HTB GreenHorn
by Unbutton8074 - Saturday July 20, 2024 at 07:50 PM
#51
Idk why i just get a 404 not found in the php revshell but if in the php i put phpinfo(); it works, but if i try any other php command doesn't work and the response is File not found o.O help

(Jul 21, 2024, 11:51 PM)Pyrate_kxx Wrote: Idk why i just get a 404 not found in the php revshell but if in the php i put phpinfo(); it works, but if i try any other php command doesn't work and the response is File not found o.O help

Never mind I solved it with msfvenom and msfconsole
Reply
#52
How do you open the pdf?
I keep getting the error "File type XHTML page (application/xhtml+xml) is not supported"
Reply
#53
yea i removed them
Reply
#54
(Jul 22, 2024, 05:50 AM)Dante1321 Wrote: How do you open the pdf?
I keep getting the error "File type XHTML page (application/xhtml+xml) is not supported"

I think you should add ip machine address into hosts and then you tries it again

(Jul 21, 2024, 05:36 AM)tsuki Wrote: for root:

sudo apt-get install poppler-utils

pdfimage -j openvas.pdf output_prefix

mogrify -format png output_prefix-*.ppm

python3 depix.py -p output_prefix-000.png -s images/searchimages/debruinseq_notepad_Windows10_closeAndSpaced.png  -o pass_root.png

Thanks for your solution!

This forum account is currently banned. Ban Length: Permanent (N/A Remaining)
Ban Reason: Replying With Hidden Content
Reply
#55
Thank a lot for this footage and leeaking!
Reply
#56
(Jul 20, 2024, 08:25 PM)0xScriptkiddie Wrote: how did you got the shell i tried file upload but no success

I also face same issue
Reply
#57
I sell two codes for only 28$

50% discount on swag and 50$ discount on the annual plan on Hackthebox

This forum account is currently banned. Ban Length: Permanent (N/A Remaining)
Ban Reason: Asking for rep is not allowed
Reply
#58
once again for root:

sudo apt install poppler-utils
pdfimages -all "Using OpenVAS.pdf" 0
python3 depix.py -p 0-000.png -s images/searchimages/debruinseq_notepad_Windows10_closeAndSpaced.png -o ../pwd.png
Reply
#59
I had to do it all manually.
First I went to "http://greenhorn.htb/admin.php?action=installmodule", uploaded my .zip, and then manually browsed to "http://greenhorn.htb/data/modules/mirabbas/miri.php" to catch the callback on my nc listener.
I spent way too much trying to get the exploit python script to work. Good luck!
Reply


Possibly Related Threads…
Thread Author Replies Views Last Post
  [FREE] HackTheBox Dante - complete writeup written by Tamarisk Tamarisk 605 92,967 57 minutes ago
Last Post: jocefaliy
Heart [FREE] HackTheBox All Cheatsheets Tamarisk 11 664 59 minutes ago
Last Post: jocefaliy
  [FREE] HackTheBox Academy - CBBH CDSA CPTS All Modules Flags Techtom 29 2,890 1 hour ago
Last Post: 0x5k1z0
  [FREE] CPTS 12 FLAGS pulsebreaker 76 2,466 1 hour ago
Last Post: jocefaliy
  [FREE] 300+ Writeups PDF HackTheBox/HTB premium retired Tamarisk 379 93,958 1 hour ago
Last Post: unionstorm

Forum Jump:


 Users browsing this forum: 1 Guest(s)