FunBoxEasyEnum
Summary
Step
Action
Tool
Gained
Recon
$ sudo nmap -T4 --min-rate 10000 -p- -open 192.168.210.132 -A
PORT STATE SERVICE VERSION
22/tcp open ssh OpenSSH 7.6p1 Ubuntu 4ubuntu0.3 (Ubuntu Linux; protocol 2.0)
80/tcp open http Apache httpd 2.4.29 ((Ubuntu))
|_http-title: Apache2 Ubuntu Default Page: It works
|_http-server-header: Apache/2.4.29 (Ubuntu)$ whatweb http://192.168.210.132
http://192.168.210.132 [200 OK] Apache[2.4.29], Country[RESERVED][ZZ], HTTPServer[Ubuntu Linux][Apache/2.4.29 (Ubuntu)], IP[192.168.210.132], Title[Apache2 Ubuntu Default Page: It works]$ ffuf -u http://192.168.210.132/FUZZ -w /usr/share/seclists/Discovery/Web-Content/directory-list-2.3-medium.txt -ac -ic -c -e .php,.txt
javascript [Status: 301, Size: 323, Words: 20, Lines: 10, Duration: 41ms]
mini.php [Status: 200, Size: 3828, Words: 152, Lines: 115, Duration: 40ms]
robots.txt [Status: 200, Size: 21, Words: 2, Lines: 2, Duration: 39ms]
phpmyadmin [Status: 301, Size: 323, Words: 20, Lines: 10, Duration: 39ms]Auth Bypass


RCE

Last updated