7742
Last updated
Last updated
Running feroxbuster:
Can be potential usernames.
We have an authorized key in max zip file: With a single command allowed and a private key: Also a tomcat password: tomcat-users.xml.bak
Then scp_wrapper.sh:
Now we can try running this script with ssh:
Now we see that we can run scp. So modifying the authorized keys to remove the command limiting part: Now:
We transferred the modified authorized keys to the target. Now dennis has local.txt:
Now running linpeas: Now using gtfobins: