web services

  ___              _     
 ( _ )_      _____| |__  
 / _ \ \ /\ / / _ \ '_ \ 
| (_) \ V  V /  __/ |_) |
 \___/ \_/\_/ \___|_.__/ 
                         
      adot8 <3

[+] Grabbing SSL certificate

CONNECTED(00000003)
depth=0 C = US, ST = Somewhere, L = Somecity, O = CompanyName, OU = "Organizational Unit Name (eg, section)", CN = "Common Name (eg, YOUR name)", emailAddress = Email Address
verify error:num=18:self-signed certificate
verify return:1
depth=0 C = US, ST = Somewhere, L = Somecity, O = CompanyName, OU = "Organizational Unit Name (eg, section)", CN = "Common Name (eg, YOUR name)", emailAddress = Email Address
verify error:num=10:certificate has expired
notAfter=Apr  6 19:21:35 2023 GMT
verify return:1
depth=0 C = US, ST = Somewhere, L = Somecity, O = CompanyName, OU = "Organizational Unit Name (eg, section)", CN = "Common Name (eg, YOUR name)", emailAddress = Email Address
notAfter=Apr  6 19:21:35 2023 GMT
verify return:1
---
Certificate chain
 0 s:C = US, ST = Somewhere, L = Somecity, O = CompanyName, OU = "Organizational Unit Name (eg, section)", CN = "Common Name (eg, YOUR name)", emailAddress = Email Address
   i:C = US, ST = Somewhere, L = Somecity, O = CompanyName, OU = "Organizational Unit Name (eg, section)", CN = "Common Name (eg, YOUR name)", emailAddress = Email Address
   a:PKEY: rsaEncryption, 1024 (bit); sigalg: RSA-SHA256
   v:NotBefore: Oct 14 19:21:35 2017 GMT; NotAfter: Apr  6 19:21:35 2023 GMT
-----BEGIN CERTIFICATE-----
MIIEKDCCA5GgAwIBAgIJALChaIpiwz41MA0GCSqGSIb3DQEBCwUAMIG/MQswCQYD
VQQGEwJVUzESMBAGA1UECBMJU29tZXdoZXJlMREwDwYDVQQHEwhTb21lY2l0eTEU
MBIGA1UEChMLQ29tcGFueU5hbWUxLzAtBgNVBAsTJk9yZ2FuaXphdGlvbmFsIFVu
aXQgTmFtZSAoZWcsIHNlY3Rpb24pMSQwIgYDVQQDExtDb21tb24gTmFtZSAoZWcs
IFlPVVIgbmFtZSkxHDAaBgkqhkiG9w0BCQEWDUVtYWlsIEFkZHJlc3MwHhcNMTcx
MDE0MTkyMTM1WhcNMjMwNDA2MTkyMTM1WjCBvzELMAkGA1UEBhMCVVMxEjAQBgNV
BAgTCVNvbWV3aGVyZTERMA8GA1UEBxMIU29tZWNpdHkxFDASBgNVBAoTC0NvbXBh
bnlOYW1lMS8wLQYDVQQLEyZPcmdhbml6YXRpb25hbCBVbml0IE5hbWUgKGVnLCBz
ZWN0aW9uKTEkMCIGA1UEAxMbQ29tbW9uIE5hbWUgKGVnLCBZT1VSIG5hbWUpMRww
GgYJKoZIhvcNAQkBFg1FbWFpbCBBZGRyZXNzMIGfMA0GCSqGSIb3DQEBAQUAA4GN
ADCBiQKBgQC/sWU6By08lGbvttAfx47SWksgA7FavNrEoW9IRp0W/RF9Fp5BQesL
L3FMJ0MHyGcfRhnL5VwDCL0E+1Y05az8PY8kUmjvxSvxQCLn6Mh3nTZkiAJ8vpB0
WAnjltrTCEsv7Dnz2OofkpqaUnoNGfO3uKWPvRXl9OlSe/BcDStffQIDAQABo4IB
KDCCASQwHQYDVR0OBBYEFDK5DS/hTsi9SHxT749Od/p3Lq05MIH0BgNVHSMEgeww
gemAFDK5DS/hTsi9SHxT749Od/p3Lq05oYHFpIHCMIG/MQswCQYDVQQGEwJVUzES
MBAGA1UECBMJU29tZXdoZXJlMREwDwYDVQQHEwhTb21lY2l0eTEUMBIGA1UEChML
Q29tcGFueU5hbWUxLzAtBgNVBAsTJk9yZ2FuaXphdGlvbmFsIFVuaXQgTmFtZSAo
ZWcsIHNlY3Rpb24pMSQwIgYDVQQDExtDb21tb24gTmFtZSAoZWcsIFlPVVIgbmFt
ZSkxHDAaBgkqhkiG9w0BCQEWDUVtYWlsIEFkZHJlc3OCCQCwoWiKYsM+NTAMBgNV
HRMEBTADAQH/MA0GCSqGSIb3DQEBCwUAA4GBAHNn+1AX2qwJ9zhgN3I4ES1Vq84l
n6p7OoBefxcf31Pn3VDnbvJJFFcZdplDxbIWh5lyjpTHRJQyHECtEMW677rFXJAl
/cEYWHDndn9Gwaxn7JyffK5lUAPMPEDtudQb3cxrevP/iFZwefi2d5p3jFkDCcGI
+Y0tZRIRzHWgQHa/
-----END CERTIFICATE-----
---
Server certificate
subject=C = US, ST = Somewhere, L = Somecity, O = CompanyName, OU = "Organizational Unit Name (eg, section)", CN = "Common Name (eg, YOUR name)", emailAddress = Email Address
issuer=C = US, ST = Somewhere, L = Somecity, O = CompanyName, OU = "Organizational Unit Name (eg, section)", CN = "Common Name (eg, YOUR name)", emailAddress = Email Address
---
No client certificate CA names sent
Peer signing digest: SHA256
Peer signature type: RSA
Server Temp Key: DH, 1024 bits
---
SSL handshake has read 1951 bytes and written 655 bytes
Verification error: certificate has expired
---
New, SSLv3, Cipher is DHE-RSA-CAMELLIA256-SHA
Server public key is 1024 bit
Secure Renegotiation IS supported
Compression: NONE
Expansion: NONE
No ALPN negotiated
SSL-Session:
    Protocol  : TLSv1.2
    Cipher    : DHE-RSA-CAMELLIA256-SHA
    Session-ID: 8CCD70B4863276E69A502F698DEF40EC9E4B595C3E450DF277F6F26FEE5E62BD
    Session-ID-ctx: 
    Master-Key: 41D5A7E17928EAF8D67461E5B12DC71DA64B50838E8001224BADAF50DA53D6F9B08E13F3C27F68A9E2C036AEEACDBD5F
    PSK identity: None
    PSK identity hint: None
    SRP username: None
    TLS session ticket lifetime hint: 300 (seconds)
    TLS session ticket:
    0000 - e7 35 9e 67 75 55 18 8b-c1 cb 85 bd 37 9c 36 af   .5.guU......7.6.
    0010 - 08 2f 80 c7 e5 69 dd 7b-c8 d8 e6 e2 b8 ca aa 36   ./...i.{.......6
    0020 - 12 64 11 34 33 02 50 4b-07 11 73 b5 40 05 eb ca   .d.43.PK..s.@...
    0030 - bc ac 96 95 ef 3a 9e 90-42 3c ed 29 f4 09 87 94   .....:..B<.)....
    0040 - bc 75 01 8f fe 6c bf b7-b8 eb 98 da 50 45 1e 78   .u...l......PE.x
    0050 - 51 82 68 49 31 dc 9a 16-bf 3a b9 7e 91 e3 e6 fc   Q.hI1....:.~....
    0060 - d4 58 88 0f 94 64 c9 65-6c c1 7a de 47 59 94 03   .X...d.el.z.GY..
    0070 - fa bb 0f 00 1c 07 ee 6e-69 12 70 c7 f8 92 d4 fe   .......ni.p.....
    0080 - 0e 22 13 f6 45 76 94 aa-f5 74 c4 ee 45 2f b6 1c   ."..Ev...t..E/..
    0090 - f2 8f 71 ce 41 00 74 a0-31 d0 e3 3b 05 50 8f c7   ..q.A.t.1..;.P..
    00a0 - a0 6f 37 70 7d 31 72 10-e9 de 8b 81 c1 02 e0 dd   .o7p}1r.........

    Start Time: 1717096900
    Timeout   : 7200 (sec)
    Verify return code: 10 (certificate has expired)
    Extended master secret: no
---

[+] Enumerating for directories and possible files with gobuster...

===============================================================
Gobuster v3.6
by OJ Reeves (@TheColonial) & Christian Mehlmauer (@firefart)
===============================================================
[+] Url:                     https://10.10.10.60/
[+] Method:                  GET
[+] Threads:                 100
[+] Wordlist:                /home/adot/opt/wordlists/directories1.txt
[+] Negative Status codes:   404
[+] User Agent:              gobuster/3.6
[+] Extensions:              php,txt,html
[+] Timeout:                 10s
===============================================================
Starting gobuster in directory enumeration mode
===============================================================
/index.html           (Status: 200) [Size: 329]
/index.php            (Status: 200) [Size: 6690]
/themes               (Status: 301) [Size: 0] [--> https://10.10.10.60/themes/]
/help.php             (Status: 200) [Size: 6689]
/stats.php            (Status: 200) [Size: 6690]
/css                  (Status: 301) [Size: 0] [--> https://10.10.10.60/css/]
/edit.php             (Status: 200) [Size: 6689]
/includes             (Status: 301) [Size: 0] [--> https://10.10.10.60/includes/]
/license.php          (Status: 200) [Size: 6692]
/system.php           (Status: 200) [Size: 6691]
/status.php           (Status: 200) [Size: 6691]
/javascript           (Status: 301) [Size: 0] [--> https://10.10.10.60/javascript/]
/changelog.txt        (Status: 200) [Size: 271]
/classes              (Status: 301) [Size: 0] [--> https://10.10.10.60/classes/]
/exec.php             (Status: 200) [Size: 6689]
/widgets              (Status: 301) [Size: 0] [--> https://10.10.10.60/widgets/]
/graph.php            (Status: 200) [Size: 6690]
/tree                 (Status: 301) [Size: 0] [--> https://10.10.10.60/tree/]
/wizard.php           (Status: 200) [Size: 6691]
/shortcuts            (Status: 301) [Size: 0] [--> https://10.10.10.60/shortcuts/]
/pkg.php              (Status: 200) [Size: 6688]
/installer            (Status: 301) [Size: 0] [--> https://10.10.10.60/installer/]
/wizards              (Status: 301) [Size: 0] [--> https://10.10.10.60/wizards/]
/xmlrpc.php           (Status: 200) [Size: 384]
/reboot.php           (Status: 200) [Size: 6691]
/interfaces.php       (Status: 200) [Size: 6695]
Progress: 219930 / 882248 (24.93%)[ERROR] Get "https://10.10.10.60/usersearch.php": context deadline exceeded (Client.Timeout exceeded while awaiting headers)
[ERROR] Get "https://10.10.10.60/page-89.php": context deadline exceeded (Client.Timeout exceeded while awaiting headers)
[ERROR] Get "https://10.10.10.60/page-89.txt": context deadline exceeded (Client.Timeout exceeded while awaiting headers)
Progress: 222707 / 882248 (25.24%)[ERROR] Get "https://10.10.10.60/boone.php": context deadline exceeded (Client.Timeout exceeded while awaiting headers)
/csrf                 (Status: 301) [Size: 0] [--> https://10.10.10.60/csrf/]
/system-users.txt     (Status: 200) [Size: 106]
/filebrowser          (Status: 301) [Size: 0] [--> https://10.10.10.60/filebrowser/]
/%7Echeckout%7E       (Status: 403) [Size: 345]
Progress: 868845 / 882248 (98.48%)[ERROR] Get "https://10.10.10.60/t11404.txt": context deadline exceeded (Client.Timeout exceeded while awaiting headers)
Progress: 882244 / 882248 (100.00%)
===============================================================
Finished
===============================================================

Last updated

Was this helpful?