Vulnversity

front

https://tryhackme.com/room/vulnversity

Open Ports:

ports

Gaining Access:

Port 80-

  1. Running dir bruteforce and found: internal
  2. .phtml file allowed to upload
  3. Upload revershell
    1. Ip/internal/uploads/rev.phtml this will exec the rev-shell file

User Flag:

flag

Privelege Escalation:

Root Flag:

root