Hack The Box: Tabby
Jump Ahead: Enum – Initial Shell – User – Root – Resources TL;DR; To solve this machine, we began by enumerating services – finding 3 ports open. On the news page of the website, we find an LFI vulnerability. Exploiting the vulnerability, we are able to extract a set of credentials for the Tomcat webserver. […]