Official Tabby Discussion

ROOTED!! Fun PE and fun box, especially once everyone stopped with the resetting. Thanks!

I have the credentials. How can I login to the mr? Or, how can I jump from the ht-Mr to the M***r?

Rooted, well its was a easy-medium box for me.
Lot of little tricks everywhere along the road.
PM for nudge.

Type your comment> @p3r14n3gr4 said:

I have the credentials. How can I login to the mr? Or, how can I jump from the ht-Mr to the M***r?

You donā€™t need to jump higher, current user can do it. Check the vendors docs as to what you can do with the powers of the ā€˜roleā€™ you have. A bit of curley-wurley later, then to a txt mode will get you off to war soon enoughā€¦

ROOTED!

I had a lot of fun with this machine: I always like to play with the cat, even if the foothold was quite tricky, so thanks @egre55

Foothold: this was the most difficult part for me, I want to give you two tips:

  1. sometimes you ā€œseeā€ more without a GUI
  2. install and run that service locally, it helped me both with the LI and the WR

User: if a file belongs to who you are looking for probably it is usefulā€¦

Root: I realized what to exploit almost immediately (thanks Google) but then I wasted a lot of time due to a ā€œlocationā€ issue. Nice technique btw!

As always feel free to PM (here, not in my wall please) if you need help!

Type your comment> @TazWake said:

@gunroot said:

(Quote)
First time round, my user account could do things as the super user without a password. After a reboot this was no longer the case.

Oh! Thatā€™s awkward bro. Some people forgot to clear the tracks they created.

Type your comment> @holeymoley said:

Type your comment> @p3r14n3gr4 said:

I have the credentials. How can I login to the mr? Or, how can I jump from the ht-Mr to the M***r?

You donā€™t need to jump higher, current user can do it. Check the vendors docs as to what you can do with the powers of the ā€˜roleā€™ you have. A bit of curley-wurley later, then to a txt mode will get you off to war soon enoughā€¦

Trying that, but ā€œ401 Unauthorizedā€ always

Type your comment> @p3r14n3gr4 said:

Type your comment> @holeymoley said:

Type your comment> @p3r14n3gr4 said:

I have the credentials. How can I login to the mr? Or, how can I jump from the ht-Mr to the M***r?

You donā€™t need to jump higher, current user can do it. Check the vendors docs as to what you can do with the powers of the ā€˜roleā€™ you have. A bit of curley-wurley later, then to a txt mode will get you off to war soon enoughā€¦

Trying that, but ā€œ401 Unauthorizedā€ always

try to enclose your pwd in single quotes in your command - there are a few characters in it that might be expanded otherwiseā€¦ also double and treble check the path in the address you call, it should be to m*****r not ****-******r

Thank you!!!

Type your comment> @holeymoley said:

Type your comment> @p3r14n3gr4 said:

Type your comment> @holeymoley said:

Type your comment> @p3r14n3gr4 said:

I have the credentials. How can I login to the mr? Or, how can I jump from the ht-Mr to the M***r?

You donā€™t need to jump higher, current user can do it. Check the vendors docs as to what you can do with the powers of the ā€˜roleā€™ you have. A bit of curley-wurley later, then to a txt mode will get you off to war soon enoughā€¦

Trying that, but ā€œ401 Unauthorizedā€ always

try to enclose your pwd in single quotes in your command - there are a few characters in it that might be expanded otherwiseā€¦ also double and treble check the path in the address you call, it should be to m*****r not ****-******r

I gave you respect

Type your comment> @Achille said:

Root: I realized what to exploit almost immediately (thanks Google) but then I wasted a lot of time due to a ā€œlocationā€ issue. Nice technique btw!

I think I have the same problem and, frankly, I think Iā€™m going crazy. A little nudge, maybe?

Iā€™m new in this (not very). just a hint, where to look? No big hintsā€¦ just a guidance will do. Thanks in advance.

Hi everybody, iā€™m stuck logged in as t*t in h-******r.
Can someone give me nudge?
Thanks.

Type your comment> @Invited said:

Hi everybody, iā€™m stuck logged in as t*t in h-******r.
Can someone give me nudge?
Thanks.

text mode is the answer. Read the docu you have in the manager app

@nubie1989 said:
Iā€™m new in this (not very). just a hint, where to look? No big hintsā€¦ just a guidance will do. Thanks in advance.

news

@Invited said:
Hi everybody, iā€™m stuck logged in as t*t in h-******r.
Can someone give me nudge?
Thanks.

text mode. Look at your user privileges in the file you found with the password, then read what those privileges means in the docu you have on the app

Type your comment> @p3r14n3gr4 said:

@nubie1989 said:
Iā€™m new in this (not very). just a hint, where to look? No big hintsā€¦ just a guidance will do. Thanks in advance.

news

cant parse xmlā€¦

for the privsec section I got this error when I run the final commad l*c e**c **** /bin/sh

~ # ;5R;5Rid
;5R;5Rid
/bin/sh: syntax error: unexpected ā€œ;ā€

is this normal ???

@nubie1989 said:

Type your comment> @p3r14n3gr4 said:

@nubie1989 said:
Iā€™m new in this (not very). just a hint, where to look? No big hintsā€¦ just a guidance will do. Thanks in advance.

news

cant parse xmlā€¦

Any idea why not?

@zaaza said:

for the privsec section I got this error when I run the final commad l*c e**c **** /bin/sh

~ # ;5R;5Rid
;5R;5Rid
/bin/sh: syntax error: unexpected ā€œ;ā€

is this normal ???

No but Iā€™ve seen it happen. The display is not showing as normal but that shouldnā€™t be an issue. Try backspacing a few times to make sure it hasnā€™t carried across extra characters.