Snookums
Last updated
Was this helpful?
Last updated
Was this helpful?
Nmap scan
FTP does allow anonymous login but I found nothing here.
Dirbuster scan
This page is vulnerable to remote file inclusion.
Had to use an already open port for reverse shell.
This does allow anonymous login.
db.php
Had to spawn a bash reverse shell back to another listener for this to let me log into the database. Spent a long time in a hole trying to figure out why I couldn't log into MySQL.
Linpeas found that /etc/passwd was writable by michael.