Bolt


Intro

Room Info

πŸ”— Name

🎯 Target IP

10.10.218.91

πŸ“ˆ Difficulty level

🟒Easy

πŸ’² Subscription type

Free

🐧 OS

Linux


Recon

Start Reconnaissance

Enumerate the Bolt web application.

πŸ“Œ bolt:boltadmin123

Find the Bolt CMS login page

Navigate to

  • http://bolt.thm:8000/bolt/login

  • and use the bolt credentials

Once logged in, the Bolt version is at the bottom of the page.

πŸ“Œ Bolt 3.7.1


Exploitation

Use Metasploit to exploit the Authenticated Remote Code Execution Bolt vulnerability

root shell

Last updated

Was this helpful?