HTB - Drive [Discussion]
by 11231123 - Saturday October 14, 2023 at 06:37 PM
#1
Good luck everyone!
Reply
#2
something with escaping the encoding of the uploaded file for foothold?
Reply
#3
any foothold guys ?
Reply
#4
(Oct 14, 2023, 11:35 PM)bololohaha Wrote: I just found a way to leak the name of the other files, but I dunno how to get the content by its name

how are you bypassing the encoding?
Reply
#5
Hey, can everyone Guide me for Foothold user shell ?
Reply
#6
(Oct 15, 2023, 12:32 AM)nenandjabhata Wrote: Hey, can everyone Guide me for Foothold user shell ?

fuzz number id this url http://drive.htb/FUZZ/getFileDetail/ and see u file press button
Reply
#7
(Oct 15, 2023, 12:38 AM)bololohaha Wrote: After SSH to martin, can someone give me any tips of what to search next?

Can you tell me please how you got ssh ? or the shell ?
Reply
#8
(Oct 15, 2023, 12:38 AM)bololohaha Wrote: After SSH to martin, can someone give me any tips of what to search next?

see listen port and try to login
Reply
#9
I am trying to fuzz but not getting a good answer using my command:
└─# ffuf -u http://drive.htb/FUZZ/getFileDetail/ -w 3-digit.txt -fs 1542,0
Reply
#10
(Oct 15, 2023, 12:54 AM)nenandjabhata Wrote: I am trying to fuzz but not getting a good answer using my command:
└─# ffuf -u http://drive.htb/FUZZ/getFileDetail/ -w 3-digit.txt -fs 1542,0

there some functional unReserve, after press button u can see some private files "Select files to unReserve :" , but no can see content their
tips: press Reserve after upload u file and get correctly url for fuzz
Reply


Possibly Related Threads…
Thread Author Replies Views Last Post
  [FREE] 300+ Writeups PDF HackTheBox/HTB premium retired Tamarisk 377 93,862 42 minutes ago
Last Post: xuotcemcduzodzsdyd
  [FREE] CPTS 12 FLAGS pulsebreaker 75 2,416 1 hour ago
Last Post: rft569o7k
  [FREE] CPTS • CWES • CDSA • CWEE Exam Hint 3midjets 233 32,398 6 hours ago
Last Post: Sukon
  [MEGALEAK] HackTheBox ProLabs, Fortress, Endgame - Alchemy, 250 Flags, leak htb-bot htb-bot 89 8,131 Yesterday, 07:25 PM
Last Post: Xploitd
Heart [FREE] HackTheBox All Cheatsheets Tamarisk 10 641 Yesterday, 03:44 PM
Last Post: chufoni

Forum Jump:


 Users browsing this forum: 1 Guest(s)