David Bombal cover image

#284: Metasploit

David Bombal

00:00

How to Get a Shell on a Remote Machine by Exploiting a Vulnerability in Apache

You're going to Apache script. Is that right? That's exactly right. And since it was running with the permissions of that service account, that's the account we got when it ran the code to give me a shell back to Metasploit. But the point is you manage to get a shell on a remote machine by using exploiting a vulnerability in Apache or something. So where are we? Cgibin, let's get out of those. Let's go tocd slash var slash dub dub. Take a look in there. And you'll notice we've got the b with cd bwap. And then here is the actual web application, all the PHP pages that

Transcript
Play full episode

The AI-powered Podcast Player

Save insights by tapping your headphones, chat with episodes, discover the best highlights - and more!
App store bannerPlay store banner
Get the app