ColddBox: Easy

Room Link: https://tryhackme.com/room/colddboxeasy

Initial Scan

Kali

nmap -A $VICTIM

Scan all ports

port 4512 found

Kali

TCP/80 - HTTP

Kali

Kali

Reverse Shell

revshell code

Kali

Then just go to a page that doesn't exist, in this case p=1 existed but p=2 did not.

Victim

TCP/4512 - SSH

Victim

Privilege Escalation Option 1 - VIM

Victim

Privilege Escalation Option 2 - FTP

Victim

Privilege Escalation Option 3 - chmod

Victim

Victim

Last updated