Jun 01, 2024, 06:49 PM
|
HTB - Freelancer
by trevor69000 - Saturday June 1, 2024 at 06:49 PM
|
|
Jun 01, 2024, 07:51 PM
PORT STATE SERVICE REASON
53/tcp open domain syn-ack ttl 127 80/tcp open http syn-ack ttl 127 88/tcp open kerberos-sec syn-ack ttl 127 135/tcp open msrpc syn-ack ttl 127 139/tcp open netbios-ssn syn-ack ttl 127 389/tcp open ldap syn-ack ttl 127 445/tcp open microsoft-ds syn-ack ttl 127 464/tcp open kpasswd5 syn-ack ttl 127 593/tcp open http-rpc-epmap syn-ack ttl 127 636/tcp open ldapssl syn-ack ttl 127 3268/tcp open globalcatLDAP syn-ack ttl 127 3269/tcp open globalcatLDAPssl syn-ack ttl 127 5985/tcp open wsman syn-ack ttl 127 9389/tcp open adws syn-ack ttl 127 49667/tcp open unknown syn-ack ttl 127 49670/tcp open unknown syn-ack ttl 127 49671/tcp open unknown syn-ack ttl 127 49672/tcp open unknown syn-ack ttl 127 63271/tcp open unknown syn-ack ttl 127 63275/tcp open unknown syn-ack ttl 127
Jun 01, 2024, 08:36 PM
any hint ?......
This forum account is currently banned. Ban Length: Permanent (N/A Remaining)
Ban Reason: Asking for rep is not allowed
i think we can use xss to steal a cookie .. but where idk
i think here we can make xss http://freelancer.htb/contact/ guys login as employer and activate the acc after that check qr code This forum account is currently banned. Ban Length: Permanent (N/A Remaining)
Ban Reason: Asking for rep is not allowed
Jun 01, 2024, 10:02 PM
I am logged in as user and been trying to figure that out,
Jun 01, 2024, 10:04 PM
make an acc as freelancer and go there freelancer.htb/accounts/recovery/ .. after that recover as employer and login as employer
This forum account is currently banned. Ban Length: Permanent (N/A Remaining)
Ban Reason: Asking for rep is not allowed
Jun 01, 2024, 10:25 PM
Users :
dthomas jgreen sdavis taylor jmartinez
Jun 01, 2024, 10:28 PM
idor with qr code otp. only need to substitute b64 of admin user id
Jun 01, 2024, 10:35 PM
|
|
« Next Oldest | Next Newest »
|
| Possibly Related Threads… | |||||
| Thread | Author | Replies | Views | Last Post | |
| [MEGALEAK] HackTheBox ProLabs, Fortress, Endgame - Alchemy, 250 Flags, leak htb-bot | 94 | 8,608 |
4 hours ago Last Post: d39ug |
||
| Hack the box Pro Labs, VIP, VIP+ 1 month free Method | 26 | 2,580 |
4 hours ago Last Post: d39ug |
||
| [FREE] HackTheBox Academy - CBBH CDSA CPTS All Modules Flags | 37 | 3,201 |
4 hours ago Last Post: xosec |
||
| CBBH Write Ups | 26 | 6,650 |
5 hours ago Last Post: d39ug |
||
| [FREE] HackTheBox Dante - complete writeup written by Tamarisk | 606 | 94,253 |
5 hours ago Last Post: Gotoschool |
||