HTB GreenHorn
by Unbutton8074 - Saturday July 20, 2024 at 07:50 PM
#51
Idk why i just get a 404 not found in the php revshell but if in the php i put phpinfo(); it works, but if i try any other php command doesn't work and the response is File not found o.O help

(Jul 21, 2024, 11:51 PM)Pyrate_kxx Wrote: Idk why i just get a 404 not found in the php revshell but if in the php i put phpinfo(); it works, but if i try any other php command doesn't work and the response is File not found o.O help

Never mind I solved it with msfvenom and msfconsole
Reply
#52
How do you open the pdf?
I keep getting the error "File type XHTML page (application/xhtml+xml) is not supported"
Reply
#53
yea i removed them
Reply
#54
(Jul 22, 2024, 05:50 AM)Dante1321 Wrote: How do you open the pdf?
I keep getting the error "File type XHTML page (application/xhtml+xml) is not supported"

I think you should add ip machine address into hosts and then you tries it again

(Jul 21, 2024, 05:36 AM)tsuki Wrote: for root:

sudo apt-get install poppler-utils

pdfimage -j openvas.pdf output_prefix

mogrify -format png output_prefix-*.ppm

python3 depix.py -p output_prefix-000.png -s images/searchimages/debruinseq_notepad_Windows10_closeAndSpaced.png  -o pass_root.png

Thanks for your solution!

This forum account is currently banned. Ban Length: Permanent (N/A Remaining)
Ban Reason: Replying With Hidden Content
Reply
#55
Thank a lot for this footage and leeaking!
Reply
#56
(Jul 20, 2024, 08:25 PM)0xScriptkiddie Wrote: how did you got the shell i tried file upload but no success

I also face same issue
Reply
#57
I sell two codes for only 28$

50% discount on swag and 50$ discount on the annual plan on Hackthebox

This forum account is currently banned. Ban Length: Permanent (N/A Remaining)
Ban Reason: Asking for rep is not allowed
Reply
#58
once again for root:

sudo apt install poppler-utils
pdfimages -all "Using OpenVAS.pdf" 0
python3 depix.py -p 0-000.png -s images/searchimages/debruinseq_notepad_Windows10_closeAndSpaced.png -o ../pwd.png
Reply
#59
I had to do it all manually.
First I went to "http://greenhorn.htb/admin.php?action=installmodule", uploaded my .zip, and then manually browsed to "http://greenhorn.htb/data/modules/mirabbas/miri.php" to catch the callback on my nc listener.
I spent way too much trying to get the exploit python script to work. Good luck!
Reply


Possibly Related Threads…
Thread Author Replies Views Last Post
  [FREE] 300+ Writeups PDF HackTheBox/HTB premium retired Tamarisk 376 93,736 1 hour ago
Last Post: Sukon
  [FREE] CPTS • CWES • CDSA • CWEE Exam Hint 3midjets 233 32,335 1 hour ago
Last Post: Sukon
  [FREE] CPTS 12 FLAGS pulsebreaker 74 2,364 1 hour ago
Last Post: Sukon
  [MEGALEAK] HackTheBox ProLabs, Fortress, Endgame - Alchemy, 250 Flags, leak htb-bot htb-bot 89 8,101 6 hours ago
Last Post: Xploitd
Heart [FREE] HackTheBox All Cheatsheets Tamarisk 10 629 10 hours ago
Last Post: chufoni

Forum Jump:


 Users browsing this forum: 2 Guest(s)