利用systeminfo命令查找可用的windows提权EXP

利用systeminfo命令查找可用的windows提权EXP,输出的即为未打补丁的漏洞。

文章根据网络上的相关内容做了一点修改(更新)

systeminfo>tmp.txt&(for /f %i in (MS.txt) do @type tmp.txt|@find /i "%i"||@echo %i)&del /f /q tmp.txt
 
  MS.txt中的内容为: 
  

2014
KB3000061:MS14-058:CVE-2014-4113
KB3011780:MS14-068:CVE-2014-6324
2013
DB2840221:MS13-046:CVE-2013-1333
KB2850851:MS13-053:CVE-2013-1300
2012
KB2671387:MS12-020:CVE-2012-0002
KB2646524:MS12-003:CVE-2012-0005
KB2645640:MS12-009:CVE-2012-0148
KB2641653:MS12-018:CVE-2012-0157 
2011
KB2393802:MS11-011:CVE-2011-0045
KB2592799:MS11-080:CVE-2011-2005
KB2478960:MS11-014:CVE-2011-0039
KB2507938:MS11-056:CVE-2011-1281
KB2566454:MS11-062:CVE-2011-1974
KB2503665:MS11-046:CVE-2011-1249
KB2592799:MS11-080:CVE-2011-2005
KB2620712:MS11-097:CVE-2011-3408
2010
KB2160329:MS10-048:CVE-2010-1887
KB2124261:MS10-065:IIS7提权(可能是)
KB2271195:MS10-065:IIS7提权(可能是)
KB977165:MS10-015:CVE-2010-0232
KB2360937:MS10-084:CVE-2010-3222
2009
KB952004:MS09-012:PR
KB956572:MS09-012:巴西烤肉
KB970483:MS09-020:iis6提权(可能是)
KB971657:MS09-041:CVE-2009-1544


你可能感兴趣的:(编程,内网渗透)