当前位置:网站首页>HTB-Shocker
HTB-Shocker
2022-08-01 14:04:00 【How good is always late at night.】
Information Collection
- ssh
- http
There is very little information collected, the directory should be scanned for additional extensions, dirbuster only has the php extension by default.
Take a look at user.txt
, I found that I don't seem to understand it.
Go search to see what is the relationship between the twoWhat conditions do these two meet?
I got something and found Shellshock
Power On
Elevation of Privilege
How to create a /bin/bash session through perl, I found the parameter for one-time code execution by searching -e
Also searched for perl commands to execute system commands
No accident exec
also works
边栏推荐
猜你喜欢
【无标题】
【5GC】5G网络切片与5G QoS的区别?
postgresql之page分配管理(一)
Koreographer Professional Edition丨一款Unity音游插件教程
Based on 10 years of experience in stability assurance, what are the three key questions to be answered in failure recovery?|TakinTalks big coffee sharing
热心肠:关于肠道菌群和益生菌的10个观点
What is consistent hashing?In what scenarios can it be applied?
经纬信息IPO过会:年营收3.5亿 叶肖华控制46.3%股权
全球都热炸了,谷歌服务器已经崩掉了
Efficiency tools to let programmers get off work earlier
随机推荐
Qt实战案例(55)——利用QDir删除选定文件目录下的空文件夹
性能优化——渲染优化笔记
数据挖掘-03
170页6万字智慧能源管理平台建设方案书
灵魂发问:MySQL是如何解决幻读的?
微服务原生案例搭建
Istio Pilot代码深度解析
Programmer's Romantic Tanabata
NFV迈向云原生时代:Network Service Mesh项目介绍
直播系统聊天技术(八):vivo直播系统中IM消息模块的架构实践
2022-07-29 网工进阶(二十二)BGP-其他特性(路由过滤、团体属性、认证、AS欺骗、对等体组、子路由器、路由最大接收数量)
消息中间件解析 | 如何正确理解软件应用系统中关于系统通信的那些事?
HTB-Mirai
【每日一题】1161. 最大层内元素和
牛客刷SQL--6
【每日一题】592. 分数加减运算
PIR人体感应AC系列感应器投光灯人体感应开关等应用定制方案
易优压双驱挖掘机压路机器类网站源码 v1.5.8
RGB系列开发稳定响应快速灯带拾音灯氛围灯等应用定制方案
【每日一题】1331. 数组序号转换