ROOTED!! Fun PE and fun box, especially once everyone stopped with the resetting. Thanks!
I have the credentials. How can I login to the mr? Or, how can I jump from the ht-Mr to the M***r?
Rooted, well its was a easy-medium box for me.
Lot of little tricks everywhere along the road.
PM for nudge.
Type your comment> @p3r14n3gr4 said:
I have the credentials. How can I login to the mr? Or, how can I jump from the ht-Mr to the M***r?
You donāt need to jump higher, current user can do it. Check the vendors docs as to what you can do with the powers of the āroleā you have. A bit of curley-wurley later, then to a txt mode will get you off to war soon enoughā¦
ROOTED!
I had a lot of fun with this machine: I always like to play with the cat, even if the foothold was quite tricky, so thanks @egre55
Foothold: this was the most difficult part for me, I want to give you two tips:
- sometimes you āseeā more without a GUI
- install and run that service locally, it helped me both with the LI and the WR
User: if a file belongs to who you are looking for probably it is usefulā¦
Root: I realized what to exploit almost immediately (thanks Google) but then I wasted a lot of time due to a ālocationā issue. Nice technique btw!
As always feel free to PM (here, not in my wall please) if you need help!
Type your comment> @TazWake said:
@gunroot said:
(Quote)
First time round, my user account could do things as the super user without a password. After a reboot this was no longer the case.
Oh! Thatās awkward bro. Some people forgot to clear the tracks they created.
Type your comment> @holeymoley said:
Type your comment> @p3r14n3gr4 said:
I have the credentials. How can I login to the mr? Or, how can I jump from the ht-Mr to the M***r?
You donāt need to jump higher, current user can do it. Check the vendors docs as to what you can do with the powers of the āroleā you have. A bit of curley-wurley later, then to a txt mode will get you off to war soon enoughā¦
Trying that, but ā401 Unauthorizedā always
Type your comment> @p3r14n3gr4 said:
Type your comment> @holeymoley said:
Type your comment> @p3r14n3gr4 said:
I have the credentials. How can I login to the mr? Or, how can I jump from the ht-Mr to the M***r?
You donāt need to jump higher, current user can do it. Check the vendors docs as to what you can do with the powers of the āroleā you have. A bit of curley-wurley later, then to a txt mode will get you off to war soon enoughā¦
Trying that, but ā401 Unauthorizedā always
try to enclose your pwd in single quotes in your command - there are a few characters in it that might be expanded otherwiseā¦ also double and treble check the path in the address you call, it should be to m*****r not ****-******r
Thank you!!!
Type your comment> @holeymoley said:
Type your comment> @p3r14n3gr4 said:
Type your comment> @holeymoley said:
Type your comment> @p3r14n3gr4 said:
I have the credentials. How can I login to the mr? Or, how can I jump from the ht-Mr to the M***r?
You donāt need to jump higher, current user can do it. Check the vendors docs as to what you can do with the powers of the āroleā you have. A bit of curley-wurley later, then to a txt mode will get you off to war soon enoughā¦
Trying that, but ā401 Unauthorizedā always
try to enclose your pwd in single quotes in your command - there are a few characters in it that might be expanded otherwiseā¦ also double and treble check the path in the address you call, it should be to m*****r not ****-******r
I gave you respect
Type your comment> @Achille said:
Root: I realized what to exploit almost immediately (thanks Google) but then I wasted a lot of time due to a ālocationā issue. Nice technique btw!
I think I have the same problem and, frankly, I think Iām going crazy. A little nudge, maybe?
Iām new in this (not very). just a hint, where to look? No big hintsā¦ just a guidance will do. Thanks in advance.
Hi everybody, iām stuck logged in as t*t in h-******r.
Can someone give me nudge?
Thanks.
Type your comment> @Invited said:
Hi everybody, iām stuck logged in as t*t in h-******r.
Can someone give me nudge?
Thanks.
text mode is the answer. Read the docu you have in the manager app
@nubie1989 said:
Iām new in this (not very). just a hint, where to look? No big hintsā¦ just a guidance will do. Thanks in advance.
news
@Invited said:
Hi everybody, iām stuck logged in as t*t in h-******r.
Can someone give me nudge?
Thanks.
text mode. Look at your user privileges in the file you found with the password, then read what those privileges means in the docu you have on the app
Type your comment> @p3r14n3gr4 said:
@nubie1989 said:
Iām new in this (not very). just a hint, where to look? No big hintsā¦ just a guidance will do. Thanks in advance.news
cant parse xmlā¦
for the privsec section I got this error when I run the final commad l*c e**c **** /bin/sh
~ # ;5R;5Rid
;5R;5Rid
/bin/sh: syntax error: unexpected ā;ā
is this normal ???
@nubie1989 said:
Type your comment> @p3r14n3gr4 said:
@nubie1989 said:
Iām new in this (not very). just a hint, where to look? No big hintsā¦ just a guidance will do. Thanks in advance.news
cant parse xmlā¦
Any idea why not?
@zaaza said:
for the privsec section I got this error when I run the final commad l*c e**c **** /bin/sh
~ # ;5R;5Rid
;5R;5Rid
/bin/sh: syntax error: unexpected ā;āis this normal ???
No but Iāve seen it happen. The display is not showing as normal but that shouldnāt be an issue. Try backspacing a few times to make sure it hasnāt carried across extra characters.