80
Last updated
Last updated
Trying dirb:
We find extplorer:
Now upload a php-reverse-shell.php:
We can crack the dora hash:
So now checking the disk /
is mounted on:
Trying admin:admin
We have a shell as www-data.
Now digging in the extplorer: We find hashes
Now we can switch to dora in the shell: We are in disk group so we can access root user.
Now cracking the hash with john we get the password for root: We can switch to root: