HTB - Haystack

Getting Root:
Nmap
Enumeration
Checking Port 80

Checking the image
Google Translate

Gobuster on port 80 did not returned anything. I also tried with different User Agent
Checking port 9200

Gobuster
Research on Elasticsearch 6.4.2

Putting all together:
Getting a shell
Privilege Escalation

This box has the full ELK installed (Elastic, Logstash and Kibana)
Basic Enumeration shows we have access to the logstash configurations.
Last updated