Nmap Security Scanner
*Intro
*Ref Guide
*Install Guide
*Download
*Changelog
*Book
*Docs
Security Lists
*Nmap Hackers
*Nmap Dev
*Bugtraq
*Full Disclosure
*Pen Test
*Basics
*More
Security Tools
*Pass crackers
*Sniffers
*Vuln Scanners
*Web scanners
*Wireless
*Exploitation
*Packet crafters
*More
Site News
Site Search:
Exploit World
Advertising
About/Contact
Credits
Sponsors:
edgeos



Penetration Testing: RE: Port 9090 WServer??

RE: Port 9090 WServer??

From: Beauford, Jason <jbeauford_at_EightInOnePet.com>
Date: Tue, 17 May 2005 13:48:20 -0400

Can you use this:

http://publib16.boulder.ibm.com/doc_link/en_US/a_doc_lib/aixbman/wsmadmn
/wsmadmn.pdf

jmb

-----Original Message-----
From: xyberpix [mailto:xyberpix_at_xyberpix.com]
Sent: Tuesday, May 17, 2005 11:12 AM
To: pen-test_at_securityfocus.com
Subject: Port 9090 WServer??

Hi All,

I am evaluating a bit of kit here, and it has 3 open ports on it, 22,
9090 and 30000. 22 is obviously ssh, as I have an account on the device,
and using ssh to gain access drops me into a restricted shell.I have
tried a couple of way of breaking out of this, and none of them seem to
work, so if anyone has any sure fire ways to break out of a restricted
shell, would they please be kind enough to share them. The next
interesting point about the device is that if I telnet to port 9090,
this is what I get:

xyberpix_at_su621unix1> telnet hmc 9090
Trying 10.163.8.42...
Connected to sa44bshmc01.
Escape character is '^]'.

---> Now I hit Enter a couple of times and get this:

Language received from client:
Setlocale: C
Memory fault
WServer.HANDSHAKING 30001 WServer.HANDSHAKING
Connection to sa44bshmc01 closed by foreign host. xyberpix_at_su621unix1>

Does anyone know of anyway that I could try and use this to my
advantage, as it looks hopefull, but I'm not too sure?

TIA

xyberpix
Received on May 17 2005

[ Nmap | Sec Tools | Mailing Lists | Site News | About/Contact | Advertising | Privacy ]
edgeos