I’m past the isolated part of the machine and in the webapp of the main machine, but none of my reverse shells are working? I can curl my main machine and see the request, but I can’t seem to get a shell working and I don’t know why.
Edit:
If you use the same cve script as me, the generate fails but the inject works.
Welp, finally rooted this machine. @adr_sal and @imPankajSingh helped me through this one as the very beginning gave me issues. I’m so bad at webapps! Regardless, I learned some interesting things to help me in the future and had a lot of fun with the rest. This thing is full of rabbit holes that I don’t know whether to laugh or cry at how much time I spent following them! Either that, or they’re actual points I just don’t know how to use. Still, lots of fun. I really love the setup of this box
Hello guys, I’m stuck in getting the reverse shell when uploading the file to port 443 (I’ve already got the creds and log in to the webmail), could someone help me pls?
Its hard to say it without spoilers. But lets say there are many places where you can put the credentials into. It could help checking winpeas output with this in mind.
I enjoyed this machine! A fun box that challenges your creativity…
The user is a little bit tricky, but the root is straightforward. p0wny shell is your friend in both user and root.
Yes. We could have had the user flag in some user of the linux machine instead.
It seems that all the hard work was left for the user flag.
But for sure was a fun box.
Depends what vuln you are talking about but if it’s one from the mail service it’s not the one.
If it’s related to needles, you have several method to use the poc, try some others
This was very interesting box with quite a few little steps needed for going forward.
Frustrating foothold, simple root. Great stuff in between had fun enumerating, researching and ultimately pwning this one.
strangest thing - I was on the windows server, with a certain file open and as it was open I saw the user/pass of the administrator be typed out in front of me. I see only one user on the box, myself.