Poison

Having an issue with privesc. It looks like I successfully extracted the zip but it doesn’t appear to be useful for anything. Is it a distraction, or am I missing something?

I don’t see any other priv esc vectors after searching around the box for a while. Please pm me.

Nevermind, got it!

Spoiler Removed - Arrexel

Spoiler Removed - Arrexel

Spoiler Removed - Arrexel

@putabones said:
Spoiler Removed - Arrexel

I didn’t get shell :slight_smile: so can’t give hints on Priv esc. Dirbuster or gobuster didn’t show anything. Any other tools provide better results for initiatl steps?

I would say take a look at all the ports you have ID’d already, then work your way through the ones you can access. You should be able to see ones that correlate to each other.

yeah got it :slight_smile: thanks. Now working on Priv Esc.

Spoiler Removed - Arrexel

Any hints on the extracted file?
Is it usefull or not?

Spoiler Removed - Arrexel

Spoiler Removed - Arrexel

Spoiler Removed - Arrexel

Please help i can’t go inside the shell any hints please

Spoiler Removed - Arrexel

Search google for lfi and rce. Try all aproaches to that. Please note that certain files in freebsd is at different location than on other linux distros.

extracted file matters in some way

anyone PM me need help getting the zip open?

@Vipertooth said:
anyone PM me need help getting the zip open?

dont overthink

@peek said:

@Vipertooth said:
anyone PM me need help getting the zip open?

dont overthink

I must be overthinking it… I just can’t seem to find a way to pry the secret from it’s shell…