Tryhackme Vulnabilities 101 Çözümü By hacker0088 (1 Viewer)

31 

ARTIK BURADA YOK
stad
Credits
1,948
tryhackme profilim
eğer bilmiyorsanız lütfen internete vuln videos yazın ve önce ne olduğunu anlayın
Revealed content
  • An attacker has been able to upgrade the permissions of their system account from "user" to "administrator". What type of vulnerability is this ?
cevap : Operating System

  • You manage to bypass a login panel using cookies to authenticate. What type of vulnerability is this ?
cevap : Application Logic

  • What year was the first iteration of CVSS published ?
cevap : 2005

  • If you wanted to assess vulnerability based on the risk it poses to an organisation, what framework would you use ?
cevap : VPR

  • If you wanted to use a framework that was free and open-source, what framework would that be ?
cevap : CVSS

  • Using NVD, how many CVEs were submitted in July 2021 ?

cevap : 1585

  • Who is the author of Exploit-DB ?
cevap: Offensive Security

  • What type of vulnerability did we use to find the name and version of the application in this example ?
cevap : Version Disclosure

  • Follow along with the showcase of exploiting ACKme's application to the end to retrieve a flag. What is this flag?
Flag : THM{ACKME_ENGAGEMENT}

ve ctf bitti
 

Tron 

Pentester & Reverse Engineer
Legendary
Credits
142,385
tryhackme profilim
eğer bilmiyorsanız lütfen internete vuln videos yazın ve önce ne olduğunu anlayın
[Hidden content]
bu çözüm diğildir bir yerden writeup'a bakmış cevaplarında kopyala yapıştır ile yazmışsın privesc nasıl yapılmış sisteme nasıl sızılmış hiç bir bilgi yok.
 

Bu konuyu görüntüleyen kullanıcılar