web services
___ _
( _ )_ _____| |__
/ _ \ \ /\ / / _ \ '_ \
| (_) \ V V / __/ |_) |
\___/ \_/\_/ \___|_.__/
adot8 <3
[+] Grabbing SSL certificate
CONNECTED(00000003)
depth=0 C = US, ST = Somewhere, L = Somecity, O = CompanyName, OU = "Organizational Unit Name (eg, section)", CN = "Common Name (eg, YOUR name)", emailAddress = Email Address
verify error:num=18:self-signed certificate
verify return:1
depth=0 C = US, ST = Somewhere, L = Somecity, O = CompanyName, OU = "Organizational Unit Name (eg, section)", CN = "Common Name (eg, YOUR name)", emailAddress = Email Address
verify error:num=10:certificate has expired
notAfter=Apr 6 19:21:35 2023 GMT
verify return:1
depth=0 C = US, ST = Somewhere, L = Somecity, O = CompanyName, OU = "Organizational Unit Name (eg, section)", CN = "Common Name (eg, YOUR name)", emailAddress = Email Address
notAfter=Apr 6 19:21:35 2023 GMT
verify return:1
---
Certificate chain
0 s:C = US, ST = Somewhere, L = Somecity, O = CompanyName, OU = "Organizational Unit Name (eg, section)", CN = "Common Name (eg, YOUR name)", emailAddress = Email Address
i:C = US, ST = Somewhere, L = Somecity, O = CompanyName, OU = "Organizational Unit Name (eg, section)", CN = "Common Name (eg, YOUR name)", emailAddress = Email Address
a:PKEY: rsaEncryption, 1024 (bit); sigalg: RSA-SHA256
v:NotBefore: Oct 14 19:21:35 2017 GMT; NotAfter: Apr 6 19:21:35 2023 GMT
-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----
---
Server certificate
subject=C = US, ST = Somewhere, L = Somecity, O = CompanyName, OU = "Organizational Unit Name (eg, section)", CN = "Common Name (eg, YOUR name)", emailAddress = Email Address
issuer=C = US, ST = Somewhere, L = Somecity, O = CompanyName, OU = "Organizational Unit Name (eg, section)", CN = "Common Name (eg, YOUR name)", emailAddress = Email Address
---
No client certificate CA names sent
Peer signing digest: SHA256
Peer signature type: RSA
Server Temp Key: DH, 1024 bits
---
SSL handshake has read 1951 bytes and written 655 bytes
Verification error: certificate has expired
---
New, SSLv3, Cipher is DHE-RSA-CAMELLIA256-SHA
Server public key is 1024 bit
Secure Renegotiation IS supported
Compression: NONE
Expansion: NONE
No ALPN negotiated
SSL-Session:
Protocol : TLSv1.2
Cipher : DHE-RSA-CAMELLIA256-SHA
Session-ID: 8CCD70B4863276E69A502F698DEF40EC9E4B595C3E450DF277F6F26FEE5E62BD
Session-ID-ctx:
Master-Key: 41D5A7E17928EAF8D67461E5B12DC71DA64B50838E8001224BADAF50DA53D6F9B08E13F3C27F68A9E2C036AEEACDBD5F
PSK identity: None
PSK identity hint: None
SRP username: None
TLS session ticket lifetime hint: 300 (seconds)
TLS session ticket:
0000 - e7 35 9e 67 75 55 18 8b-c1 cb 85 bd 37 9c 36 af .5.guU......7.6.
0010 - 08 2f 80 c7 e5 69 dd 7b-c8 d8 e6 e2 b8 ca aa 36 ./...i.{.......6
0020 - 12 64 11 34 33 02 50 4b-07 11 73 b5 40 05 eb ca .d.43.PK..s.@...
0030 - bc ac 96 95 ef 3a 9e 90-42 3c ed 29 f4 09 87 94 .....:..B<.)....
0040 - bc 75 01 8f fe 6c bf b7-b8 eb 98 da 50 45 1e 78 .u...l......PE.x
0050 - 51 82 68 49 31 dc 9a 16-bf 3a b9 7e 91 e3 e6 fc Q.hI1....:.~....
0060 - d4 58 88 0f 94 64 c9 65-6c c1 7a de 47 59 94 03 .X...d.el.z.GY..
0070 - fa bb 0f 00 1c 07 ee 6e-69 12 70 c7 f8 92 d4 fe .......ni.p.....
0080 - 0e 22 13 f6 45 76 94 aa-f5 74 c4 ee 45 2f b6 1c ."..Ev...t..E/..
0090 - f2 8f 71 ce 41 00 74 a0-31 d0 e3 3b 05 50 8f c7 ..q.A.t.1..;.P..
00a0 - a0 6f 37 70 7d 31 72 10-e9 de 8b 81 c1 02 e0 dd .o7p}1r.........
Start Time: 1717096900
Timeout : 7200 (sec)
Verify return code: 10 (certificate has expired)
Extended master secret: no
---
[+] Enumerating for directories and possible files with gobuster...
===============================================================
Gobuster v3.6
by OJ Reeves (@TheColonial) & Christian Mehlmauer (@firefart)
===============================================================
[+] Url: https://10.10.10.60/
[+] Method: GET
[+] Threads: 100
[+] Wordlist: /home/adot/opt/wordlists/directories1.txt
[+] Negative Status codes: 404
[+] User Agent: gobuster/3.6
[+] Extensions: php,txt,html
[+] Timeout: 10s
===============================================================
Starting gobuster in directory enumeration mode
===============================================================
/index.html (Status: 200) [Size: 329]
/index.php (Status: 200) [Size: 6690]
/themes (Status: 301) [Size: 0] [--> https://10.10.10.60/themes/]
/help.php (Status: 200) [Size: 6689]
/stats.php (Status: 200) [Size: 6690]
/css (Status: 301) [Size: 0] [--> https://10.10.10.60/css/]
/edit.php (Status: 200) [Size: 6689]
/includes (Status: 301) [Size: 0] [--> https://10.10.10.60/includes/]
/license.php (Status: 200) [Size: 6692]
/system.php (Status: 200) [Size: 6691]
/status.php (Status: 200) [Size: 6691]
/javascript (Status: 301) [Size: 0] [--> https://10.10.10.60/javascript/]
/changelog.txt (Status: 200) [Size: 271]
/classes (Status: 301) [Size: 0] [--> https://10.10.10.60/classes/]
/exec.php (Status: 200) [Size: 6689]
/widgets (Status: 301) [Size: 0] [--> https://10.10.10.60/widgets/]
/graph.php (Status: 200) [Size: 6690]
/tree (Status: 301) [Size: 0] [--> https://10.10.10.60/tree/]
/wizard.php (Status: 200) [Size: 6691]
/shortcuts (Status: 301) [Size: 0] [--> https://10.10.10.60/shortcuts/]
/pkg.php (Status: 200) [Size: 6688]
/installer (Status: 301) [Size: 0] [--> https://10.10.10.60/installer/]
/wizards (Status: 301) [Size: 0] [--> https://10.10.10.60/wizards/]
/xmlrpc.php (Status: 200) [Size: 384]
/reboot.php (Status: 200) [Size: 6691]
/interfaces.php (Status: 200) [Size: 6695]
Progress: 219930 / 882248 (24.93%)[ERROR] Get "https://10.10.10.60/usersearch.php": context deadline exceeded (Client.Timeout exceeded while awaiting headers)
[ERROR] Get "https://10.10.10.60/page-89.php": context deadline exceeded (Client.Timeout exceeded while awaiting headers)
[ERROR] Get "https://10.10.10.60/page-89.txt": context deadline exceeded (Client.Timeout exceeded while awaiting headers)
Progress: 222707 / 882248 (25.24%)[ERROR] Get "https://10.10.10.60/boone.php": context deadline exceeded (Client.Timeout exceeded while awaiting headers)
/csrf (Status: 301) [Size: 0] [--> https://10.10.10.60/csrf/]
/system-users.txt (Status: 200) [Size: 106]
/filebrowser (Status: 301) [Size: 0] [--> https://10.10.10.60/filebrowser/]
/%7Echeckout%7E (Status: 403) [Size: 345]
Progress: 868845 / 882248 (98.48%)[ERROR] Get "https://10.10.10.60/t11404.txt": context deadline exceeded (Client.Timeout exceeded while awaiting headers)
Progress: 882244 / 882248 (100.00%)
===============================================================
Finished
===============================================================
Last updated
Was this helpful?