This malicious PERL script exploits the
Format String vulnerability in
TrACESroute 6.0 GOLD. More info about the said vulnerability can be found at the following link:
This PERL script runs locally on a
Red Hat Linux release 7.2 and allows a user with limited privileges to gain administrative or higher-level access. This is done by exploiting the
Format String vulnerability in
TrACESroute 6.0 GOLD, and probably previous versions as well. The said vulnerability allows local users to execute arbitrary code via the -T (terminator) command line argument.
More...