, ,

HTB : Artic

https://app.hackthebox.com/machines/Arctic


Enumeration

Run nmap scan to find for open ports.

Port 8500 gives us the following:

CFIDE seems like some kind of interface

Heading to the administrator page we can find login interface with version number.

Found a potential exploit on searchsploit.


Foothold

Download the exploit.

Edit the exploit with the necessary details.

Start a nc listener and run the exploit.

A shell is gained.

First flag is found on user tolis desktop.

Privilege escalation

Run the windows exploit suggester to find for potential exploits.

Use MS10-059

Get the exploit from here.

Transfer the exploit the windows machine.

Run the exploit and start a nc listener.

A shell is gained.

Root flag is found.

Leave a Reply

Fill in your details below or click an icon to log in:

WordPress.com Logo

You are commenting using your WordPress.com account. Log Out /  Change )

Twitter picture

You are commenting using your Twitter account. Log Out /  Change )

Facebook photo

You are commenting using your Facebook account. Log Out /  Change )

Connecting to %s

Comments (

0

)

%d bloggers like this: