ClamAV
Last updated
Last updated
After going through all available ports I was unable to enumerate anything interesting...
Using searchsploit
we see an available exploit:
Sendmail
with clamav-milter < 0.91.2 - Remote Command Execution
(As we know port 25 is open and running Sendmail).
**Linked here:**
Looking through the exploit code, we can see the script will open port 31337 to receive connections.
The script was then executed with the following command.
Scanning port 31337 after running the exploit shows it as now being open.
We can then use netcat
it to connect to the port as the root user.
A module Metasploit
exists for this vulnerability.
The exploit was configured with the options shown below.
Upon execution, we are able to gain root access to the target system.
With no promising avenues for the available ports. We turn to the machine hostname 'ClamAV'. ClamAV is an open source Antivirus solution available here on the vendors website: .