Recon
- IP: 10.10.11.224
$ nmap -p- -T5 -vvv
IIRC port 22 and port 55555 only- CVE-2023-27163
- https://github.com/spookier/Maltrail-v0.53-Exploit
- (ALL : ALL) NOPASSWD: /usr/bin/systemctl status trail.service
I got bamboozled into thinking sudo can actually be exploited, it is vulnerable though. maybe it is exploitable, but I don’t know how
$ sudo -V 1.8.31
Sudo version 1.8.31
Sudoers policy plugin version 1.8.31
Sudoers file grammar version 46
Sudoers I/O plugin version 1.8.31