exposed shell

Status
Not open for further replies.

syringe

In Runtime
Messages
111
hi whats up??

my friend ask me to pentest to his server and i started with nmap after that i started nikto and found very intresting
file on the server

nikto has found a shell in the cgi dir (cgi/bash),well i though i will finish the pentest just after 10 min .

but i was unable to communicete with that shell the server sayd "404 not found" .

if there is a shell exposed in the server i have to communicete with him and if its work i need to tell my friend to delete the file.

how can i commuincete with that shell ??

any ideas and links will be great .

the server runing under apache 2.0.55 and

tnx in advence.
 
If you want a serious pentest, then I'd suggest Phlak (Professional Hackers Linux Assult Kit), a LiveCD with some very interesting tools. You could also try Knoppix STD, again LiveCD with security tools.

Remember that if you use these tools, you use then at your own risk. And that the developers who make the tools except no responsible for what you do with them.
 
Status
Not open for further replies.
Back
Top Bottom