Skip to main content

Corridor

端口扫描

root@ip-10-10-42-53:~/corridor# nmap -sT -p- --min-rate 1000  -Pn 10.10.20.13

Starting Nmap 7.60 ( https://nmap.org ) at 2023-08-25 03:47 BST
Nmap scan report for ip-10-10-20-13.eu-west-1.compute.internal (10.10.20.13)
Host is up (0.027s latency).
Not shown: 65534 closed ports
PORT STATE SERVICE
80/tcp open http

Nmap done: 1 IP address (1 host up) scanned in 6.27 seconds

80

根据题目要求我知道是一个 IDOR 漏洞

20240627203648

这个链接可能是 MD5 加密进行解密发现

20240627203702

使用 Burp 抓包进行查看

20240627203723