Shuciran Pentesting Notes

Zeppelin (Insane)

Host entries 10.0.14.54 Content Zeppelin RCE in Notebooks dset Prototype Pollution Reconnaissance Initial reconnaissance for TCP ports nmap -p- -sS --open --min-rate 500 -Pn -n -vvvv -oG...

Webamok (Intermediate)

Host entries 10.0.160.236 webamok.echocity-f.com Content Default Credentials WBCE CMS 1.5.3 RCE via admin/languages/install.php Pydash Command Injection (CVE-2023-26145) Reconnaissan...

Catcabbage (Intermediate)

Host entries 10.0.160.219 catcabbage.echocity-f.com Content Default Credentials Blackcat Cms v1.4 - Remote Code Execution (RCE) RCE in broccoli-compass Reconnaissance Initial reconn...

Bunreal (Intermediate)

Host entries 10.0.14.39 Content Online Food Ordering System SQL Injection byondreal/accesor Prototype Pollution Reconnaissance Initial reconnaissance for TCP ports nmap -p- -sS --open --...

Superclass (Advanced)

Host entries 10.0.160.234 superclass.echocity-f.com Content Unrestricted File Upload on Open eClass leading to RCE autostart Program as Root on supervisor.conf Reconnaissance Initial ...

Maildev (Intermediate)

Host entries 10.0.160.229 Content MailDev 2.1.0 Arbitrary File Write leading to RCE Reconnaissance Initial reconnaissance for TCP ports # Nmap 7.94SVN scan initiated Fri Jan 31 12:36:09 20...

Squealer (Advanced)

Host entries 10.0.14.48 Content Squirrelly v9.0.0 RCE (CVE-2024-40453) Reconnaissance Initial reconnaissance for TCP ports cat allPorts # Nmap 7.94SVN scan initiated Fri Jan 31 00:00:23 2...

Magical (Advanced)

Host entries 10.0.160.228 Content Default Credentials SiteMagic CMS Remote Code Execution (RCE) Write permissions on binary allowed to run as sudo Reconnaissance Initial reconnaissance...

Filethingies (Advanced)

Host entries 10.0.160.223 Content Default Credentials (admin:admin) File Thingie 2.5.7 - Remote Code Execution (RCE) LFI through Web Server running as root Reconnaissance Initial recon...

Brainrot (Advanced)

Host entries 10.0.14.38 Content ThinkPHP Deserialization vulnerability [CVE-2024-44902] Protoype Pollution on @bit/loader [CVE-2024-24293] Reconnaissance Initial reconnaissance for TCP p...