Cap

#easy #linux #idor #capabilities

https://app.hackthebox.com/machines/Caparrow-up-right


Enumeration

Wappalyzer

http://10.10.10.245/arrow-up-right

IDOR

IDOR

http://10.10.10.245/data/0arrow-up-right

Click on Download

Open file 0.pcap with Wireshark

Filter

USER: nathan PASSWORD: Bu***********3!

FTP

SSH

Privilege Escalation

CAP_SETUID

CAP_SETUID/SETGID Capabilities

Last updated