ttdbserverd delete any file v1.42

Vulnerability exploited: CAN-2002-0677 - BID-5082

Category: Exploits/Tools

Deletes any file or directory, abusing a couple of vulnerabilities of rpc.ttdbserverd.
Since the process being exploited is usually run with root privileges, you would be able to delete any file or directory of the filesystem.This exploit doesn't install a level 0 agent. It just deletes files.This exploit needs to create some directories to delete the files. These directories start with 'FilenameToDelete + ZEROAAAABBBB'For example, if you want to delete the file '/etc/passwd', the directory '/etc/passwdZEROAAABBB' will be created (and wont be deleted)The exploit can't check if the specified file was deleted or not.

Supported Systems:
    Solaris 2.6 (sun4m)
    Solaris 7 (sun4m)
    Solaris 8 (sun4u)


This module is included in the latest version of CORE IMPACT, the first automated comprehensive penetration testing product for accurately identifying information security risks. Click here to learn more about the product.