xsspresso
xsspresso
Tags/ Fuzzing

Fuzzing

2 writeups tagged with Fuzzing

WebMediumLinux

HTB — Sense

pfSense 2.1.3 authenticated command injection (CVE-2014-4688). Credentials found via directory fuzzing on the web interface.

#pfSense#Command Injection#CVE-2014-4688
Mar 29, 2022HackTheBox
WebEasyLinux

HTB — Bashed

phpbash webshell discovered via directory fuzzing. Lateral movement through sudo scriptmanager, cron-based root.

#Webshell#Fuzzing#Cron
Mar 24, 2022HackTheBox