|
[HTB] Sea - Machine
by RedTeamer - Friday August 9, 2024 at 08:04 PM
|
|
Aug 13, 2024, 02:16 AM
After tunneling to port 8080, I used the command /bin/bash -p and immediately gained root access.
Aug 13, 2024, 03:25 AM
(Aug 12, 2024, 06:11 AM)slukl Wrote:(Aug 12, 2024, 05:39 AM)fuliye Wrote: what is the command injection ???i can not use it ok bro ,thx for help This forum account is currently banned. Ban Length: Permanent (N/A Remaining)
Ban Reason: Leeching | http://c66go4clkqodr7tdjfu76jztjs7w7d3fajdeypxn73v4ju3dt7g5yyyd.onion/Forum-Ban-Appeals if you feel this is incorrect.
Aug 13, 2024, 05:45 AM
easiest way is to go on http://127.0.0.1:8080 and login with amay and its password mychemicalromance
use burp and inctercept the log analysis file and change it to a; cat /root/root.txt; b
Aug 13, 2024, 07:18 AM
I dont know how to get root...I have web ssh,where I found user amay, then I tried SSH for this user with password from website. It worked so I took flag for user, but I don't have any permission for access to root... Can you slightly push me forward? Iam noob and this is my first box excepts starting point.
Aug 13, 2024, 09:48 AM
(Aug 12, 2024, 04:26 PM)RizzlaTech Wrote:(Aug 10, 2024, 10:22 PM)osamy7593 Wrote: lol only me after foothold did /usr/bin/bash -p and got root lol some of those got root chomd u+x /bin/bash This forum account is currently banned. Ban Length: Permanent (N/A Remaining)
Ban Reason: Asking for rep is not allowed
Aug 13, 2024, 12:52 PM
Did the exploit from the CVE github worked, i ended up using curl to the reverse shell cause never worked for me
Aug 13, 2024, 02:09 PM
rooted this was pretty easy thanks 2 everybody contributing
Aug 14, 2024, 01:02 PM
(Aug 12, 2024, 03:38 PM)ent0xE Wrote:(Aug 12, 2024, 02:06 PM)MrNidus Wrote:(Aug 12, 2024, 11:41 AM)ent0xE Wrote: Short Writeup: trust me, i tried and it works
Aug 15, 2024, 03:05 PM
finally I have finished this machine this morning!
|
|
« Next Oldest | Next Newest »
|
| Possibly Related Threads… | |||||
| Thread | Author | Replies | Views | Last Post | |
| [MEGALEAK] HackTheBox ProLabs, Fortress, Endgame - Alchemy, 250 Flags, leak htb-bot | 98 | 8,935 |
1 hour ago Last Post: Zacker90 |
||
| SVCHOST Injector 2026 | 0 | 66 |
7 hours ago Last Post: opsecmaster67 |
||
| Cold Seal 5.6 cracked Sensitive information can be exposed or stolen | 0 | 58 |
7 hours ago Last Post: opsecmaster67 |
||
| EagleRAT v2.5 Create backdoor access points | 0 | 53 |
7 hours ago Last Post: opsecmaster67 |
||
| [FREE] HackTheBox Academy - CBBH CDSA CPTS All Modules Flags | 43 | 3,502 |
8 hours ago Last Post: qwertyuiop0987654321 |
||