Sploitus

Exploit for Incorrect Authorization in Polkit Project Polkit

githubexploit · 2021-07-30

Exploit Code

README4 lines
## https://sploitus.com/exploit?id=6DB4BE3A-051F-58C6-9266-A278C41A707E
# Polkit D-Bus Authentication Bypass Exploit

* A vulnerability exists within the polkit system service that can be leveraged by a local, unprivileged attacker to perform privileged operations. In order to leverage the vulnerability, the attacker invokes a method over D-Bus and kills the client process. This will occasionally cause the operation to complete without being subjected to all of the necessary authentication. The exploit module leverages this to add a new user with a sudo access and a known password. The new account is then leveraged to execute a payload with root privileges.