🐧
Exfiltrated
  • Exfiltrated
    • Summary
  • Enumeration
    • TCP
    • UDP
    • Web Services
      • Nikto
      • Dirb Extensions
      • Dirsearch
      • goBuster
      • Robots
      • WhatWeb
    • Other Services
      • SSH
  • Exploitation
  • Priv Escalation
  • Notes
Powered by GitBook
On this page

Exploitation

PreviousSSHNextPriv Escalation

Last updated 2 years ago

I was able to see the exact version of subrion the website was running based on the header that the website was showing on the tab. The version was 4.2.

Unfortunately for us we need authentication for this to work. However we were able to log in with default credentials, these being admin:admin.

Subrion CMS 4.2.1 - Arbitrary File UploadExploit Database
Logo