Lame - Easy

Introduction@Lame:~$

Name

IP

10.10.10.3

Os

Linux

Points

20

Difficulty

Easy

Creator

Release Date

15 / Mar / 2017

This is the first box in HTB and it was so easy. You can get root shell from vulnerable smb service.We don't need to escalate to get root shell.

Enumeration

Nmap

There is four port open and FTP can login with anonymous user.

FTP Anonymous

But there is no interesting files.

SMB Enumeration

When we login with anonymous using smbclient, it will show us Samba 3.0.20-Debian

Let's find exploit for that in metasploit

Getting Root by Metasploit

Now we get a shell as root.

Last updated