Agent T

Room Link: https://tryhackme.com/room/agenttarrow-up-right

Initial Scan

Kali

nmap -A $VICTIM

Scan all ports

No other ports found.

Kali

TCP/80 - HTTP

Dirb wasn't working so I went to the url and it brought me to the admin page, but nothing actually worked.

In the burp request we can see it is powered by PHP/8.1.0-dev which has a rce exploit.

Exploit

Last updated