Zipper
Gaining Access
$ nmap -p- --min-rate 3000 10.129.1.198
Starting Nmap 7.93 ( https://nmap.org ) at 2024-03-14 23:19 EDT
Nmap scan report for 10.129.1.198
Host is up (0.0099s latency).
Not shown: 65532 closed tcp ports (conn-refused)
PORT STATE SERVICE
22/tcp open ssh
80/tcp open http
10050/tcp open zabbix-agent$ nmap -p 22,80,10050 -sC -sV --min-rate 3000 10.129.1.198
Starting Nmap 7.93 ( https://nmap.org ) at 2024-03-14 23:21 EDT
Nmap scan report for 10.129.1.198
Host is up (0.0075s latency).
PORT STATE SERVICE VERSION
22/tcp open ssh OpenSSH 7.6p1 Ubuntu 4 (Ubuntu Linux; protocol 2.0)
| ssh-hostkey:
| 2048 5920a3a098f2a7141e08e09b8172990e (RSA)
| 256 aafe25f821247cfcb54b5f0524694c76 (ECDSA)
|_ 256 892837e2b6ccd580381fb26a3ac3a184 (ED25519)
80/tcp open http Apache httpd 2.4.29 ((Ubuntu))
|_http-title: Apache2 Ubuntu Default Page: It works
|_http-server-header: Apache/2.4.29 (Ubuntu)
10050/tcp open tcpwrapped
Service Info: OS: Linux; CPE: cpe:/o:linux:linux_kernelWeb Enum -> Zabbix





Zabbix API



Privilege Escalation
Zapper Creds

SUID Binary RE -> Root


Last updated