majorjnr.blogg.se

Exiftool privesc
Exiftool privesc








exiftool privesc

I run it through exiftool - just in case - but come up empty.Īfter attempting to access a non-existant PHP file (index.php), we're presented with the response header 'X-Powered-By: PHP/5.3.3'. This looks to be a digital recreation of the original.

exiftool privesc

So we've got a single port open, apparently backed by an nginx server.Īfter browsing to the site, we're presented with the Dali painting 'The Persistence of Memory'. Nmap done: 1 IP address (1 host up) scanned in 62.28 seconds Read data files from: /usr/local/bin/./share/nmap TCP Sequence Prediction: Difficulty=263 (Good luck!) OS CPE: cpe:/o:linux:linux_kernel:2.6 cpe:/o:linux:linux_kernel:3 Warning: OSScan results may be unreliable because we could not find at least 1 open and 1 closed port |_http-title: The Persistence of Memory - Salvador Dali at 08:31Ĭompleted Parallel DNS resolution of 1 host. Initiating Parallel DNS resolution of 1 host. Service DiscoveryĪs usual, we start off with an nmap scan. This time, it's Persistence by Sagi and superkojiman. Having completed the awesome Sokar recently, I had to check out the other competition machines hosted by VulnHub.










Exiftool privesc