016 /sys/fs/cgroup/blkio/cgroup.event_control
  216. --w--w--w- 1 root root 0 May 8 2016 /sys/fs/cgroup/devices/cgroup.event_control
  217. --w--w--w- 1 root root 0 May 8 2016 /sys/fs/cgroup/hugetlb/cgroup.event_control
  218. --w--w--w- 1 root root 0 May 8 2016 /sys/fs/cgroup/memory/cgroup.event_control
  219. --w--w--w- 1 root root 0 May 8 2016 /sys/fs/cgroup/perf_event/cgroup.event_control
  220. --w--w--w- 1 root root 0 May 8 2016 /sys/fs/cgroup/cpu,cpuacct/cgroup.event_control
  221. --w--w--w- 1 root root 0 May 8 2016 /sys/fs/cgroup/freezer/cgroup.event_control
  222. --w--w--w- 1 root root 0 Apr 2 02:30 /sys/fs/cgroup/systemd/user.slice/user-1004.slice/session-2.scope/cgroup.event_control
  223. --w--w--w- 1 root root 0 Apr 2 02:30 /sys/fs/cgroup/systemd/user.slice/user-1004.slice/cgroup.event_control
  224. --w--w--w- 1 root root 0 May 8 2016 /sys/fs/cgroup/systemd/user.slice/cgroup.event_control
  225. --w--w--w- 1 root root 0 Apr 3 02:34 /sys/fs/cgroup/systemd/system.slice/proc-sys-fs-binfmt_misc.mount/cgroup.event_control
  226. --w--w--w- 1 root root 0 Apr 2 02:43 /sys/fs/cgroup/systemd/system.slice/run-user-1004.mount/cgroup.event_control
  227. --w--w--w- 1 root root 0 May 8 2016 /sys/fs/cgroup/systemd/system.slice/network.service/cgroup.event_control
  228. --w--w--w- 1 root root 0 May 8 2016 /sys/fs/cgroup/systemd/system.slice/httpd.service/cgroup.event_control
  229. --w--w--w- 1 root root 0 May 8 2016 /sys/fs/cgroup/systemd/system.slice/mariadb.service/cgroup.event_control
  230. --w--w--w- 1 root root 0 May 8 2016 /sys/fs/cgroup/systemd/system.slice/postfix.service/cgroup.event_control
  231. --w--w--w- 1 root root 0 May 8 2016 /sys/fs/cgroup/systemd/system.slice/nginx.service/cgroup.event_control
  232. --w--w--w- 1 root root 0 May 8 2016 /sys/fs/cgroup/systemd/system.slice/sshd.service/cgroup.event_control
  233. --w--w--w- 1 root root 0 May 8 2016 /sys/fs/cgroup/systemd/system.slice/tuned.service/cgroup.event_control
  234. --w--w--w- 1 root root 0 May 8 2016 /sys/fs/cgroup/systemd/system.slice/wpa_supplicant.service/cgroup.event_control
  235. --w--w--w- 1 root root 0 May 8 2016 /sys/fs/cgroup/systemd/system.slice/polkit.service/cgroup.event_control
  236. --w--w--w- 1 root root 0 May 8 2016 /sys/fs/cgroup/systemd/system.slice/rhel-dmesg.service/cgroup.event_control
  237. --w--w--w- 1 root root 0 May 8 2016 /sys/fs/cgroup/systemd/system.slice/NetworkManager.service/cgroup.event_control
  238. --w--w--w- 1 root root 0 May 8 2016 /sys/fs/cgroup/systemd/system.slice/systemd-user-sessions.service/cgroup.event_control
  239. --w--w--w- 1 root root 0 May 8 2016 /sys/fs/cgroup/systemd/system.slice/crond.service/cgroup.event_control
  240. --w--w--w- 1 root root 0 May 8 2016 /sys/fs/cgroup/systemd/system.slice/systemd-update-utmp.service/cgroup.event_control
  241. --w--w--w- 1 root root 0 May 8 2016 /sys/fs/cgroup/systemd/system.slice/systemd-logind.service/cgroup.event_control
  242. --w--w--w- 1 root root 0 May 8 2016 /sys/fs/cgroup/systemd/system.slice/dbus.service/cgroup.event_control
  243. --w--w--w- 1 root root 0 May 8 2016 /sys/fs/cgroup/systemd/system.slice/vmtoolsd.service/cgroup.event_control
  244. --w--w--w- 1 root root 0 May 8 2016 /sys/fs/cgroup/systemd/system.slice/rsyslog.service/cgroup.event_control
  245. --w--w--w- 1 root root 0 May 8 2016 /sys/fs/cgroup/systemd/system.slice/firewalld.service/cgroup.event_control
  246. --w--w--w- 1 root root 0 May 8 2016 /sys/fs/cgroup/systemd/system.slice/systemd-tmpfiles-setup.service/cgroup.event_control
  247. --w--w--w- 1 root root 0 May 8 2016 /sys/fs/cgroup/systemd/system.slice/auditd.service/cgroup.event_control
  248. --w--w--w- 1 root root 0 May 8 2016 /sys/fs/cgroup/systemd/system.slice/rhel-import-state.service/cgroup.event_control
  249. --w--w--w- 1 root root 0 May 8 2016 /sys/fs/cgroup/systemd/system.slice/lvm2-monitor.service/cgroup.event_control
  250. --w--w--w- 1 root root 0 May 8 2016 /sys/fs/cgroup/systemd/system.slice/dev-disk-by\x2duuid-054ffeaa\x2da3e0\x2d4224\x2d873a\x2d09f2f3637e32.swap/cgroup.event_control
  251. --w--w--w- 1 root root 0 May 8 2016 /sys/fs/cgroup/systemd/system.slice/dev-disk-by\x2did-dm\x2duuid\x2dLVM\x2dhRG2tGhHAcnZ4w9h1RDIoPb5G5ACnTj9x3RTERI39lAktgPYJ1cQ5CfM7scfTew4.swap/cgroup.event_control
  252. --w--w--w- 1 root root 0 May 8 2016 /sys/fs/cgroup/systemd/system.slice/dev-disk-by\x2did-dm\x2dname\x2dcentos\x2dswap.swap/cgroup.event_control
  253. --w--w--w- 1 root root 0 May 8 2016 /sys/fs/cgroup/systemd/system.slice/dev-dm\x2d1.swap/cgroup.event_control
  254. --w--w--w- 1 root root 0 May 8 2016 /sys/fs/cgroup/systemd/system.slice/dev-centos-swap.swap/cgroup.event_control
  255. --w--w--w- 1 root root 0 May 8 2016 /sys/fs/cgroup/systemd/system.slice/dev-mapper-centos\x2dswap.swap/cgroup.event_control
  256. --w--w--w- 1 root root 0 May 8 2016 /sys/fs/cgroup/systemd/system.slice/boot.mount/cgroup.event_control
  257. --w--w--w- 1 root root 0 May 8 2016 /sys/fs/cgroup/systemd/system.slice/systemd-udev-trigger.service/cgroup.event_control
  258. --w--w--w- 1 root root 0 May 8 2016 /sys/fs/cgroup/systemd/system.slice/system-lvm2\x2dpvscan.slice/cgroup.event_control
  259. --w--w--w- 1 root root 0 May 8 2016 /sys/fs/cgroup/systemd/system.slice/systemd-tmpfiles-setup-dev.service/cgroup.event_control
  260. --w--w--w- 1 root root 0 May 8 2016 /sys/fs/cgroup/systemd/system.slice/rhel-readonly.service/cgroup.event_control
  261. --w--w--w- 1 root root 0 May 8 2016 /sys/fs/cgroup/systemd/system.slice/systemd-journal-flush.service/cgroup.event_control
  262. --w--w--w- 1 root root 0 May 8 2016 /sys/fs/cgroup/systemd/system.slice/lvm2-lvmetad.service/cgroup.event_control
  263. --w--w--w- 1 root root 0 May 8 2016 /sys/fs/cgroup/systemd/system.slice/systemd-udevd.service/cgroup.event_control
  264. --w--w--w- 1 root root 0 May 8 2016 /sys/fs/cgroup/systemd/system.slice/systemd-random-seed.service/cgroup.event_control
  265. --w--w--w- 1 root root 0 May 8 2016 /sys/fs/cgroup/systemd/system.slice/systemd-remount-fs.service/cgroup.event_control
  266. --w--w--w- 1 root root 0 May 8 2016 /sys/fs/cgroup/systemd/system.slice/kmod-static-nodes.service/cgroup.event_control
  267. --w--w--w- 1 root root 0 May 8 2016 /sys/fs/cgroup/systemd/system.slice/systemd-sysctl.service/cgroup.event_control
  268. --w--w--w- 1 root root 0 May 8 2016 /sys/fs/cgroup/systemd/system.slice/systemd-vconsole-setup.service/cgroup.event_control
  269. --w--w--w- 1 root root 0 May 8 2016 /sys/fs/cgroup/systemd/system.slice/systemd-fsck-root.service/cgroup.event_control
  270. --w--w--w- 1 root root 0 May 8 2016 /sys/fs/cgroup/systemd/system.slice/sys-kernel-config.mount/cgroup.event_control
  271. --w--w--w- 1 root root 0 May 8 2016 /sys/fs/cgroup/systemd/system.slice/-.mount/cgroup.event_control
  272. --w--w--w- 1 root root 0 May 8 2016 /sys/fs/cgroup/systemd/system.slice/dev-mqueue.mount/cgroup.event_control
  273. --w--w--w- 1 root root 0 May 8 2016 /sys/fs/cgroup/systemd/system.slice/systemd-journald.service/cgroup.event_control
  274. --w--w--w- 1 root root 0 May 8 2016 /sys/fs/cgroup/systemd/system.slice/dev-hugepages.mount/cgroup.event_control
  275. --w--w--w- 1 root root 0 May 8 2016 /sys/fs/cgroup/systemd/system.slice/sys-kernel-debug.mount/cgroup.event_control
  276. --w--w--w- 1 root root 0 May 8 2016 /sys/fs/cgroup/systemd/system.slice/system-getty.slice/getty@tty1.service/cgroup.event_control
  277. --w--w--w- 1 root root 0 May 8 2016 /sys/fs/cgroup/systemd/system.slice/system-getty.slice/cgroup.event_control
  278. --w--w--w- 1 root root 0 May 8 2016 /sys/fs/cgroup/systemd/system.slice/cgroup.event_control
  279. --w--w--w- 1 root root 0 May 8 2016 /sys/fs/cgroup/systemd/cgroup.event_control
  280. -rwxrwxrwx. 1 root root 1306 Apr 3 02:30 /etc/passwd
  281. -rwxrwxrwx. 1 root root 1306 Apr 3 12:34 /etc/sudoers
  282. -rwxrwxrwx. 1 root root 1306 May 8 11:39 /tmp/logbackup.py
  283.  
  284. [+] Checking if root's home folder is accessible
  285.  
  286. [+] SUID/SGID Files and Directories
  287. drwxr-sr-x 3 root systemd-journal 60 May 8 2016 /run/log/journal
  288. drwxr-s---+ 2 root systemd-journal 100 Apr 2 21:00 /run/log/journal/c4e2ab235f34435d8f2c6b96da7807e5
  289. -r-xr-sr-x. 1 root tty 15344 Jun 10 2014 /usr/bin/wall
  290. -rwxr-sr-x. 1 root tty 19536 Nov 20 2015 /usr/bin/write
  291. -rwsr-xr-x. 1 root root 64200 Mar 6 2015 /usr/bin/chage
  292. -rwsr-xr-x. 1 root root 31960 Nov 20 2015 /usr/bin/awk
  293. -rwsr-xr-x. 1 root root 78168 Mar 6 2015 /usr/bin/gpasswd
  294. -rwsr-xr-x. 1 root root 41752 Mar 6 2015 /usr/bin/newgrp
  295. -rwsr-xr-x. 1 root root 44232 Nov 20 2015 /usr/bin/mount
  296. -rwsr-xr-x. 1 root root 31960 Nov 20 2015 /usr/bin/nmap
  297. -rws--x--x. 1 root root 23960 Nov 20 2015 /usr/bin/chfn
  298. -rws--x--x. 1 root root 23856 Nov 20 2015 /usr/bin/chsh
  299. -rwsr-xr-x. 1 root root 32072 Nov 20 2015 /usr/bin/su
  300. -rwsr-xr-x. 1 root root 31960 Nov 20 2015 /usr/bin/umount
  301. -rwsr-xr-x. 1 root root 31960 Nov 20 2015 /usr/bin/find
  302. -rwsr-xr-x. 1 root root 27656 Jun 9 2014 /usr/bin/pkexec
  303. -rwsr-xr-x. 1 root root 57544 Jul 27 2015 /usr/bin/crontab
  304. ---s--x--x. 1 root root 130720 Nov 20 2015 /usr/bin/sudo
  305. ---x--s--x. 1 root nobody 306304 Jan 14 2016 /usr/bin/ssh-agent
  306. -rwsr-xr-x. 1 root root 27832 Jun 10 2014 /usr/bin/passwd
  307. -rwsr-xr-x. 1 root root 11208 Aug 18 2015 /usr/sbin/pam_timestamp_check
  308. -rwsr-xr-x. 1 root root 36264 Aug 18 2015 /usr/sbin/unix_chkpwd
  309. -rwxr-sr-x. 1 root root 11208 Nov 20 2015 /usr/sbin/netreport
  310. -rwsr-xr-x. 1 root root 11272 Nov 20 2015 /usr/sbin/usernetctl
  311. -rwxr-sr-x. 1 root postdrop 218552 Jun 10 2014 /usr/sbin/postdrop
  312. -rwxr-sr-x. 1 root postdrop 259992 Jun 10 2014 /usr/sbin/postqueue
  313. -rwsr-xr-x. 1 root root 15416 Jun 9 2014 /usr/lib/polkit-1/polkit-agent-helper-1
  314. -r-sr-xr-x 1 root root 9532 Feb 5 2016 /usr/lib/vmware-tools/bin32/vmware-user-suid-wrapper
  315. -r-sr-xr-x 1 root root 10224 Feb 5 2016 /usr/lib/vmware-tools/bin64/vmware-user-suid-wrapper
  316. -rwsr-x---. 1 root dbus 318392 Nov 20 2015 /usr/lib64/dbus-1/dbus-daemon-launch-helper
  317. -rwx--s--x. 1 root utmp 11192 Jun 10 2014 /usr/libexec/utempter/utempter
  318. ---x--s--x. 1 root ssh_keys 461416 Jan 14 2016 /usr/libexec/openssh/ssh-keysign
  319.  
  320. [+] Logs containing keyword 'password'
  321.  
  322. [+] Config files containing keyword 'password'
  323. /etc/pki/tls/openssl.cnf:# input_password = secret
  324. /etc/pki/tls/openssl.cnf:# output_password = secret
  325. /etc/pki/tls/openssl.cnf:challengePassword = A challenge password
  326. /etc/dnsmasq.conf:#dhcp-option=encap:175, 191, pass # iSCSI password
  327. /etc/security/pwquality.conf:# Configuration for systemwide password quality limits
  328. /etc/security/pwquality.conf:# Number of characters in the new password that must not be present in the
  329. /etc/security/pwquality.conf:# old password.
  330. /etc/security/pwquality.conf:# Minimum acceptable size for the new password (plus one if
  331. /etc/security/pwquality.conf:# The maximum credit for having digits in the new password. If less than 0
  332. /etc/security/pwquality.conf:# it is the minimum number of digits in the new password.
  333. /etc/security/pwquality.conf:# The maximum credit for having uppercase characters in the new password.
  334. /etc/security/pwquality.conf:# password.
  335. /etc/security/pwquality.conf:# The maximum credit for having lowercase characters in the new password.
  336. /etc/security/pwquality.conf:# password.
  337. /etc/security/pwquality.conf:# The maximum credit for having other characters in the new password.
  338. /etc/security/pwquality.conf:# password.
  339. /etc/security/pwquality.conf:# password (digits, uppercase, lowercase, others).
  340. /etc/security/pwquality.conf:# The maximum number of allowed consecutive same characters in the new password.
  341. /etc/security/pwquality.conf:# new password.
  342. /etc/postfix/main.cf:# NOTE: if you use this feature for accounts not in the UNIX password
  343. /etc/postfix/main.cf:# NOTE: if you use this feature for accounts not in the UNIX password
  344. /etc/postfix/main.cf:# NOTE: if you use this feature for accounts not in the UNIX password
  345. /var/www/html/mainSqlDB.php:# root_password = SQLP@SS$(KL1<m!)
  346.  
  347. [+] Shadow File (Privileged)
  348.  
  349. [*] ENUMERATING PROCESSES AND APPLICATIONS...
  350.  
  351. [+] Installed Packages
  352. GeoIP-1.5.0-9.el7.x86_64
  353. NetworkManager-1.0.6-27.el7.x86_64
  354. NetworkManager-libnm-1.0.6-27.el7.x86_64
  355. NetworkManager-tui-1.0.6-27.el7.x86_64
  356. acl-2.2.51-12.el7.x86_64
  357. aic94xx-firmware-30-6.el7.noarch
  358. alsa-firmware-1.0.28-2.el7.noarch
  359. alsa-lib-1.0.28-2.el7.x86_64
  360. alsa-tools-firmware-1.0.28-2.el7.x86_64
  361. apr-1.4.8-3.el7.x86_64
  362. apr-util-1.5.2-6.el7.x86_64
  363. audit-2.4.1-5.el7.x86_64
  364. audit-libs-2.4.1-5.el7.x86_64
  365. audit-libs-python-2.4.1-5.el7.x86_64
  366. authconfig-6.2.8-10.el7.x86_64
  367. avahi-autoipd-0.6.31-15.el7.x86_64
  368. avahi-libs-0.6.31-15.el7.x86_64
  369. basesystem-10.0-7.el7.centos.noarch
  370. bash-4.2.46-19.el7.x86_64
  371. bind-libs-lite-9.9.4-29.el7_2.2.x86_64
  372. bind-license-9.9.4-29.el7_2.2.noarch
  373. binutils-2.23.52.0.1-55.el7.x86_64
  374. biosdevname-0.6.2-1.el7.x86_64
  375. btrfs-progs-3.19.1-1.el7.x86_64
  376. bzip2-1.0.6-13.el7.x86_64
  377. bzip2-libs-1.0.6-13.el7.x86_64
  378. ca-certificates-2015.2.4-71.el7.noarch
  379. centos-logos-70.0.6-3.el7.centos.noarch
  380. centos-release-7-2.1511.el7.centos.2.10.x86_64
  381. checkpolicy-2.1.12-6.el7.x86_64
  382. chkconfig-1.3.61-5.el7.x86_64
  383. coreutils-8.22-15.el7.x86_64
  384. cpio-2.11-24.el7.x86_64
  385. cracklib-2.9.0-11.el7.x86_64
  386. cracklib-dicts-2.9.0-11.el7.x86_64
  387. cronie-1.4.11-14.el7.x86_64
  388. cronie-anacron-1.4.11-14.el7.x86_64
  389. crontabs-1.11-6.20121102git.el7.noarch
  390. cryptsetup-libs-1.6.7-1.el7.x86_64
  391. curl-7.29.0-25.el7.centos.x86_64
  392. cyrus-sasl-lib-2.1.26-19.2.el7.x86_64
  393. dbus-1.6.12-13.el7.x86_64
  394. dbus-glib-0.100-7.el7.x86_64
  395. dbus-libs-1.6.12-13.el7.x86_64
  396. dbus-python-1.1.1-9.el7.x86_64
  397. device-mapper-1.02.107-5.el7.x86_64
  398. device-mapper-event-1.02.107-5.el7.x86_64
  399. device-mapper-event-libs-1.02.107-5.el7.x86_64
  400. device-mapper-libs-1.02.107-5.el7.x86_64
  401. device-mapper-persistent-data-0.5.5-1.el7.x86_64
  402. dhclient-4.2.5-42.el7.centos.x86_64
  403. dhcp-common-4.2.5-42.el7.centos.x86_64
  404. dhcp-libs-4.2.5-42.el7.centos.x86_64
  405. diffutils-3.3-4.el7.x86_64
  406. dmidecode-2.12-9.el7.x86_64
  407. dnsmasq-2.66-14.el7_1.x86_64
  408. dracut-033-360.el7_2.x86_64
  409. dracut-config-rescue-033-360.el7_2.x86_64
  410. dracut-network-033-360.el7_2.x86_64
  411. e2fsprogs-1.42.9-7.el7.x86_64
  412. e2fsprogs-libs-1.42.9-7.el7.x86_64
  413. ebtables-2.0.10-13.el7.x86_64
  414. elfutils-libelf-0.163-3.el7.x86_64
  415. elfutils-libs-0.163-3.el7.x86_64
  416. epel-release-7-5.noarch
  417. ethtool-3.15-2.el7.x86_64
  418. expat-2.1.0-8.el7.x86_64
  419. file-5.11-31.el7.x86_64
  420. file-libs-5.11-31.el7.x86_64
  421. filesystem-3.2-20.el7.x86_64
  422. findutils-4.5.11-5.el7.x86_64
  423. fipscheck-1.4.1-5.el7.x86_64
  424. fipscheck-lib-1.4.1-5.el7.x86_64
  425. firewalld-0.3.9-14.el7.noarch
  426. fontconfig-2.10.95-7.el7.x86_64
  427. fontpackages-filesystem-1.44-8.el7.noarch
  428. freetype-2.4.11-11.el7.x86_64
  429. fxload-2002_04_11-16.el7.x86_64
  430. gawk-4.0.2-4.el7.x86_64
  431. gd-2.0.35-26.el7.x86_64
  432. gdbm-1.10-8.el7.x86_64
  433. gdbm-devel-1.10-8.el7.x86_64
  434. gettext-0.18.2.1-4.el7.x86_64
  435. gettext-libs-0.18.2.1-4.el7.x86_64
  436. glib-networking-2.42.0-1.el7.x86_64
  437. glib2-2.42.2-5.el7.x86_64
  438. glibc-2.17-106.el7_2.1.x86_64
  439. glibc-common-2.17-106.el7_2.1.x86_64
  440. glibc-devel-2.17-106.el7_2.1.x86_64
  441. glibc-headers-2.17-106.el7_2.1.x86_64
  442. gmp-6.0.0-12.el7_1.x86_64
  443. gnupg2-2.0.22-3.el7.x86_64
  444. gnutls-3.3.8-14.el7_2.x86_64
  445. gobject-introspection-1.42.0-1.el7.x86_64
  446. gperftools-libs-2.4-7.el7.x86_64
  447. gpg-pubkey-352c64e5-52ae6884
  448. gpg-pubkey-f4a80eb5-53a7ff4b
  449. gpgme-1.3.2-5.el7.x86_64
  450. gpm-libs-1.20.7-5.el7.x86_64
  451. grep-2.20-2.el7.x86_64
  452. groff-base-1.22.2-8.el7.x86_64
  453. grub2-2.02-0.34.el7.centos.x86_64
  454. grub2-tools-2.02-0.34.el7.centos.x86_64
  455. grubby-8.28-17.el7.x86_64
  456. gsettings-desktop-schemas-3.14.2-1.el7.x86_64
  457. gzip-1.5-8.el7.x86_64
  458. hardlink-1.0-19.el7.x86_64
  459. hostname-3.13-3.el7.x86_64
  460. httpd-2.4.6-40.el7.centos.x86_64
  461. httpd-tools-2.4.6-40.el7.centos.x86_64
  462. hwdata-0.252-8.1.el7.x86_64
  463. info-5.1-4.el7.x86_64
  464. initscripts-9.49.30-1.el7.x86_64
  465. iproute-3.10.0-54.el7.x86_64
  466. iprutils-2.4.8-1.el7.x86_64
  467. iptables-1.4.21-16.el7.x86_64
  468. iputils-20121221-7.el7.x86_64
  469. irqbalance-1.0.7-5.el7.x86_64
  470. ivtv-firmware-20080701-26.el7.noarch
  471. iwl100-firmware-39.31.5.1-43.el7.noarch
  472. iwl1000-firmware-39.31.5.1-43.el7.noarch
  473. iwl105-firmware-18.168.6.1-43.el7.noarch
  474. iwl135-firmware-18.168.6.1-43.el7.noarch
  475. iwl2000-firmware-18.168.6.1-43.el7.noarch
  476. iwl2030-firmware-18.168.6.1-43.el7.noarch
  477. iwl3160-firmware-22.0.7.0-43.el7.noarch
  478. iwl3945-firmware-15.32.2.9-43.el7.noarch
  479. iwl4965-firmware-228.61.2.24-43.el7.noarch
  480. iwl5000-firmware-8.83.5.1_1-43.el7.noarch
  481. iwl5150-firmware-8.24.2.2-43.el7.noarch
  482. iwl6000-firmware-9.221.4.1-43.el7.noarch
  483. iwl6000g2a-firmware-17.168.5.3-43.el7.noarch
  484. iwl6000g2b-firmware-17.168.5.2-43.el7.noarch
  485. iwl6050-firmware-41.28.5.1-43.el7.noarch
  486. iwl7260-firmware-22.0.7.0-43.el7.noarch
  487. jansson-2.4-6.el7.x86_64
  488. json-c-0.11-4.el7_0.x86_64
  489. kbd-1.15.5-11.el7.x86_64
  490. kbd-legacy-1.15.5-11.el7.noarch
  491. kbd-misc-1.15.5-11.el7.noarch
  492. kernel-3.10.0-229.el7.x86_64
  493. kernel-3.10.0-327.4.5.el7.x86_64
  494. kernel-headers-3.10.0-327.4.5.el7.x86_64
  495. kernel-tools-3.10.0-327.4.5.el7.x86_64
  496. kernel-tools-libs-3.10.0-327.4.5.el7.x86_64
  497. kexec-tools-2.0.7-38.el7.x86_64
  498. keyutils-libs-1.5.8-3.el7.x86_64
  499. kmod-20-5.el7.x86_64
  500. kmod-libs-20-5.el7.x86_64
  501. kpartx-0.4.9-85.el7.x86_64
  502. krb5-libs-1.13.2-10.el7.x86_64
  503. less-458-9.el7.x86_64
  504. libICE-1.0.9-2.el7.x86_64
  505. libSM-1.2.2-2.el7.x86_64
  506. libX11-1.6.3-2.el7.x86_64
  507. libX11-common-1.6.3-2.el7.noarch
  508. libXau-1.0.8-2.1.el7.x86_64
  509. libXcursor-1.1.14-2.1.el7.x86_64
  510. libXext-1.3.3-3.el7.x86_64
  511. libXfixes-5.0.1-2.1.el7.x86_64
  512. libXi-1.7.4-2.el7.x86_64
  513. libXinerama-1.1.3-2.1.el7.x86_64
  514. libXmu-1.1.2-2.el7.x86_64
  515. libXpm-3.5.11-3.el7.x86_64
  516. libXrandr-1.4.2-2.el7.x86_64
  517. libXrender-0.9.8-2.1.el7.x86_64
  518. libXt-1.1.4-6.1.el7.x86_64
  519. libXxf86misc-1.0.3-7.1.el7.x86_64
  520. libXxf86vm-1.1.3-2.1.el7.x86_64
  521. libacl-2.2.51-12.el7.x86_64
  522. libaio-0.3.109-13.el7.x86_64
  523. libassuan-2.1.0-3.el7.x86_64
  524. libattr-2.4.46-12.el7.x86_64
  525. libblkid-2.23.2-26.el7.x86_64
  526. libcap-2.22-8.el7.x86_64
  527. libcap-ng-0.7.5-4.el7.x86_64
  528. libcgroup-0.41-8.el7.x86_64
  529. libcom_err-1.42.9-7.el7.x86_64
  530. libcroco-0.6.8-5.el7.x86_64
  531. libcurl-7.29.0-25.el7.centos.x86_64
  532. libdaemon-0.14-7.el7.x86_64
  533. libdb-5.3.21-19.el7.x86_64
  534. libdb-devel-5.3.21-19.el7.x86_64
  535. libdb-utils-5.3.21-19.el7.x86_64
  536. libdnet-1.12-13.1.el7.x86_64
  537. libdrm-2.4.60-3.el7.x86_64
  538. libedit-3.0-12.20121213cvs.el7.x86_64
  539. libestr-0.1.9-2.el7.x86_64
  540. libffi-3.0.13-16.el7.x86_64
  541. libgcc-4.8.5-4.el7.x86_64
  542. libgcrypt-1.5.3-12.el7_1.1.x86_64
  543. libgomp-4.8.5-4.el7.x86_64
  544. libgpg-error-1.12-3.el7.x86_64
  545. libgudev1-219-19.el7.x86_64
  546. libicu-50.1.2-15.el7.x86_64
  547. libidn-1.28-4.el7.x86_64
  548. libjpeg-turbo-1.2.90-5.el7.x86_64
  549. libmnl-1.0.3-7.el7.x86_64
  550. libmodman-2.0.1-8.el7.x86_64
  551. libmount-2.23.2-26.el7.x86_64
  552. libmspack-0.5-0.4.alpha.el7.x86_64
  553. libndp-1.2-4.el7.x86_64
  554. libnetfilter_conntrack-1.0.4-2.el7.x86_64
  555. libnfnetlink-1.0.1-4.el7.x86_64
  556. libnl3-3.2.21-10.el7.x86_64
  557. libnl3-cli-3.2.21-10.el7.x86_64
  558. libpcap-1.5.3-8.el7.x86_64
  559. libpciaccess-0.13.4-2.el7.x86_64
  560. libpipeline-1.2.3-3.el7.x86_64
  561. libpng-1.5.13-7.el7_2.x86_64
  562. libproxy-0.4.11-8.el7.x86_64
  563. libpwquality-1.2.3-4.el7.x86_64
  564. libselinux-2.2.2-6.el7.x86_64
  565. libselinux-python-2.2.2-6.el7.x86_64
  566. libselinux-utils-2.2.2-6.el7.x86_64
  567. libsemanage-2.1.10-18.el7.x86_64
  568. libsemanage-python-2.1.10-18.el7.x86_64
  569. libsepol-2.1.9-3.el7.x86_64
  570. libsoup-2.48.1-3.el7.x86_64
  571. libss-1.42.9-7.el7.x86_64
  572. libssh2-1.4.3-10.el7.x86_64
  573. libstdc++-4.8.5-4.el7.x86_64
  574. libsysfs-2.1.0-16.el7.x86_64
  575. libtasn1-3.8-2.el7.x86_64
  576. libteam-1.17-5.el7.x86_64
  577. libunistring-0.9.3-9.el7.x86_64
  578. libunwind-1.1-5.el7.x86_64
  579. libuser-0.60-7.el7_1.x86_64
  580. libutempter-1.1.6-4.el7.x86_64
  581. libuuid-2.23.2-26.el7.x86_64
  582. libverto-0.2.5-4.el7.x86_64
  583. libxcb-1.11-4.el7.x86_64
  584. libxml2-2.9.1-6.el7_2.2.x86_64
  585. libxslt-1.1.28-5.el7.x86_64
  586. linux-firmware-20150904-43.git6ebf5d5.el7.noarch
  587. logrotate-3.8.6-7.el7_2.x86_64
  588. lsscsi-0.27-3.el7.x86_64
  589. lua-5.1.4-14.el7.x86_64
  590. lvm2-2.02.130-5.el7.x86_64
  591. lvm2-libs-2.02.130-5.el7.x86_64
  592. lzo-2.06-8.el7.x86_64
  593. mailcap-2.1.41-2.el7.noarch
  594. make-3.82-21.el7.x86_64
  595. man-db-2.6.3-9.el7.x86_64
  596. mariadb-5.5.44-2.el7.centos.x86_64
  597. mariadb-libs-5.5.44-2.el7.centos.x86_64
  598. mariadb-server-5.5.44-2.el7.centos.x86_64
  599. microcode_ctl-2.1-12.el7.x86_64
  600. mod_perl-2.0.8-10.20140624svn1602105.el7.x86_64
  601. mozjs17-17.0.0-12.el7.x86_64
  602. ncurses-5.9-13.20130511.el7.x86_64
  603. ncurses-base-5.9-13.20130511.el7.noarch
  604. ncurses-libs-5.9-13.20130511.el7.x86_64
  605. net-tools-2.0-0.17.20131004git.el7.x86_64
  606. nettle-2.7.1-4.el7.x86_64
  607. newt-0.52.15-4.el7.x86_64
  608. newt-python-0.52.15-4.el7.x86_64
  609. nginx-1.6.3-8.el7.x86_64
  610. nginx-filesystem-1.6.3-8.el7.noarch
  611. nspr-4.10.8-2.el7_1.x86_64
  612. nss-3.19.1-19.el7_2.x86_64
  613. nss-softokn-3.16.2.3-13.el7_1.x86_64
  614. nss-softokn-freebl-3.16.2.3-13.el7_1.x86_64
  615. nss-sysinit-3.19.1-19.el7_2.x86_64
  616. nss-tools-3.19.1-19.el7_2.x86_64
  617. nss-util-3.19.1-4.el7_1.x86_64
  618. numactl-libs-2.0.9-5.el7_1.x86_64
  619. open-vm-tools-9.10.2-4.el7.x86_64
  620. openldap-2.4.40-8.el7.x86_64
  621. openssh-6.6.1p1-23.el7_2.x86_64
  622. openssh-clients-6.6.1p1-23.el7_2.x86_64
  623. openssh-server-6.6.1p1-23.el7_2.x86_64
  624. openssl-1.0.1e-51.el7_2.2.x86_64
  625. openssl-libs-1.0.1e-51.el7_2.2.x86_64
  626. os-prober-1.58-5.el7.x86_64
  627. p11-kit-0.20.7-3.el7.x86_64
  628. p11-kit-trust-0.20.7-3.el7.x86_64
  629. pam-1.1.8-12.el7_1.1.x86_64
  630. parted-3.1-23.el7.x86_64
  631. passwd-0.79-4.el7.x86_64
  632. pciutils-libs-3.2.1-4.el7.x86_64
  633. pcre-8.32-15.el7.x86_64
  634. perl-5.16.3-286.el7.x86_64
  635. perl-AppConfig-1.66-20.el7.noarch
  636. perl-Archive-Tar-1.92-2.el7.noarch
  637. perl-Archive-Zip-1.30-11.el7.noarch
  638. perl-Authen-SASL-2.15-10.el7.noarch
  639. perl-BSD-Resource-1.29.07-1.el7.x86_64
  640. perl-Business-ISBN-2.06-2.el7.noarch
  641. perl-Business-ISBN-Data-20120719.001-2.el7.noarch
  642. perl-CGI-3.63-4.el7.noarch
  643. perl-Carp-1.26-244.el7.noarch
  644. perl-Class-Mix-0.005-10.el7.noarch
  645. perl-Compress-Raw-Bzip2-2.061-3.el7.x86_64
  646. perl-Compress-Raw-Zlib-2.061-4.el7.x86_64
  647. perl-Convert-ASN1-0.26-4.el7.noarch
  648. perl-Crypt-Eksblowfish-0.009-11.el7.x86_64
  649. perl-Crypt-SSLeay-0.64-5.el7.x86_64
  650. perl-DBD-MySQL-4.023-5.el7.x86_64
  651. perl-DBD-Pg-2.19.3-4.el7.x86_64
  652. perl-DBI-1.627-4.el7.x86_64
  653. perl-Data-Dumper-2.145-3.el7.x86_64
  654. perl-Digest-1.17-245.el7.noarch
  655. perl-Digest-HMAC-1.03-5.el7.noarch
  656. perl-Digest-MD5-2.52-3.el7.x86_64
  657. perl-Digest-SHA-5.85-3.el7.x86_64
  658. perl-Encode-2.51-7.el7.x86_64
  659. perl-Encode-HanExtra-0.23-10.el7.x86_64
  660. perl-Encode-Locale-1.03-5.el7.noarch
  661. perl-Exporter-5.68-3.el7.noarch
  662. perl-ExtUtils-Install-1.58-286.el7.noarch
  663. perl-ExtUtils-MakeMaker-6.68-3.el7.noarch
  664. perl-ExtUtils-Manifest-1.61-244.el7.noarch
  665. perl-ExtUtils-ParseXS-3.18-2.el7.noarch
  666. perl-FCGI-0.74-8.el7.x86_64
  667. perl-File-Listing-6.04-7.el7.noarch
  668. perl-File-Path-2.09-2.el7.noarch
  669. perl-File-Temp-0.23.01-3.el7.noarch
  670. perl-Filter-1.49-3.el7.x86_64
  671. perl-GSSAPI-0.28-9.el7.x86_64
  672. perl-Getopt-Long-2.40-2.el7.noarch
  673. perl-HTML-Parser-3.71-4.el7.x86_64
  674. perl-HTML-Tagset-3.20-15.el7.noarch
  675. perl-HTTP-Cookies-6.01-5.el7.noarch
  676. perl-HTTP-Daemon-6.01-5.el7.noarch
  677. perl-HTTP-Date-6.02-8.el7.noarch
  678. perl-HTTP-Message-6.06-6.el7.noarch
  679. perl-HTTP-Negotiate-6.01-5.el7.noarch
  680. perl-HTTP-Tiny-0.033-3.el7.noarch
  681. perl-IO-Compress-2.061-2.el7.noarch
  682. perl-IO-HTML-1.00-2.el7.noarch
  683. perl-IO-Socket-IP-0.21-4.el7.noarch
  684. perl-IO-Socket-SSL-1.94-3.el7.noarch
  685. perl-IO-Zlib-1.10-286.el7.noarch
  686. perl-Image-Base-1.07-23.el7.noarch
  687. perl-Image-Info-1.33-3.el7.noarch
  688. perl-Image-Xbm-1.08-21.el7.noarch
  689. perl-Image-Xpm-1.09-21.el7.noarch
  690. perl-JSON-2.59-2.el7.noarch
  691. perl-JSON-XS-3.01-2.el7.x86_64
  692. perl-LDAP-0.56-3.el7.noarch
  693. perl-LWP-MediaTypes-6.02-2.el7.noarch
  694. perl-Linux-Pid-0.04-18.el7.x86_64
  695. perl-Mail-IMAPClient-3.37-1.el7.noarch
  696. perl-Net-DNS-0.72-5.el7.x86_64
  697. perl-Net-Daemon-0.48-5.el7.noarch
  698. perl-Net-HTTP-6.06-2.el7.noarch
  699. perl-Net-LibIDN-0.12-15.el7.x86_64
  700. perl-Net-SSLeay-1.55-3.el7.x86_64
  701. perl-Package-Constants-0.02-286.el7.noarch
  702. perl-Params-Classify-0.013-7.el7.x86_64
  703. perl-Parse-RecDescent-1.967009-5.el7.noarch
  704. perl-PathTools-3.40-5.el7.x86_64
  705. perl-PlRPC-0.2020-14.el7.noarch
  706. perl-Pod-Escapes-1.04-286.el7.noarch
  707. perl-Pod-POM-0.27-10.el7.noarch
  708. perl-Pod-Perldoc-3.20-4.el7.noarch
  709. perl-Pod-Simple-3.28-4.el7.noarch
  710. perl-Pod-Usage-1.63-3.el7.noarch
  711. perl-Scalar-List-Utils-1.27-248.el7.x86_64
  712. perl-Socket-2.010-3.el7.x86_64
  713. perl-Storable-2.45-3.el7.x86_64
  714. perl-Sys-Syslog-0.33-3.el7.x86_64
  715. perl-Template-Toolkit-2.24-5.el7.x86_64
  716. perl-Test-Harness-3.28-3.el7.noarch
  717. perl-Text-CSV_XS-1.00-3.el7.x86_64
  718. perl-Text-ParseWords-3.29-4.el7.noarch
  719. perl-Text-Soundex-3.04-4.el7.x86_64
  720. perl-Text-Unidecode-0.04-20.el7.noarch
  721. perl-Time-HiRes-1.9725-3.el7.x86_64
  722. perl-Time-Local-1.2300-2.el7.noarch
  723. perl-Time-Piece-1.20.1-286.el7.x86_64
  724. perl-TimeDate-2.30-2.el7.noarch
  725. perl-Types-Serialiser-1.0-1.el7.noarch
  726. perl-URI-1.60-9.el7.noarch
  727. perl-WWW-RobotRules-6.02-5.el7.noarch
  728. perl-XML-Filter-BufferText-1.01-17.el7.noarch
  729. perl-XML-LibXML-2.0018-5.el7.x86_64
  730. perl-XML-LibXSLT-1.80-4.el7.x86_64
  731. perl-XML-NamespaceSupport-1.11-10.el7.noarch
  732. perl-XML-Parser-2.41-10.el7.x86_64
  733. perl-XML-SAX-0.99-9.el7.noarch
  734. perl-XML-SAX-Base-1.08-7.el7.noarch
  735. perl-XML-SAX-Writer-0.53-4.el7.noarch
  736. perl-XML-Simple-2.20-5.el7.noarch
  737. perl-YAML-LibYAML-0.54-1.el7.x86_64
  738. perl-common-sense-3.6-4.el7.noarch
  739. perl-constant-1.27-2.el7.noarch
  740. perl-devel-5.16.3-286.el7.x86_64
  741. perl-libs-5.16.3-286.el7.x86_64
  742. perl-libwww-perl-6.05-2.el7.noarch
  743. perl-macros-5.16.3-286.el7.x86_64
  744. perl-parent-0.225-244.el7.noarch
  745. perl-podlators-2.5.1-3.el7.noarch
  746. perl-threads-1.87-4.el7.x86_64
  747. perl-threads-shared-1.43-6.el7.x86_64
  748. perl-version-0.99.07-2.el7.x86_64
  749. pinentry-0.8.1-14.el7.x86_64
  750. pkgconfig-0.27.1-4.el7.x86_64
  751. plymouth-0.8.9-0.24.20140113.el7.centos.x86_64
  752. plymouth-core-libs-0.8.9-0.24.20140113.el7.centos.x86_64
  753. plymouth-scripts-0.8.9-0.24.20140113.el7.centos.x86_64
  754. policycoreutils-2.2.5-20.el7.x86_64
  755. policycoreutils-python-2.2.5-20.el7.x86_64
  756. polkit-0.112-5.el7.x86_64
  757. polkit-pkla-compat-0.1-4.el7.x86_64
  758. popt-1.13-16.el7.x86_64
  759. postfix-2.10.1-6.el7.x86_64
  760. postgresql-libs-9.2.14-1.el7_1.x86_64
  761. ppp-2.4.5-33.el7.x86_64
  762. procps-ng-3.3.10-3.el7.x86_64
  763. pth-2.0.7-23.el7.x86_64
  764. pygobject3-base-3.14.0-3.el7.x86_64
  765. pygpgme-0.3-9.el7.x86_64
  766. pyliblzma-0.5.3-11.el7.x86_64
  767. pyparsing-1.5.6-9.el7.noarch
  768. python-2.7.5-34.el7.x86_64
  769. python-IPy-0.75-6.el7.noarch
  770. python-backports-1.0-8.el7.x86_64
  771. python-backports-ssl_match_hostname-3.4.0.2-4.el7.noarch
  772. python-configobj-4.7.2-7.el7.noarch
  773. python-decorator-3.4.0-3.el7.noarch
  774. python-iniparse-0.4-9.el7.noarch
  775. python-libs-2.7.5-34.el7.x86_64
  776. python-perf-3.10.0-327.4.5.el7.x86_64
  777. python-pycurl-7.19.0-17.el7.x86_64
  778. python-pyudev-0.15-7.el7.noarch
  779. python-setuptools-0.9.8-4.el7.noarch
  780. python-slip-0.4.0-2.el7.noarch
  781. python-slip-dbus-0.4.0-2.el7.noarch
  782. python-urlgrabber-3.10-7.el7.noarch
  783. pyxattr-0.5.1-5.el7.x86_64
  784. qrencode-libs-3.4.1-3.el7.x86_64
  785. rdma-7.2_4.1_rc6-2.el7.noarch
  786. readline-6.2-9.el7.x86_64
  787. rootfiles-8.1-11.el7.noarch
  788. rpm-4.11.3-17.el7.x86_64
  789. rpm-build-libs-4.11.3-17.el7.x86_64
  790. rpm-libs-4.11.3-17.el7.x86_64
  791. rpm-python-4.11.3-17.el7.x86_64
  792. rsyslog-7.4.7-12.el7.x86_64
  793. sed-4.2.2-5.el7.x86_64
  794. selinux-policy-3.13.1-60.el7.noarch
  795. selinux-policy-targeted-3.13.1-60.el7.noarch
  796. setools-libs-3.3.7-46.el7.x86_64
  797. setup-2.8.71-6.el7.noarch
  798. shadow-utils-4.1.5.1-18.el7.x86_64
  799. shared-mime-info-1.1-9.el7.x86_64
  800. slang-2.2.4-11.el7.x86_64
  801. snappy-1.1.0-3.el7.x86_64
  802. sqlite-3.7.17-8.el7.x86_64
  803. sudo-1.8.6p7-16.el7.x86_64
  804. systemd-219-19.el7.x86_64
  805. systemd-libs-219-19.el7.x86_64
  806. systemd-sysv-219-19.el7.x86_64
  807. systemtap-sdt-devel-2.8-10.el7.x86_64
  808. sysvinit-tools-2.88-14.dsf.el7.x86_64
  809. tar-1.26-29.el7.x86_64
  810. tcp_wrappers-libs-7.6-77.el7.x86_64
  811. teamd-1.17-5.el7.x86_64
  812. trousers-0.3.13-1.el7.x86_64
  813. tuned-2.5.1-4.el7_2.1.noarch
  814. tzdata-2015g-1.el7.noarch
  815. ustr-1.0.4-16.el7.x86_64
  816. util-linux-2.23.2-26.el7.x86_64
  817. vim-common-7.4.160-1.el7.x86_64
  818. vim-enhanced-7.4.160-1.el7.x86_64
  819. vim-filesystem-7.4.160-1.el7.x86_64
  820. vim-minimal-7.4.160-1.el7.x86_64
  821. virt-what-1.13-6.el7.x86_64
  822. wget-1.14-10.el7_0.1.x86_64
  823. which-2.20-7.el7.x86_64
  824. wpa_supplicant-2.0-17.el7_1.x86_64
  825. xfsprogs-3.2.2-2.el7.x86_64
  826. xorg-x11-server-utils-7.7-14.el7.x86_64
  827. xz-5.1.2-12alpha.el7.x86_64
  828. xz-libs-5.1.2-12alpha.el7.x86_64
  829. yum-3.4.3-132.el7.centos.0.1.noarch
  830. yum-metadata-parser-1.1.4-10.el7.x86_64
  831. yum-plugin-fastestmirror-1.1.31-34.el7.noarch
  832. zlib-1.2.7-15.el7.x86_64
  833.  
  834. [+] Current processes
  835. USER PID START TIME COMMAND
  836. root 1 Apr02 0:05 /usr/lib/systemd/systemd
  837. root 2 Apr02 0:00 [kthreadd]
  838. root 3 Apr02 0:01 [ksoftirqd/0]
  839. root 5 Apr02 0:00 [kworker/0:0H]
  840. root 7 Apr02 0:00 [migration/0]
  841. root 8 Apr02 0:00 [rcu_bh]
  842. root 9 Apr02 0:00 [rcuob/0]
  843. root 10 Apr02 0:11 [rcu_sched]
  844. root 11 Apr02 0:14 [rcuos/0]
  845. root 12 Apr02 0:01 [watchdog/0]
  846. root 13 Apr02 0:00 [khelper]
  847. root 14 Apr02 0:00 [kdevtmpfs]
  848. root 15 Apr02 0:00 [netns]
  849. root 16 Apr02 0:00 [perf]
  850. root 17 Apr02 0:00 [writeback]
  851. root 18 Apr02 0:00 [kintegrityd]
  852. root 19 Apr02 0:00 [bioset]
  853. root 20 Apr02 0:00 [kblockd]
  854. root 21 Apr02 0:00 [md]
  855. root 26 Apr02 0:00 [khungtaskd]
  856. root 27 Apr02 0:07 [kswapd0]
  857. root 28 Apr02 0:00 [ksmd]
  858. root 29 Apr02 0:00 [khugepaged]
  859. root 30 Apr02 0:00 [fsnotify_mark]
  860. root 31 Apr02 0:00 [crypto]
  861. root 39 Apr02 0:00 [kthrotld]
  862. root 41 Apr02 0:00 [kmpath_rdacd]
  863. root 42 Apr02 0:00 [kpsmoused]
  864. root 44 Apr02 0:00 [ipv6_addrconf]
  865. root 63 Apr02 0:00 [deferwq]
  866. root 93 Apr02 0:00 [kauditd]
  867. root 259 Apr02 0:00 [ata_sff]
  868. root 260 Apr02 0:00 [mpt_poll_0]
  869. root 263 Apr02 0:00 [mpt/0]
  870. root 265 Apr02 0:00 [events_power_ef]
  871. root 274 Apr02 0:00 [scsi_eh_0]
  872. root 276 Apr02 0:00 [scsi_tmf_0]
  873. root 281 Apr02 0:00 [scsi_eh_1]
  874. root 284 Apr02 0:00 [scsi_tmf_1]
  875. root 286 Apr02 0:00 [scsi_eh_2]
  876. root 287 Apr02 0:00 [scsi_tmf_2]
  877. root 289 Apr02 0:00 [ttm_swap]
  878. root 358 Apr02 0:00 [kdmflush]
  879. root 359 Apr02 0:00 [bioset]
  880. root 368 Apr02 0:00 [kdmflush]
  881. root 369 Apr02 0:00 [bioset]
  882. root 384 Apr02 0:00 [xfsalloc]
  883. root 385 Apr02 0:00 [xfs_mru_cache]
  884. root 386 Apr02 0:00 [xfs-buf/dm-0]
  885. root 387 Apr02 0:00 [xfs-data/dm-0]
  886. root 388 Apr02 0:00 [xfs-conv/dm-0]
  887. root 389 Apr02 0:00 [xfs-cil/dm-0]
  888. root 390 Apr02 0:28 [xfsaild/dm-0]
  889. root 460 Apr02 0:02 /usr/lib/systemd/systemd-journald
  890. root 482 Apr02 0:00 /usr/lib/systemd/systemd-udevd
  891. root 483 Apr02 0:00 /usr/sbin/lvmetad
  892. root 553 Apr02 0:00 [xfs-buf/sda1]
  893. root 554 Apr02 0:00 [xfs-data/sda1]
  894. root 556 Apr02 0:00 [xfs-conv/sda1]
  895. root 558 Apr02 0:00 [xfs-cil/sda1]
  896. root 559 Apr02 0:00 [xfsaild/sda1]
  897. root 568 Apr02 0:00 /sbin/auditd
  898. root 592 Apr02 0:00 /usr/bin/python
  899. root 594 Apr02 0:00 /usr/sbin/rsyslogd
  900. root 596 Apr02 0:55 /usr/bin/vmtoolsd
  901. dbus 597 Apr02 0:02 /bin/dbus-daemon
  902. root 603 Apr02 0:01 /usr/lib/systemd/systemd-logind
  903. root 608 Apr02 0:00 /usr/sbin/crond
  904. root 611 Apr02 0:00 /sbin/agetty
  905. root 631 Apr02 0:01 [kworker/0:1H]
  906. root 679 Apr02 0:01 /usr/sbin/NetworkManager
  907. polkitd 756 Apr02 0:00 /usr/lib/polkit-1/polkitd
  908. root 757 Apr02 0:00 /usr/sbin/wpa_supplicant
  909. root 1192 Apr02 0:08 /usr/bin/python
  910. root 1194 Apr02 0:00 /usr/sbin/sshd
  911. root 1199 Apr02 0:04 /usr/sbin/httpd
  912. mysql 1266 Apr02 0:00 /bin/sh
  913. root 1349 Apr02 0:00 nginx:
  914. nginx 1354 Apr02 2:10 nginx:
  915. mysql 1689 Apr02 1:29 /usr/libexec/mysqld
  916. root 1814 Apr02 0:00 /usr/libexec/postfix/master
  917. postfix 2049 Apr02 0:00 qmgr
  918. root 2644 Apr02 0:00 /usr/sbin/CROND
  919. otrs 2646 Apr02 0:00 [sh]
  920. otrs 2652 Apr02 1:03 /usr/bin/perl
  921. root 4813 Apr02 0:01 [kworker/u2:0]
  922. root 6041 Apr02 0:03 [kworker/0:0]
  923. postfix 6787 01:25 0:00 pickup
  924. apache 6901 01:34 0:16 /usr/sbin/httpd
  925. apache 6902 01:34 0:05 /opt/otrs/bin/c
  926. apache 6903 01:34 0:08 /usr/sbin/httpd
  927. apache 6904 01:34 0:09 /usr/sbin/httpd
  928. apache 6906 01:34 0:03 /usr/sbin/httpd
  929. apache 6907 01:34 0:02 /usr/sbin/httpd
  930. apache 6909 01:34 0:04 /usr/sbin/httpd
  931. apache 6910 01:34 0:06 /usr/sbin/httpd
  932. apache 6911 01:34 0:05 /opt/otrs/bin/c
  933. root 7050 02:12 0:00 [kworker/u2:2]
  934. apache 7051 02:12 0:00 sh
  935. apache 7052 02:12 0:00 /usr/bin/python
  936. apache 7053 02:12 0:00 /bin/sh
  937. root 7094 02:25 0:00 [kworker/0:1]
  938. apache 7096 02:27 0:00 python
  939. apache 7097 02:27 0:00 /bin/sh
  940. apache 7098 02:28 0:00 sh
  941. apache 7099 02:28 0:00 /usr/bin/python
  942. apache 7100 02:28 0:00 /bin/sh
  943. otrs 7122 02:30 0:00 /usr/bin/perl
  944. root 7127 02:30 0:00 [kworker/0:2]
  945. otrs 7128 02:30 0:00 /usr/bin/perl
  946. apache 7131 02:30 0:00 python
  947. apache 7132 02:30 0:00 /bin/sh
  948. otrs 7134 02:31 0:00 /usr/bin/perl
  949. otrs 7141 02:33 0:00 /usr/bin/perl
  950. apache 7149 02:34 0:00 python
  951. apache 8473 02:34 0:00 /bin/sh
  952. apache 8474 02:34 0:00 ps
  953. apache 8475 02:34 0:00 awk
  954.  
  955. [+] Apache Version and Modules
  956. Server version: Apache/2.4.6 (CentOS)
  957. Server built: Nov 19 2015 21:43:13
  958. Compiled in modules:
  959. core.c
  960. mod_so.c
  961. http_core.c
  962.  
  963. [+] Apache Config File
  964.  
  965. [+] Sudo Version (Check out http://www.exploit-db.com/search/?action=search&filter_page=1&filter_description=sudo)
  966. Sudo version 1.8.6p7
  967. Sudoers policy plugin version 1.8.6p7
  968. Sudoers file grammar version 42
  969. Sudoers I/O plugin version 1.8.6p7
  970.  
  971. [*] IDENTIFYING PROCESSES AND PACKAGES RUNNING AS ROOT OR OTHER SUPERUSER...
  972.  
  973. root 18 Apr02 0:00 [kintegrityd]
  974. root 16 Apr02 0:00 [perf]
  975. root 28 Apr02 0:00 [ksmd]
  976. root 3 Apr02 0:01 [ksoftirqd/0]
  977. root 1814 Apr02 0:00 /usr/libexec/postfix/master
  978. root 14 Apr02 0:00 [kdevtmpfs]
  979. root 15 Apr02 0:00 [netns]
  980. root 259 Apr02 0:00 [ata_sff]
  981. root 368 Apr02 0:00 [kdmflush]
  982. root 594 Apr02 0:00 /usr/sbin/rsyslogd
  983. root 359 Apr02 0:00 [bioset]
  984. root 556 Apr02 0:00 [xfs-conv/sda1]
  985. root 5 Apr02 0:00 [kworker/0:0H]
  986. root 41 Apr02 0:00 [kmpath_rdacd]
  987. root 2 Apr02 0:00 [kthreadd]
  988. root 1349 Apr02 0:00 nginx:
  989. root 568 Apr02 0:00 /sbin/auditd
  990. root 386 Apr02 0:00 [xfs-buf/dm-0]
  991. root 596 Apr02 0:55 /usr/bin/vmtoolsd
  992. root 757 Apr02 0:00 /usr/sbin/wpa_supplicant
  993. Possible Related Packages:
  994. wpa_supplicant-2.0-17.el7_1.x86_64
  995. root 1194 Apr02 0:00 /usr/sbin/sshd
  996. root 265 Apr02 0:00 [events_power_ef]
  997. root 26 Apr02 0:00 [khungtaskd]
  998. root 482 Apr02 0:00 /usr/lib/systemd/systemd-udevd
  999. root 387 Apr02 0:00 [xfs-data/dm-0]
  1000. root 1 Apr02 0:05 /usr/lib/systemd/systemd
  1001. Possible Related Packages:
  1002. systemd-219-19.el7.x86_64
  1003. systemd-libs-219-19.el7.x86_64
  1004. systemd-sysv-219-19.el7.x86_64
  1005. root 7127 02:30 0:00 [kworker/0:2]
  1006. root 42 Apr02 0:00 [kpsmoused]
  1007. root 611 Apr02 0:00 /sbin/agetty
  1008. root 39 Apr02 0:00 [kthrotld]
  1009. root 17 Apr02 0:00 [writeback]
  1010. root 21 Apr02 0:00 [md]
  1011. root 390 Apr02 0:28 [xfsaild/dm-0]
  1012. root 263 Apr02 0:00 [mpt/0]
  1013. root 6041 Apr02 0:03 [kworker/0:0]
  1014. root 1192 Apr02 0:08 /usr/bin/python
  1015. Possible Related Packages:
  1016. audit-libs-python-2.4.1-5.el7.x86_64
  1017. dbus-python-1.1.1-9.el7.x86_64
  1018. libselinux-python-2.2.2-6.el7.x86_64
  1019. libsemanage-python-2.1.10-18.el7.x86_64
  1020. newt-python-0.52.15-4.el7.x86_64
  1021. policycoreutils-python-2.2.5-20.el7.x86_64
  1022. python-2.7.5-34.el7.x86_64
  1023. python-IPy-0.75-6.el7.noarch
  1024. python-backports-1.0-8.el7.x86_64
  1025. python-backports-ssl_match_hostname-3.4.0.2-4.el7.noarch
  1026. python-configobj-4.7.2-7.el7.noarch
  1027. python-decorator-3.4.0-3.el7.noarch
  1028. python-iniparse-0.4-9.el7.noarch
  1029. python-libs-2.7.5-34.el7.x86_64
  1030. python-perf-3.10.0-327.4.5.el7.x86_64
  1031. python-pycurl-7.19.0-17.el7.x86_64
  1032. python-pyudev-0.15-7.el7.noarch
  1033. python-setuptools-0.9.8-4.el7.noarch
  1034. python-slip-0.4.0-2.el7.noarch
  1035. python-slip-dbus-0.4.0-2.el7.noarch
  1036. python-urlgrabber-3.10-7.el7.noarch
  1037. rpm-python-4.11.3-17.el7.x86_64
  1038. root 44 Apr02 0:00 [ipv6_addrconf]
  1039. root 9 Apr02 0:00 [rcuob/0]
  1040. root 554 Apr02 0:00 [xfs-data/sda1]
  1041. root 27 Apr02 0:07 [kswapd0]
  1042. root 13 Apr02 0:00 [khelper]
  1043. root 63 Apr02 0:00 [deferwq]
  1044. root 388 Apr02 0:00 [xfs-conv/dm-0]
  1045. root 631 Apr02 0:01 [kworker/0:1H]
  1046. root 19 Apr02 0:00 [bioset]
  1047. root 11 Apr02 0:14 [rcuos/0]
  1048. root 1199 Apr02 0:04 /usr/sbin/httpd
  1049. Possible Related Packages:
  1050. httpd-2.4.6-40.el7.centos.x86_64
  1051. httpd-tools-2.4.6-40.el7.centos.x86_64
  1052. root 7094 02:25 0:00 [kworker/0:1]
  1053. root 260 Apr02 0:00 [mpt_poll_0]
  1054. root 553 Apr02 0:00 [xfs-buf/sda1]
  1055. root 30 Apr02 0:00 [fsnotify_mark]
  1056. root 483 Apr02 0:00 /usr/sbin/lvmetad
  1057. root 276 Apr02 0:00 [scsi_tmf_0]
  1058. root 7050 02:12 0:00 [kworker/u2:2]
  1059. root 358 Apr02 0:00 [kdmflush]
  1060. root 679 Apr02 0:01 /usr/sbin/NetworkManager
  1061. Possible Related Packages:
  1062. NetworkManager-1.0.6-27.el7.x86_64
  1063. NetworkManager-libnm-1.0.6-27.el7.x86_64
  1064. NetworkManager-tui-1.0.6-27.el7.x86_64
  1065. root 460 Apr02 0:02 /usr/lib/systemd/systemd-journald
  1066. root 592 Apr02 0:00 /usr/bin/python
  1067. Possible Related Packages:
  1068. audit-libs-python-2.4.1-5.el7.x86_64
  1069. dbus-python-1.1.1-9.el7.x86_64
  1070. libselinux-python-2.2.2-6.el7.x86_64
  1071. libsemanage-python-2.1.10-18.el7.x86_64
  1072. newt-python-0.52.15-4.el7.x86_64
  1073. policycoreutils-python-2.2.5-20.el7.x86_64
  1074. python-2.7.5-34.el7.x86_64
  1075. python-IPy-0.75-6.el7.noarch
  1076. python-backports-1.0-8.el7.x86_64
  1077. python-backports-ssl_match_hostname-3.4.0.2-4.el7.noarch
  1078. python-configobj-4.7.2-7.el7.noarch
  1079. python-decorator-3.4.0-3.el7.noarch
  1080. python-iniparse-0.4-9.el7.noarch
  1081. python-libs-2.7.5-34.el7.x86_64
  1082. python-perf-3.10.0-327.4.5.el7.x86_64
  1083. python-pycurl-7.19.0-17.el7.x86_64
  1084. python-pyudev-0.15-7.el7.noarch
  1085. python-setuptools-0.9.8-4.el7.noarch
  1086. python-slip-0.4.0-2.el7.noarch
  1087. python-slip-dbus-0.4.0-2.el7.noarch
  1088. python-urlgrabber-3.10-7.el7.noarch
  1089. rpm-python-4.11.3-17.el7.x86_64
  1090. root 289 Apr02 0:00 [ttm_swap]
  1091. root 4813 Apr02 0:01 [kworker/u2:0]
  1092. root 385 Apr02 0:00 [xfs_mru_cache]
  1093. root 281 Apr02 0:00 [scsi_eh_1]
  1094. root 93 Apr02 0:00 [kauditd]
  1095. root 8 Apr02 0:00 [rcu_bh]
  1096. root 559 Apr02 0:00 [xfsaild/sda1]
  1097. root 284 Apr02 0:00 [scsi_tmf_1]
  1098. root 2644 Apr02 0:00 /usr/sbin/CROND
  1099. root 369 Apr02 0:00 [bioset]
  1100. root 29 Apr02 0:00 [khugepaged]
  1101. root 287 Apr02 0:00 [scsi_tmf_2]
  1102. root 274 Apr02 0:00 [scsi_eh_0]
  1103. root 7 Apr02 0:00 [migration/0]
  1104. root 20 Apr02 0:00 [kblockd]
  1105. root 10 Apr02 0:11 [rcu_sched]
  1106. root 608 Apr02 0:00 /usr/sbin/crond
  1107. root 12 Apr02 0:01 [watchdog/0]
  1108. root 389 Apr02 0:00 [xfs-cil/dm-0]
  1109. root 603 Apr02 0:01 /usr/lib/systemd/systemd-logind
  1110. root 384 Apr02 0:00 [xfsalloc]
  1111. root 286 Apr02 0:00 [scsi_eh_2]
  1112. root 558 Apr02 0:00 [xfs-cil/sda1]
  1113. root 31 Apr02 0:00 [crypto]
  1114.  
  1115. [*] ENUMERATING INSTALLED LANGUAGES/TOOLS FOR SPLOIT BUILDING...
  1116.  
  1117. [+] Installed Tools
  1118. /usr/bin/awk
  1119. /usr/bin/perl
  1120. /usr/bin/python
  1121. /usr/bin/vi
  1122. /usr/bin/vim
  1123. /usr/bin/find
  1124. /usr/bin/wget
  1125. /usr/bin/nmap
  1126.  
  1127. [+] Related Shell Escape Sequences...
  1128.  
  1129. vi--> :!bash
  1130. vi--> :set shell=/bin/bash:shell
  1131. vi--> :!bash
  1132. vi--> :set shell=/bin/bash:shell
  1133. awk--> awk 'BEGIN {system("/bin/bash")}'
  1134. find--> find / -exec /usr/bin/awk 'BEGIN {system("/bin/bash")}' \;
  1135. perl--> perl -e 'exec "/bin/bash";'
  1136.  
  1137. [*] FINDING RELEVENT PRIVILEGE ESCALATION EXPLOITS...
  1138.  
  1139. Note: Exploits relying on a compile/scripting language not detected on this system are marked with a '**' but should still be tested!
  1140.  
  1141. The following exploits are ranked higher in probability of success because this script detected a related running process, OS, or mounted file system
  1142. - MySQL 4.x/5.0 User-Defined Function Local Privilege Escalation Exploit || http://www.exploit-db.com/exploits/1518 || Language=c**
  1143.  
  1144. The following exploits are applicable to this kernel version and should be investigated as well
  1145. - Kernel ia32syscall Emulation Privilege Escalation || http://www.exploit-db.com/exploits/15023 || Language=c**
  1146. - Sendpage Local Privilege Escalation || http://www.exploit-db.com/exploits/19933 || Language=ruby**
  1147. - CAP_SYS_ADMIN to Root Exploit 2 (32 and 64-bit) || http://www.exploit-db.com/exploits/15944 || Language=c**
  1148. - CAP_SYS_ADMIN to root Exploit || http://www.exploit-db.com/exploits/15916 || Language=c**
  1149. - MySQL 4.x/5.0 User-Defined Function Local Privilege Escalation Exploit || http://www.exploit-db.com/exploits/1518 || Language=c**
  1150. - open-time Capability file_ns_capable() Privilege Escalation || http://www.exploit-db.com/exploits/25450 || Language=c**
  1151. - open-time Capability file_ns_capable() - Privilege Escalation Vulnerability || http://www.exploit-db.com/exploits/25307 || Language=c**
  1152.  
  1153. Finished
  1154. =================================================================================================
Advertisement
Add Comment
Please, Sign In to add comment
Advertisement