HackTheBox – Devel
Devel is Windows 7 box with IIS server and anonymous access to FTP
Devel is Windows 7 box with IIS server and anonymous access to FTP
Only http/https ports are opened
nmap shows 3 open ports: ssh, bind dns service and Apache http Default page
Checking SMTP service: https port: Based on nmap scan I am checking https with domain name: There is an additional domain name It revels a forum Users: admin, orestis Orestis…
root, sammy, sunny - this users looks diffrent than others, probably other users have never been used I had issues with using hydra Hydra didn't work, because it takes long…
CVE-2017-0143 nmap --script=smb-os-discovery.nse --script-args=unsafe=1 -script=smb-vuln-ms17-010.nse -p445 <ip> This host is vulnerable to popular CVE-2017-0143, I decided to use metasploit: I have system privileges
No hints regarding version of October CMS admin:admin I wanted to check version: There is a possibility to upload a files. File with extension .php5 is located, so I will…
pwdbackup.txt looks interesting I checked it with CyberChef and didn't get any "magic" hint. Later I will decode it There is a LFI access.log is accessible I don't have permissions…
Looks like heart with bleed.. 22 ssh OpenSSH 5.9.p1 5ubuntu1.1080 http Apache 2.2.22443 https Apache 2.2.22 AES-128-CBC encrypted RSA private key I tried to crack this, but I couldn't. Vulnerabilities…
Initial scan shows 2 open ports