👨🚀Vulnversity
Olá, viajante! Neste artigo, trago um write-up do desafio Vulnversity.
Reconhecimento
PORT STATE SERVICE VERSION
21/tcp open ftp vsftpd 3.0.3
22/tcp open ssh OpenSSH 7.2p2 Ubuntu 4ubuntu2.7
139/tcp open netbios-ssn Samba smbd 3.X - 4.X (workgroup: WORKGROUP)
445/tcp open netbios-ssn Samba smbd 3.X - 4.X (workgroup: WORKGROUP)
3128/tcp open http-proxy Squid http proxy 3.5.12
3333/tcp open http Apache httpd 2.4.18 ((Ubuntu))
Service Info: Host: VULNUNIVERSITY; OSs: Unix, Linux; CPE: cpe:/o:linux:linux_kernel


Exploração


.phtml




CTRL+Z > stty raw -echo > fg > export TERM=xterm
user.txtEscalação de Privilégio

systemctl pode ser executado com permissões SUID
systemctl


root.txtLast updated