I have rooted the box but interested to know if anyone got initial shell without using metasploit ? I found my usual ways of shelling wordpress ( theme template editing or uploading plugin) failed.
(Quote)
Must admit i had the same problem with the usual methods of rev shell with wordpress .Both template and plugin methods but wouldnt connect but had no problem with msf way.
Type your comment> @foalma321 said:
(Quote)
I can get it to run commands , have tried ping and have netcatted a file transfer, wrote a file...but cannot get a reverse sheel to pop..am i looking at this wrong ?
Currently have user but just wondered if anyone can tell me if S****k is the way to root ? have exploit but wondering if can be run without creds. Or am i in the wrong direction ?
Thanks
Type your comment> @T13nn3s said:
(Quote)
User1 to 2 has an easy way and hard one trolling the logs can be tedious but a popular enum script will give you what you need (latest ver)
Finally ROOTED !!! shout out to @Oussmak and @reedvaleeve. for their help steering me in the right direction. Fun box even though i pulled the few hairs i had left out!!!
Enumerate, enumerate,enumerate !
Type your comment> @Oussmak said:
(Quote)
Any chance you could pass the hint to me.. been stuck on this user switch for ages. Looking through a*****.l** for ages but dont really know what im looking for. Thanks
Really stuck on user 2, trawling through the logs at the mo with grep and zgrep but really need direction on best things to look for, any help would be most appreciated. Enjoying box so far..