CORE IMPACT v7 - Exploits Update (Thu Nov 08 2007)
Xen Pygrub Command Injection exploit
Exploits/Local [Linux]
Thu Nov 08 2007
This module exploits a command injection error in tools/pygrub/src/GrubConf.py. This can be exploited by "root" users of a guest domain to execute arbitrary commands in domain 0 via specially crafted entries in grub.conf when the guest system is booted.
Exploits Vulnerabiltiy: CVE-2007-4993











