|
现在只对常读和星标的公众号才展示大图推送,建议大家把潇湘信安“设为星标”,否则可能看不到了!
正文
闲着发慌,fofa找了一个weblogic,直接获取administrator权限。
![图片[1]-实战!一次平平无奇内网渗透记录(内网渗透可以用来干嘛)-Pikachu Hacker](https://blog.x8s.pw/proxy.php?url=https://secpulseoss.oss-cn-shanghai.aliyuncs.com/wp-content/uploads/1970/01/beepress-image-201867-1686635431.png)
\Oracle\Middleware\wlserver_10.3\server\lib\consoleapp\webapp\framework\skins\wlsconsole\images\
http://xxxxxx/console/framework/skins/wlsconsole/images/123.jsp
\Oracle\Middleware\user_projects\domains\base_domain\servers\AdminServer\tmp\_WL_internal\uddiexplorer\随机字符\war\shell.jsp
http://xxxxx:7001/uddiexplorer/123.jsp
OracleMiddlewarewlserver_10.3serverlibconsoleappwebappframeworkskinswlsconsoleimages
http://xxxxxx/console/framework/skins/wlsconsole/images/123.jsp
OracleMiddlewareuser_projectsdomainsbase_domainserversAdminServertmp_WL_internaluddiexplorer随机字符warshell.jsp
http://xxxxx:7001/uddiexplorer/123.jsp
![图片[2]-实战!一次平平无奇内网渗透记录(内网渗透可以用来干嘛)-Pikachu Hacker](https://blog.x8s.pw/proxy.php?url=https://secpulseoss.oss-cn-shanghai.aliyuncs.com/wp-content/uploads/1970/01/beepress-image-201867-1686635432.png)
![图片[3]-实战!一次平平无奇内网渗透记录(内网渗透可以用来干嘛)-Pikachu Hacker](https://blog.x8s.pw/proxy.php?url=https://secpulseoss.oss-cn-shanghai.aliyuncs.com/wp-content/uploads/1970/01/beepress-image-201867-16866354321.png)
![图片[4]-实战!一次平平无奇内网渗透记录(内网渗透可以用来干嘛)-Pikachu Hacker](https://blog.x8s.pw/proxy.php?url=https://secpulseoss.oss-cn-shanghai.aliyuncs.com/wp-content/uploads/1970/01/beepress-image-201867-1686635434.png)
![图片[5]-实战!一次平平无奇内网渗透记录(内网渗透可以用来干嘛)-Pikachu Hacker](https://blog.x8s.pw/proxy.php?url=https://secpulseoss.oss-cn-shanghai.aliyuncs.com/wp-content/uploads/1970/01/beepress-image-201867-16866354341.png)
![图片[6]-实战!一次平平无奇内网渗透记录(内网渗透可以用来干嘛)-Pikachu Hacker](https://blog.x8s.pw/proxy.php?url=https://secpulseoss.oss-cn-shanghai.aliyuncs.com/wp-content/uploads/1970/01/beepress-image-201867-1686635438.png)
![图片[7]-实战!一次平平无奇内网渗透记录(内网渗透可以用来干嘛)-Pikachu Hacker](https://blog.x8s.pw/proxy.php?url=https://secpulseoss.oss-cn-shanghai.aliyuncs.com/wp-content/uploads/1970/01/beepress-image-201867-1686635439.png)
![图片[8]-实战!一次平平无奇内网渗透记录(内网渗透可以用来干嘛)-Pikachu Hacker](https://blog.x8s.pw/proxy.php?url=https://secpulseoss.oss-cn-shanghai.aliyuncs.com/wp-content/uploads/1970/01/beepress-image-201867-1686635441.png)
![图片[9]-实战!一次平平无奇内网渗透记录(内网渗透可以用来干嘛)-Pikachu Hacker](https://blog.x8s.pw/proxy.php?url=https://secpulseoss.oss-cn-shanghai.aliyuncs.com/wp-content/uploads/1970/01/beepress-image-201867-1686635445.png)
![图片[10]-实战!一次平平无奇内网渗透记录(内网渗透可以用来干嘛)-Pikachu Hacker](https://blog.x8s.pw/proxy.php?url=https://secpulseoss.oss-cn-shanghai.aliyuncs.com/wp-content/uploads/1970/01/beepress-image-201867-1686635447.png)
![图片[11]-实战!一次平平无奇内网渗透记录(内网渗透可以用来干嘛)-Pikachu Hacker](https://blog.x8s.pw/proxy.php?url=https://secpulseoss.oss-cn-shanghai.aliyuncs.com/wp-content/uploads/1970/01/beepress-image-201867-1686635451.png)
![图片[12]-实战!一次平平无奇内网渗透记录(内网渗透可以用来干嘛)-Pikachu Hacker](https://blog.x8s.pw/proxy.php?url=https://secpulseoss.oss-cn-shanghai.aliyuncs.com/wp-content/uploads/1970/01/beepress-image-201867-1686635453.png)
![图片[13]-实战!一次平平无奇内网渗透记录(内网渗透可以用来干嘛)-Pikachu Hacker](https://blog.x8s.pw/proxy.php?url=https://secpulseoss.oss-cn-shanghai.aliyuncs.com/wp-content/uploads/1970/01/beepress-image-201867-1686635455.png)
![图片[14]-实战!一次平平无奇内网渗透记录(内网渗透可以用来干嘛)-Pikachu Hacker](https://blog.x8s.pw/proxy.php?url=https://secpulseoss.oss-cn-shanghai.aliyuncs.com/wp-content/uploads/1970/01/beepress-image-201867-1686635456.png)
![图片[15]-实战!一次平平无奇内网渗透记录(内网渗透可以用来干嘛)-Pikachu Hacker](https://blog.x8s.pw/proxy.php?url=https://secpulseoss.oss-cn-shanghai.aliyuncs.com/wp-content/uploads/1970/01/beepress-image-201867-1686635457.png)
![图片[16]-实战!一次平平无奇内网渗透记录(内网渗透可以用来干嘛)-Pikachu Hacker](https://blog.x8s.pw/proxy.php?url=https://secpulseoss.oss-cn-shanghai.aliyuncs.com/wp-content/uploads/1970/01/beepress-image-201867-16866354571.png)
![图片[17]-实战!一次平平无奇内网渗透记录(内网渗透可以用来干嘛)-Pikachu Hacker](https://blog.x8s.pw/proxy.php?url=https://secpulseoss.oss-cn-shanghai.aliyuncs.com/wp-content/uploads/1970/01/beepress-image-201867-1686635458.png)
![图片[18]-实战!一次平平无奇内网渗透记录(内网渗透可以用来干嘛)-Pikachu Hacker](https://blog.x8s.pw/proxy.php?url=https://secpulseoss.oss-cn-shanghai.aliyuncs.com/wp-content/uploads/1970/01/beepress-image-201867-1686635459.png)
![图片[19]-实战!一次平平无奇内网渗透记录(内网渗透可以用来干嘛)-Pikachu Hacker](https://blog.x8s.pw/proxy.php?url=https://secpulseoss.oss-cn-shanghai.aliyuncs.com/wp-content/uploads/1970/01/beepress-image-201867-1686635461.png)
文章来源:先知社区(kone)原文地址:https://xz.aliyun.com/t/12570
本文作者:潇湘信安
本文为安全脉搏专栏作者发布,转载请注明:https://www.secpulse.com/archives/201867.html
© 版权声明
文章版权归作者所有,未经允许请勿转载。
THE END
暂无评论内容