Codify
Gaining Access
$ nmap -p- --min-rate 3000 10.129.48.74
Starting Nmap 7.93 ( https://nmap.org ) at 2023-11-04 23:06 EDT
Nmap scan report for 10.129.48.74
Host is up (0.016s latency).
Not shown: 65532 closed tcp ports (conn-refused)
PORT STATE SERVICE
22/tcp open ssh
80/tcp open http
3000/tcp open ppp$ nmap -p 80,3000 -sC -sV --min-rate 3000 10.129.48.74
Starting Nmap 7.93 ( https://nmap.org ) at 2023-11-04 23:07 EDT
Nmap scan report for 10.129.48.74
Host is up (0.011s latency).
PORT STATE SERVICE VERSION
80/tcp open http Apache httpd 2.4.52
|_http-title: Did not follow redirect to http://codify.htb/
|_http-server-header: Apache/2.4.52 (Ubuntu)
3000/tcp open http Node.js Express framework
|_http-title: Codify
Service Info: Host: codify.htbWeb Enum -> Node.js RCE






Privilege Escalation
Viewing RCE Vuln
Tickets -> User Password

Sudo Privileges -> Wildcard Bypass

Last updated