Mice 🔹
Enumeration
Initial Access
We find an exploit for remotemouse
: https://github.com/p0dalirius/RemoteMouse-3.008-Exploit
I executed this in two parts: first, get a reverse shell from httpserver
and then execute it.
Get the flag.
Privilege Escalation
Searching in the home folder, we find a filezilla
base64 password.
ControlFreak11
This user belongs to remote users
, so maybe we can access it using xfreerdp
.
remotemouse
is running with admin privileges, so open it from the task manager, go to settings, and change...
In the folder dialog, put cmd
in the search bar.
Post Exploitation
Get the flag.