Nappa
Enumeration
Registered with test@test.com:password
404 Error Page -> Routing Error Page
With Burp Suite, we can make it workable.
GET /serverinfo -> Do intercept -> Response to this request
Initial Access
Click submit -> Find the post request in history -> Send to the repeater -> Add, url encoded cmd
PrivEsc
This is a base32 encoded string. It is an openssh private key. Save contents of it to a file.
Last updated