HackTheBox:Blunder(Linux)
Lets hit this off with nmap scan. nmap scan We see that port 80 is open and certainly that’s where we will start but the site doesn’t have much for us. port 80 So we need to explore this a bit and do the directory busting for this target. directory busting We found the admin page , now again we hit a dead end since we don’t have credentials. login page So we do directory busting again. directory busting The other directories are not so interesting but this todo.txt is promising. todo.txt First thing, its written that they need to update the CMS which means that this version is definitely vulnerable and the other thing is that this fergus user needs to do something about uploading images. So we have a username but no password. For password we can brute force our way in but for that we can’t have a random list so we can use cewl tool to generate the wordlist. custom wordlist using cewl Now since we know its Bludit ,we should find some exploit which can help ...