当前位置:网站首页>oscp raven2靶机渗透过程
oscp raven2靶机渗透过程
2022-07-06 06:18:00 【shatianyzg】
信息侦察阶段
用dirb扫描发现以下信息
---- Entering directory: http://172.16.100.142/vendor/ ----
(!) WARNING: Directory IS LISTABLE. No need to scan it.
(Use mode ‘-w’ if you want to scan it anyway)

找到第一个flag
寻找PHPMailer 5.2.16 的exp
searchsploit phpmailer

拷贝exp到当前目录

利用40974.py获得shell,拿到第二个flag
边栏推荐
- D - How Many Answers Are Wrong
- Still worrying about how to write web automation test cases? Senior test engineers teach you selenium test case writing hand in hand
- 全程实现单点登录功能和请求被取消报错“cancelToken“ of undefined的解决方法
- Function of activation function
- 曼哈顿距离和-打印菱形
- B - The Suspects
- [C language] string left rotation
- 模拟卷Leetcode【普通】1405. 最长快乐字符串
- JDBC Requset 对应内容及功能介绍
- 【Tera Term】黑猫带你学TTL脚本——嵌入式开发中串口自动化神技能
猜你喜欢

Database - current read and snapshot read

ICLR 2022 spotlight | analog transformer: time series anomaly detection method based on correlation difference

keil MDK中删除添加到watch1中的变量

数据库隔离级别

Nodejs realizes the third-party login of Weibo

浅谈专项测试之弱网络测试

isam2运行流程

B - The Suspects

What are the test sites for tunnel engineering?
![[eolink] PC client installation](/img/91/8b3c4264e544b14f926e91edddf18d.png)
[eolink] PC client installation
随机推荐
LeetCode 732. 我的日程安排表 III
Significance of unit testing
还在为如何编写Web自动化测试用例而烦恼嘛?资深测试工程师手把手教你Selenium 测试用例编写
Construction and integration of Zipkin and sleuth for call chain monitoring
LeetCode 731. 我的日程安排表 II
模拟卷Leetcode【普通】1414. 和为 K 的最少斐波那契数字数目
自定义指定路由上的Gateway过滤器工厂
Isam2 and incrementalfixedlagsmooth instructions in gtsam
VINS-Mono: A Robust and Versatile Monocular Visual-Inertial State Estimator
Hypothesis testing learning notes
Career advancement Guide: recommended books for people in big factories
数学三大核心领域概述:代数
The latest 2022 review of "graph classification research"
Request forwarding and redirection
黑猫带你学UFS协议第4篇:UFS协议栈详解
E - food chain
Properties file
LeetCode 729. 我的日程安排表 I
全程实现单点登录功能和请求被取消报错“cancelToken“ of undefined的解决方法
通过修改style设置打印页样式