Exploitation Summary
EIP tracks 1 public exploit for CVE-2010-0788. PoCs published by super.
AI-analyzed exploit summary This exploit leverages a symlink attack in ncpfs to read shadow files by manipulating the ~/.nwclient file during mount operations. It iterates over /etc/*shadow* files and attempts to display their contents via a crafted function.
Description
ncpfs 2.2.6 allows local users to cause a denial of service, obtain sensitive information, or possibly gain privileges via symlink attacks involving the (1) ncpmount and (2) ncpumount programs.
Exploits (1)
This exploit leverages a symlink attack in ncpfs to read shadow files by manipulating the ~/.nwclient file during mount operations. It iterates over /etc/*shadow* files and attempts to display their contents via a crafted function.