Core Security
info@coresecurity.com  | +1.617.399.6980 | Contact Us   Core Blog Core Blog Twitter LinkedIn youtube
SHARE

CORE IMPACT v7 - Exploits Update (Thu Nov 08 2007)

Xen Pygrub Command Injection exploit

Exploits/Local  [Linux]




• Thu Nov 08 2007
This module exploits a command injection error in tools/pygrub/src/GrubConf.py. This can be exploited by "root" users of a guest domain to execute arbitrary commands in domain 0 via specially crafted entries in grub.conf when the guest system is booted.

Exploits Vulnerabiltiy: CVE-2007-4993



< Back to Product Updates