Just finished it. Amazing box! If anyone needs a nudge PM me.
Just rooted this amazing machine ! All the boxes seems impossible at start but Canape is pure ■■■■ ! It was frustrating to stay for days stuck, but more re-comforting than others at all! If anyone needs help PM me.
I have been accessed www which is web directory permission.I need to go deeper to dump both user.txt and root.txt
Can someone give me a hint regarding the initial pickle situation ? I have a payload that is working locally, but I keep getting 500 errors when I send it to canape using python requests library
Am i missing a port during enumeration?
I keep getting 500 response ? can someone help me ?
Just rooted! Thanks to the author for this great box. It’s my favorite since so far.
The user acces was the whole time just under my hand, but I was too focused on RCE. Rooting is easy once you have user acces.
Rooted PM if you need help.
Could really use some help. I can’t get past the 500 Internal Server Error. I have sent my payload directly from Python using Requests but still no luck. Any nudges in the right direction would be greatly appreciated.
Rooted, thank you for all the help from my dear friends.
Hints:
For initial foothold, enumerate the machine. May help if you can dump the whole set using some tool by internetwache and try to create a script to exploit against it.
For getting the user after the initial foothold, reach a bit on the db administration on how to add admin users.
For getting the root shell - this is ironically the easiest part, just google.
unable to get rce… have payload working for ping command
Unable to get RCE too. Any hint will be apreciated…
finally rooted canape… great machine learnt a lotttt…
@yazid101 said:
pls help , cant copy/clone the repository ?? is that supposed to happen …
I have problems with this step too…
EDIT: python POC works locally, but when I try to use it with the machine I receive error 500
EDIT2: I have initial shell, but now i’m stuck
I don’t understand exactly how to run the .git program… maybe I’m in left field but anytime I got anything of github there is a install file or readme to guide you through the building process. I have a feeling I’m way off tho. anybody?
iv’e got the Couch on my local server and trying to run the .git from canape in it? what is going on here
Spoiler Removed - Arrexel
Rooted! Fun box and big lessons learnt
Can anyone PM me on discord [pain#9033] for a hint about user? I have no idea where to go next
Any help on enumeration
I’ve scanned all TCP Ports but only getting http
and ssh
??
PM would be appreciated.