• XSS.stack #1 – первый литературный журнал от юзеров форума

escaping RDweb limitations

iHack

CD-диск
Пользователь
Регистрация
25.02.2024
Сообщения
15
Реакции
1
Гарант сделки
1
Hello! I'm having a hard time escaping/using RDweb access as a foothold because it's limited to pre-set programs and explorer is not one of those. Any experienced pentesters that can spare a tip? How do i launch explorer/cmd/powershell in this situation? Thanks.
 
1. Press ctrl + alt + del and open task manager. From task manager, launch cmd or powershell.
2. Explore the program in which you are stuck. Some times, there are options to import or save, in which you will be able to open file explorer. From there, you can open a new window, and you will have a way to access cmd or powershell (if it's not disabled by admin)
3. Don't be discouraged. From my experience, there's always a way to use the entire system.
 
Последнее редактирование:
in this particular case, since the sys admins had very little hardening in place, 2 approaches worked: opening a save window and opening cmd from it's path and sticky keys > help > open control panel > open cmd. thanks for the advice
 


Напишите ответ...
  • Вставить:
Прикрепить файлы
Верх