Chemistry

Recon

nmap_scan.log|h-50%_styled

HTTP (5000)

Writeup.png

Creds: x:y

Writeup-1.png

Example CIF: http://10.129.194.131:5000/static/example.cifarrow-up-right

CVE-2024-23346

Critical Security Flaw in Pymatgen Library (CVE-2024-23346)arrow-up-right

PoC that worked:

Reverse Shell

Source

app.py source:

Database

Writeup-2.png

Drop hashes in https://crackstation.netarrow-up-right:

Writeup-3.png

SSH (rosa)

User.txt

Privilege Escalation

First upgrade shell to SSH:

Enumerate:

Site Monitoring

We don't have permission to read files in /opt, port forward the application.

Writeup-4.png

CVE-2024-23334

Server version is disclosed via headers

https://github.com/z3rObyte/CVE-2024-23334-PoCarrow-up-right

/opt/monitoring_site/app.py

SSH (root)

root/.ssh/id_rsa

Root.txt

Last updated