Carrier

Hey can anyone give a hint as how to grab the initial foothold … i did enumerate the so called UDP port and used various scripts … all i know is that pu**** exists and found and OID with value which looks likes a password to me … what do to now … tried every possible combination on the main web page… but no use !!! Anyone here that can help me ??? :confused:

@Puru said:
Hey can anyone give a hint as how to grab the initial foothold … i did enumerate the so called UDP port and used various scripts … all i know is that pu**** exists and found and OID with value which looks likes a password to me … what do to now … tried every possible combination on the main web page… but no use !!! Anyone here that can help me ??? :confused:

Try to enumerate more the service you’re trying to log in to, see if you can find the information you need elsewhere. It will be quite clear.

guys,

I tried to enumerated that port I6I with all tools available (snmpwn,snmenum, etc).

but I got blank result, I tried v1 and v3 . still no result, any hint or help would be appreciated!
btw im really newbie, just joined a week ago.

@xterm said:

guys,

I tried to enumerated that port I6I with all tools available (snmpwn,snmenum, etc).

but I got blank result, I tried v1 and v3 . still no result, any hint or help would be appreciated!
btw im really newbie, just joined a week ago.

try standart linux commands on relevant service to get an output

Simlar spot as people above - enumerated the port and found an interesting number looking like a password. But no username is working… Any tips are helpful! :slight_smile:

Can anyone help me with the “check” command? I cannot get any other simple commands to work so am clearly missing something. I have checked the source code of the page and can see the encoding. I am encoding simple commands and using them in place of the hardcoded value. Nothing is displayed? What am I missing? help please!

Hi,

stuck at privesc. Got SYN but don’t know how to relay packets. Also wondering why I am getting packets from eth1 and eth2. Do I need to setup a service for that port and assign both IFs this IP? Need a hint.

Thank you in advance,
mrothenbuecher

@darkkoan URL encoding - Wikipedia

@mrothenbuecher said:
@darkkoan Percent-encoding - Wikipedia

Thanks man - got it.

I can’t seem to find root.txt but there is user.txt in /root instead. Also there is no user.txt under the user’s directory:

# pwd
/root
# ls user.txt
user.txt
# ls root.txt
ls: cannot access 'root.txt': No such file or directory
# id
uid=0(root) gid=0(root) groups=0(root)

Am I missing something?

Never mind, I think I know what’s going on … :wink:

Im trying to login to the webpage xD. I tried with user adn and all the possible combination of 7765*******8 but cant login… can you give me an hint?

@Shocke said:
Im trying to login to the webpage xD. I tried with user adn and all the possible combination of 7765*******8 but cant login… can you give me an hint?

Go back to the basics. Scan all ports, both TCP & UDP

Stuck at privEsc part and I feel lost, who can lead me to some clue?

Just in case anyone struggling to get that initial rev-shell and only gets a non-interactive/non-responsive shell (literally no output to any of the commands), maybe the ‘door’ used by the connection to come back is too small and secured.

Hi, I’m new, I’m on the web but I do not know how to continue. someone could give me a hand.

@darkkoan said:

@mrothenbuecher said:
@darkkoan Percent-encoding - Wikipedia

Thanks man - got it.

please, can you PM me as i stuck the same!

I’ve got root access first machine… got a t*t connection with za, am I going the right direction? Dont know what to do for the next move…

edit: answer is no.

I need help, can’t get the reverse shell via the RFE as everytime I change the parameter I get no output… help me please!

I’ m confused, got root shell but root.txt is nowhere to be found?