HTB: Blunder 0xdf hacks stuff

Por um escritor misterioso
Last updated 22 dezembro 2024
HTB: Blunder  0xdf hacks stuff
Blunder starts with a blog that I’ll find is hosted on the BludIt CMS. Some version enumeration and looking at releases on GitHub shows that this version is vulnerable to a bypass of the bruteforce protections, as well as an upload and execute filter bypass on the PHP site. I’ll write my own scripts for each of these, and use them to get a shell. From there, I’ll find creds for the next user, where I’ll find the first flag. Now I can also access sudo, where I’ll see I can run sudo to get a bash shell as any non-root user. I’ll exploit CVE-2019-14287 to run that as root, and get a root shell.
HTB: Blunder  0xdf hacks stuff
0xdf (@0xdf_) / X
HTB: Blunder  0xdf hacks stuff
HackTheBox: Blunder write-up
HTB: Blunder  0xdf hacks stuff
HackTheBox Writeup: PlayerTwo
HTB: Blunder  0xdf hacks stuff
A BEGINNERS GUIDE TO OSCP 2021 - OSCP
HTB: Blunder  0xdf hacks stuff
0xdf hacks stuff CTF solutions, malware analysis, home lab development
HTB: Blunder  0xdf hacks stuff
BLUNDER — HackTheBox WriteUp. This box is a part of TJnull's list of…, by Himanshu Das
HTB: Blunder  0xdf hacks stuff
Hack The Box - Sizzle - 0xRick's Blog
HTB: Blunder  0xdf hacks stuff
BLUNDER — HackTheBox WriteUp. This box is a part of TJnull's list of…, by Himanshu Das
HTB: Blunder  0xdf hacks stuff
HTB: TheNotebook 0xdf hacks stuff
HTB: Blunder  0xdf hacks stuff
CTF Players – Telegram
HTB: Blunder  0xdf hacks stuff
HackTheBox – Blunder Ivan's IT learning blog
HTB: Blunder  0xdf hacks stuff
Player2 - HackTheBox, 喵喵喵喵
HTB: Blunder  0xdf hacks stuff
Hack The Box - Sizzle - 0xRick's Blog

© 2014-2024 fluidbit.co.ke. All rights reserved.