OPENSSL
OFFSEC - Proving Grounds - SNOOKUMS
·2363 words·12 mins
OFFSEC PG PRACTICE
MYSQL
OPENSSL
PHP Gallery v0.8 has a RFI flaw. Use PHP shell, get michael’s MySQL creds, SSH in, find writable /etc/passwd via linpeas, set root password with OpenSSL and gain root.