I just got a user.
It was not so easy.
I think this box should have an medium rating.
Hint for user: if you’re not comfortable with MySQL, can read this article: Penetration Testing on MYSQL (Port 3306) - Hacking Articles
Hope this not a spoiler
Now for root…
Thx for the link, this helped me resolve a “Session expired, please login again.” error.
I just got a user.
It was not so easy.
I think this box should have an medium rating.
Hint for user: if you’re not comfortable with MySQL, can read this article: Penetration Testing on MYSQL (Port 3306) - Hacking Articles
Hope this not a spoiler
Now for root…
Thx for the link, this helped me resolve a “Session expired, please login again.” error.
Thanks a lot @ixxelles , it also solved my error “MySQL server has gone away”
Ok, I need some help. If someone would be so kind as to pm me. PHP, SQL, is not my forte. I have an idea for getting this and I would like if someone could help me putting my idea into motion. I have done my research and I have found an avenue of approach. But I am trying to run a local database to utilize an exploit using mysql. I installed gave a password etc. I start the service and try to login and get denied every time. I have been round and round doing this. So I figured I would come here to get some help. If anyone would be so kind.
I am at the very last step before getting root, but my attack is falling down somewhere and I don’t know why! I have successfully hijacked s*****.. If I run the commands from b***.** in the interpreter, my code gets executed, but not when I call a****_t****.** Would really appreciate it if someone could PM me…
I really hated the foothold/user but the root path was awesome and made up for the prior annoyance. I have some leftover questions about the a*****r bypass that I can’t find in the exploit docs so if anyone can help DM me please.
Foothold: My problem was none of the relevant words were in my wordlists
User: Very odd for an easy box, requires some effort.
Root: A really cool idea, learned a lot and its valuable for the future.