From fc9eef3b11ae4c51783ee55820d30f44ab742010 Mon Sep 17 00:00:00 2001 From: CPol Date: Wed, 7 Apr 2021 22:08:15 +0000 Subject: [PATCH] GitBook: [master] 2 pages and one asset modified --- .gitbook/assets/image (448).png | Bin 0 -> 21742 bytes .gitbook/assets/moodle-rce-plugin.zip | Bin 0 -> 2975 bytes pentesting/pentesting-web/README.md | 5 +- pentesting/pentesting-web/moodle.md | 98 +++++++++++++++++++++++++- 4 files changed, 100 insertions(+), 3 deletions(-) create mode 100644 .gitbook/assets/image (448).png create mode 100644 .gitbook/assets/moodle-rce-plugin.zip diff --git a/.gitbook/assets/image (448).png b/.gitbook/assets/image (448).png new file mode 100644 index 0000000000000000000000000000000000000000..d50f39ed2963f0eb051ad8717b44c590e79a63af GIT binary patch literal 21742 zcmV)mK%T#eP)+DKMuJ#R{VZd2M0i&R|W8f(0E><8r!Dgx43OgUL>WCOGhsabQPFhMVhm%K#Doo{q!OA|}Pr zIpD+zx4mBjC(=Kw>qi7C5}UJ4QnIMN*0p?XA0(U^l3 z9tKd0zw<#;=WpaWgc6EFz2_&(B5lO5z_J|2vK%Ywq~9bIl31)Cxg(*FK5_v_WdG=M zKvYP`!9j!uqaXAE(EAU13;}rIgMb8I@T~jch0np1=zV}5FKqfD2taYbB2`KO@H#1> zkdD3(z9R|~3h5m&I)Ns^f!E*w(Mbe=*5EjqJN9F~{HMI>pYvqL@}`gF&K}F1JC-|t zELSN$C-PJWKgaV_#}4uQoU44{BO=}3v2Z+3aiwH--i~w<%W=R)6AI}yB;r?^G@+1w zr3IVF)~}HR*mhw-@A+q@;ZW zc>dxGA1U75?o&^-Kj&#aPh0shM>)L>A+nIfvf_eLVubW-6xLVDQ$iuV65A4q5*&CR z96%NUFmLdFmZA72Pu;l=DhFsCptbXl&JNkjXR9lHj z9SbZCEQ?lT&|7$REIkQ^cv8>3Fzn$MGo27^D0VqSqj8h}Pd0>UF`BRnCtmll$0q(iwm4jIKA{2*h$ zJyj9$vb_lNe&)E!t6I zN8Cmo6le!OvFQxzRsSbvD z#6tyz^v^Wa$$X7!8=v<^wh8UtakQU8B8Mg%I;ZGJIq@NzpTy7o9XJ)4LPVIf#y78! z2=X2I;75vhk5eolPEgS4MA9q?wK^`E_!$F~aJ_X79Cd{xN(DZ71li??EFnSSr__Oh zq@6WsnBW$Z^O5%yOCb`EmEBt*kyzqe!0@7f$zdu2o>&qQTAU*m<7HeT5RypzlsaAp z-kXdor9pJ>ER8+Ti813Gdqm~EVv@6eoR1=& zYfe60QdtFndxH~^3$;d!CWh>G9Eh3^+?{Ga=8~Zrz@owXRl4@aTn4-EsGBIFbT{P0JptYX!|4wl6W#vCumyg0J_zwpWO)9cc-0u}rH zqqsP|#1e{*k1Pc!b;rj$#J8ASycR^5`sZ25XXX%~-bNHcp0uTY<5)xvh`8PaikK)6 z*Df~3p^b&d$cXtJiXt5Sr4*8I)+(7FW?3Y2lBLN@q}y*-7* zF`U(6dG<8_Ki~c5e}Dhi-~Z1izy0lB{`kjF|MaKN{_lT3{l7nc_QyYe@!Q}1?YF=G z+t>g8IXkDwY;vHbBaV|#$uC{F-qzY(TT^@S(k0!B1=Gv{gDe#(L^$hlI&!mepXHae zwsbZ(KW}gA2>OFU))N13kpo9sAz`6s04RVcHYNgqFvq)*YCsQO*NNlM0SXEC7#Rja zECPikG+rTzeJKj-Eeb0gzJj3xA`x1OH10H>UXH7ram4KUB+*eFC)FN(Q}MClV2Ypd z@ecP*lHTS028Wy1P}UrdkP6SmZ2j7zq|E$>#?8ConOL?=t=hJI;PgX5 zb=Qg|6aus~ifXekWQnl^RXI`*$h2@Q1XU1R&3r++ta*6DNk{N*LKI_HBQQB3f8H@1 zVaZMpaVXC+G}JZsDs`JE3C$o>7=vi*6oV#$B~<~xiGHO4R9e&X_Axvu$cYMxM?)a) zB8kVeBSSC#K)^64mIISJV2$9}2TbnjRv^G&HXaOyP;zjb!-taG2~+{r`t~3!7(xnt zz~n(JiTy+-#Jofo*5|Qpn*v;cTHzbV7j?gw`t=+v?k8;pVBX-KU3crY!;u|yBj^Gl z5=>YDDHb>CCe{KZhNzNau?ek2poCRS0t091Pzp(a#!~F^(#E{fpww5PH- zEu?HnXOUxpp&6RN({z~28+yZn&Va=kXa;TjLr~c$%Ya(5x#4(L`` zTv+&bG&Pv8Anp-U0E3IBUY#clV6;bPHJAdV)mSnLq<|xnDl9^VVBs9RR_^S-G0Pf(e*z#n+z!-iXZC}A{itRe9^_|#MwElLc*!NZr4vgo&Dv~-Jh@Az5Mve z#-_<;(0~8SeUF<0CV~jUnw9U@Vfg69@D*cg&8$`#S(-yVKsp2*jRb;7Mm%?8WX4G`M5-T2pcrKx)bt{5S(4qmxweAl2cE6VTIcILl3OZ|adNVqv^YzKMS3NLqV!GtUnN7ya zg4q&LnIg6*%r1Ktt2I6c8d6&fK6uiuJ(fApun;u` zL9r2q$nRRdXjA_+@bRMsrUP&Hsn}8aR01N3g(<2+i?w0k3nQtHVtK8s>!l=g6 zJ-fBAfrg&82n;T|duQz0EzSpEaz*F$fl+N>P9NF`!oZ@ldv;^Z8rq8_9@PuUB#MR% zS9QyQ^G^o*mgtQzY=&Xe3qclwG$__WopaVcrE4>Q&WB#mdrdB6H5H10X3gpc&>2H& zBQ?BW+i=6O1A69dJu_yrhl>ELyHV$$f6-$LBkq|!FgR=MpIP1V2?J`8QqgfR(J_UD zTr5EUg6&T6h|B^T6l_F6V+Csfj4n`Z!IY7m)d%ch7*!d&XAN_k;UFH+o4wGbu=Xv6 za@*Ig)oSekOcZ3x{+>Cjb_;cD{4~t1c)I7d=hj^jf>El81^s#`g~UhZJdW+lS8nS~ zR$nw)-T1tzzR|qC@#Fc&E;nURE;#Hy0PuJMO7$umWq_j9%PYM@lM70NdU3<&3^>dd z-I_HLVRcG{(X>52H9s~n@AY#W10IKOY+`z3Y|3ig|7tzV-nTPCLj3|d>~oy?<#>8# z?kAsr|EE8G^4C9q^0&W!_Lsl?^Y{PvkN^6gzy9$rUoWk0BBd)nEIT8cdYqKDZrHZj zJRAd7vnf3#+vA2P4OA$Ua_`RYggiN;U}jFs0YvGT`aM`e5}|K|14mpT6}K(kDV$sl z@S_kf1LtzuM-AcHvE~0d*Lk;DzvzLU1^?~h(X8&3bIR&#U)}P(JalLTn?+=D$E-35Oe0sY%vvcEe&fw2k@_Y5Vv}WZ`>HRZi zXdYO9P&sL!;aqaZ`9j%~F2mW3&dg4&Aqq*k?W4ND=mwm7)}Pg9%;{K=o9SD%>Mv7< zv&MpRRyda4^;5p$Nz3BG2A5wo@vP5!sZ3d>pk^&_DtqL3zN%%$)jaFFUM%whbWUyE z%o{D}T)t7ExLBfavQR&yKmNEat3!9AOmQiH+QRZG&-1IoMRub0oKwXauAm~0H>wk_YS*QYg`ZWd3gyfCutJ(1RSsZ>=v>Bwx?-*3{V zcdqs*x5KEdBnt~7U59Gjg~=gg@I|wbUObr9x9LJKXw+xN{rcylw%aAMIlbl^<+Evx z^IHIqs^mjzdl10vgvUiaW`N8(&Dr$f`&H_prSRjrh1B-V%;&lpBc-#m=bjEeYFWQl zI{&0)RpW*S#pCJCOIgi|=`|M`e~{LRP%U+f`Pl7D*^CYV^jh8BM>#=HXl`Wa%$1uZH7!}W<=_5zb#Y;-x4kvBpxPJYZeF~4 zGbyL2s{P`Xq{6Bmr;B--RhXSyT2$7gP_7B|?fQQ!3W+FN1R4#C@7%c2)id1EHG1;o zna@7`;*-CB_Se6E{^!4c@t>d1)Hd`4!gz+7=OzF{PmfRLWao>b>i4?SQq$DxB{~W# zs~b1&B^fOCp26Wum#*nIwjvRh4m0LWGnzdS)9lJ-!sAVG;OHtOoI`IIidq#vJnSqP zb(x~z;owa6(99-kQa`)bKOX>N7|vvkcddZ|pk@&sH7YHD=hirgMqteaV@617S^qw3 zY{&-xzEi*CL%MBc8@@>$m~ld7m+nOF^ftg&2>x)sZFmcH#vj$MG*0>JM@-l27IX}p zPHHb1^@RcESN-2+bS?zpZccBHhN_r!->gy^0PKLe;UgyQL6gD&VD!O{kGs2V-~({b zueb)rmT2gvQ!7f+#mdp)Y)rQ-RG2;41`4Vn;D76wkIb+yXe^C{*W>ZE`aL=Ljz{m0`MbJPzMsX3F6GsA!=-_Wk(|odk{`1HT5h2Vof)h|sZiDhd^n$6ChS2I(Jiu8GKlUgd@9b+o#W5u6y2D{k;9` zEZKse+~_z{q`F!*bE$A5uU+E?WEukiiY3qO!r8(eYf_EsyY%r&H5|+Cw*i{D+H%9m zT-lrhDm&EooAt!=i@U>fcBJaEI*nCRo{~Ys)tZGR8qPlI7+6CpN5A3wDXUi%fcv?F zy;^ED1i4MBiv=T9<7O+s&{{C5VZsQYcfgHj;|mP<7#LC8Zj_D|_HJG-UpiK-+XBe$ zUM`WL?rN{nbFO%P*#|evrL!`Za#lps{ z#A`_Db&7ry$_vMWCkX$1*sXAZV#R)^eBy5P%-9yRDVc8{4_>NXdr&63oIhBr2oJ76 zN`uM(;AdfM(RR0F>R#=_w22F%29vD8iPc`H^9Rr=X=FK;@zZcUtF3m{>p|@rLyXR} zYp(x1nOF`1MS(8@Sq(Ft2DnkT+^zNn0oELFqfoX2klMUiH|cNy1ZZd*-@INZ&uCs+ zaKh!>iLX;-x2jhkl+ImwIxRCm+l2jQ(R9Xht=5AmMpPbx(jA!)q!D>?Y?y=NsRI*w z#7X0Jpr}Rl&8@bUd4H{ny;y_h;Rb$Y$k@*7r7KsHUCzk#_;^anll-Du{Wk8OAauKan9pxVA)&D@9dvA; zK7FRLris@**v5#%`ka`9h--PM$k7TiLx-c0u(13{2xd7p9AQEf9bwTVI$7LfSUOCH zgVA6x%#uw=QX$xt(}c$x;lL4BNTl7M0CY}xP&TZNzzzyF=eH}3Q53Xfh3_5@&RLGL zW8-c#)(8Mx&FHG0auvz^S$$>-U@Hn|GJ7XPh4iw`XiP-#{2B{S>gUR5LZr^ktwp{} z?p}$aHrftQucS^D&$epedbL^!u*tzThej1+Ix4e%j+`sa05}0^7vNUKj1AR#WB@Oj zwTj_8$R)`I2Tl8jfYg(t0I@SQz0nX)37L0gv`W;!F zMlUYqqNcekmGVwKoX;6spg<2udac+%CIB#GflI|Ql@nzOaYTX|xnE8pF)q9D&dmo_ z8#1b6DGGpbujx;mO>)@$skg6;JD%C7%I!7XD4#Cs(V3!fI(J0A#d-lwrFCX^EH8SX zsCV<~v*~hKAisNgOo!Hxh?P)%-~5U6;gYfFFPRhnOc_}4LsDVq#e%V#snG4>xi9Z^ z&D)^1Ly=lN5d;W^nD1}Z>+l}Af<|@YgspDWc&Bv2NWr;>Rio?S2*8Tbb|$l3>qS#` zUE0u?k**xnRgAl?JRMqafYuzolG9oy_bgc9PEr3Fg%nI>pXN%@Z1tq)hqRHC1q*h7 z@Yls0{KujQxY?wUF4CIy`%OH~7#$omn>2DG^ewonhfPoW?MXHBh5%--NU4Mxh2H-~hWhw3 z?YxbTBgTp~oV<(ixVElcy5q3;h0jkF5SvmH8|Q@pSSl8Cl{1f zcJ}e(PC{gi2=q-<#DYHXWxDQ%JnfVf577DS@G|{M3Q58dpmwZfw<>f5}W~O`-86mkXeOX5HvVbNYUNWKdzUg<)E0T|<^#Y|F@EfF>}cL)KPX0caju@1Hj<+h9uLi2$0cld0{E z1Iul)EkgkHi&wUS3cZg42rw`{YcP4SfwQ!Zyi{>ZYG#OmnYB>m;8OX(%J^Eujh9vC z)Z5KN%N=sldJrw4t+}CQc&&DLZA4@9AoFy3Va4ue&{Dzpf~jV3wL@+-1*Ig`vBA%p~^vB z`;0}l8W~$b>tQx8+cIUW8D1GsT3swMG!>!+{l-STzM--CNQ931oI`^nJ>C5(rFu%P zLgt>n(A3yMPusxk#N5@p&+exdw|5Puq~(Xa%=GZI)8znQsGw(3w%~RJCr2k*TYHAb zru<>DIYJ;&Kux{{g%tcUUH849kc6%bFFS8SA??I2@@*$ELZm(a;{-YGbI&9R&o|A1 zqpXlfUdc|4+ z9}gqQ7!U8fK=30tln{gNLc_Re7T=2|RD2}7*yc=(kHwi`0nJIHOVluMl9mkMcwz ztfp{KlpJ0|ieJD&m@iT(C?vI@kkG!))wa@b%93o->v2w6hXG%79eDkhOK;*g>i1$M_#NyQIGCXi|AdxEbLn zR7-il1RTm04-(fl(v$iA&JPH zF63Av;)5FzKJs3if3cr{5fjC**z6;wOK?^&D|lXu)Z_RVGtttq+@b7}eV{^b_r+A~ z7lT2{9TS1!qr)*chP0uyaBdTyeL?_v6L5t8=#86Yo=%R;|Kn0XiXP1=@ny~PR1m6H zef_ZQ$ruR(zbA2#U`piY;(EbR{YzX<3jG z5%Z2eN%%WaNKz&V*^CwXe$tolKS~@p(h4co924;;0w>h7opK*zsvv@5ICkK)yca%u z0M#nomZA`$4ImiMn;$R5fQUgcubo0K`Xf?sZ2l!+i78P*nUQ#6Lf*ljD#17O#FM8r zmdnGt2;qn#9@PH5X)#VLjnLkR3W<0K`4gx+JUM&BWJ$L@1`Fd5iNPrlLY^uyBSL@} zlNgTkpIGf8H-{Q}F>QiUuX zA=$Lt;c|O@L6Q|TvJy#^@=KaEfsnVakVLEkDZ4y`fW-e1=D<-`NW4Iko~Y2W^A$o6 zc2V*~hgeUr53YbhT5)8^ ziOz~g7vqr_6ETaVK$B5C&DaY?A(*7^c#wzsmIBz%Ed_+=l+Y@bPZGkbG&~Er8=w>v zva$<&k)}RYpix*+ziIDGi9q-W1O%o*5O%~U9i%W?(+T6PT^EAz|f+dAz zmqH@TN#wnUx)3{42rHT@=Fs7E0Hnt0EKjaG<{60=nh)oftJ7z7!HMk01v=JcV=wnV29c!GX8Rfn5sevsCp@ z`I=b^TE-IwJY+_A_mD^I>4*_xT8lxanlLnavkbE7;TVcp)va317M7x08k@rYK!5Lm z&Egmvound+azU+L)K*qhBcM`+v^)DT&4l(-&Fj5irfc8w2x&JF37-#*0||xnp_N#I z-j9z1yA@KJ=Es7?85=U&6O7%Eb*c0bCVFFf{1hsuC>Vzq?U=_K=i{CE$kN)FIzw=l1F^9sp^%pJu6 zAt}o@Y4-i`Nyo1$$27$_9j^B?Wp_|b5yV}}>^LbFgI)+nj49Tl7bbbD5e`X@w6h!M zmO?mc?iaG|gClr9!Fy*JAuJWp&FcOC$WVR%baB>>Mo5yMFjzwCqr6RwB=jIB&2V9K zmO3a6AcMoi^YL*2SfDA|<#fLng%m+&O19AuVilSMNEj#~~I{WW@_1HGJSn#mm;=qj^o|k!hIdsx1 zdE9_N`2p+{lr#(|m$%UotK@b&!P0?fAjQ14sHQIn2=BpPZWDD2Sj+9i<`>%zTO;A$i;$@_60e#Pbnyz~lC~oNkBR`Cb%KG#q{56A4Em;Rw~xgg^NCM|6_OZJ)H=I;#Gu`d-H{LQ5rc^1ko4?ED*C*T zZ#yC&MV@#*U=HAZ8x=v)9-(MXrnCJ$W%}zJ-R(Ma=JUw4NgPkQTmMyo!fO`ndRjCMn2n<1;skk@W_P&oGK_jh&cPJT#5_G{z45&$qXruf(8 z;_MD%X3N@>)^+r>88X|9nQa^V({9XcH#|Ym^x17|Ii0H+?W?!yR{#1~_sx@qaWiiT;KdQ~A8U#Pd;d09n%!B^2-nydH1B|6&un_pmYcpgD#_Sb_r|DF+tU zonNLZK22NsJay@xsoF16HD9EvKaYPjpQUL&P1F2ipXbvw6yfvKxJUbs)TJ*|7e2Yt z{PVSE+fLzrdlsGcKyK*GEo%DRFE!t0YW|g~{NmB<=Z|JTe>nH~qxnzwcod&LQhfSo z?$bw#Pm&h?p0WP#?73ajjHnQQgBl?33v7H3wg66qe$X5U_yfT}Fc=60{XzdB48BQb zkA&IxN7@P{vYp@nzp%P#@#c1{Wp0RcueV+6#bH*+R=^b0C?UwY`jnY12 zc4>D_L$75UU!6#J&w@t1nx0c$)U{U7W6tl{!q0Yok2SBymfK^?={@Lq(q}6kGOW7r z>XxutL;#}^lFR9`+Z>7K2@bqx4&cLz!hnv! zB~M5=^e>Fh>l5E093g-&yx9E?;#6W}a-<%L#)6N62nT@>EG-$cv!3;I4VgD>o5t;) zuEFZ+Cc87t;*$eI9E3P@-+YKerylz`@E!Pg@r_>*Vr&toki2fM)8UMUqcp|fsd<`0 z6ZDDazn3+n_gt|P=o1|H5IG<=<+~j_vqLQ7$e~-i-((Zf&J@H5 zRj|;*@TmYd)Hho6v@AcjXmofo6r{1qHU}()&&R_D$|95RU6A(h5F$w_$I*V{b$i`T zH?qu2{60<&pj`tc6D>Eo1wM6N$P4oF+`*bY~6u(^sRVIvi38HsQ;Oo~w`Nkx4|YrQ73V%UAs+Lfu@c_zijI=RVmVM`Mq#JY_&uO zAtUbdz0h_Tq#~UMI}QeQ__SioI4+6)#BoS;yP^pSX;;9jcpQe5SAm;I^Y%Hw0Uf2u zKBU9gH6)B0-hPpMlo;aLwRbZ{i9<>lFM57(;*aFlpahoHwVC#BAVk z+nb{>0qGrafWb!x9Yz}^_94BaBKg?Rh;2xm<1O*wU~MPT@RqPA!0yEXK_Ts9X|Y$5 zef%WlcW^=PlRn}7o;ko!jO%@!W%r)5or#4;7LEMk-diB2&vrj0~I zu`m%KFcrywKiG`%Oc-b2`_~b7`_shl=#YlAQ0YMBC z9eYF)yhxngeX$R=E&C7@lGy(6r9iXj8W?J)z=@@|cTtGG*dc62m*_FEWQC$m{J$*@ zh(#sdYk>ePsk(*i6+(@5zd}TJ_OIBtB{0aL`aJhyNHZ~Ca*_&)DF%rp`yrIthfSl%a{!tF8Y=>%BP9M3H!Zmd zjxRe(=#FpzYesjUV%^3<*VKwB0_b*93`ckg%@W5tgU~plA$NXD8Ay@q74TS##|xl0 zd3wecgZOl~sI==N5{czZ6h8!z1W7?B+=t`9>nS7-0{%cvb^X`h{qpV47i9Cx4DMdU zqb3alkqbOt4hDjuU`UL{^7jdf9{W2)A;3}mfsj9h?rD!ntr!727@G5YgEWPP>ExIt zd`b>V5ef!FfiMOmsQ|+88~g9|BJhO}js=g)M@5CEkKhnOKdk?wtdMN(P*%4lyKlXq zZ!N!9HNNJtN72~G6M>uQ&xcn6LDYd|b{0MoiXFcl!5nZ*FbqR7tl;+uDDTsR z;6hTPY@J043AIP~Hg7^c-(_YMoAkf#wgj*;!_5aOd>j|YV}z>~Fn+_9r(d=hVQC83 zFkY1qc!BQmq*<0?7zWQ6CPYWz%&Y&uu0pD>t^ebn{{Gi5Pt~-J*t}Gj#jS#b9&|rD z#mvskRg_med-`m6aG0i;{=R{^83h24JF}6rG58Q9Ny5FI5+MeLt*v`Lv#_?GHUbX( z-cWO6tKS#q2jW;QG5Eq=l~UQ)JAnJuEQcnJkvP#5XWH1JDSW9snaz>B(Xko0BCye@ z-e}@D2>AmIbxqr5Cx#Of>Ai_R+P+6uApxkCO#RGZ=3r+?e zJ{=rf3Heduf|@L%RzxvDEEn~X=*vq(G!W*RdgMmCTb#flV!%rjNh>DD#m9f`^gP-H z`vFi#17y@pSI^P`fK?l;c|mTBY8>FedU`7eLkip1k2;!_9%}@=L6~3n zO&Vx@0L{_$4eD;y%q%f*HKTJv&!7%39$P#8?6Lz4PFOH-D|R%PmYdMhhqrUC3em|hDlZiCtk<^WhISaP7-PS@Sknim$$Ft@>&CMv(_T<1J6q2+Wi*5`o91PvOe*Jg9|MQhcB|bcxZ*c`flrY00)aQA{ z{KNYX$H!$86SBd9!GO=lP{{lNSZHc&mdWG@*q$|dso*Wek05ZYbyI)uVQMfK1)3J8DFq^=(FHdF zwHH7k#{2(2$_i;gyLq})X~N_0D8PaPPGpbEHbXWJ?&kFmVTD8som^2Z@#7xMcClZ< ziwcSqp#U{B5!_Se3xIT4FesD`f0DG~G07;VAc60{*gj+mNbin}WS-Pd)h;lbVYpK` zeZ5?Jy?pjWR)4P^mVI!qbnIrC`g+A;mxjw|(*F0gkxNxeIuCS?8Sa-(Uo6vHuFx1l z&^f5TS*_Aha5=4Q+z<|unKyuuxy@5)T@S10Z zEqFG)-4udl2i(f*yIeGNwRrB!>-CLufxZ>EUp`|6c-pPKR498`r#qfK`nYr5!a?)6 z>BiIPYvl{2gKJ*Cb|39Ze&nU)MG9&EhMr>~8t~q~b>n~k@Taf8zuYyfD6M&(oLS-x z;Rc>0#8tVkySKEYJl1nyBcr{2OG>Ryxp3>E|0rv0ZpG~hG&HuhcMYbd=5}@U zD-;U_*#+grRof;Z)!SOij-ppP1uV(5UA7hlU~mDy1qv|5 zj0RIvUB{N$PBH9^eCBDvv&_uwj*gyCIBMS7Dy^#Q=cKJ;?TEs?l8GU$V~d4*h2z8PfdIgkEoAbdo-*lncp|W3<=s&h zwj&@n`e!zxOIFwj!=i%;;_G47OjL*hiiM4>(6$#g{V-(+4(fwzAqe2wizWtHSTw=- zazwGogvc;BCe25_ihl?MG8|+zOxCHQn+#mY8h*ZrItmqit0~RvBdc(;RG|Z~;A?v} zEbz;dS)Csh^oAQ$cIexHFEf;#D^NdTyjH!q6osoP?PEp?jgW9*_0CwoPwLaUzzI;; zzHp~%Xut~pPU`mp6m~7w&!KW&cf(Jqqst-4?^@02()$7Q0XY4*rDodIri0t%ixvtp zT34^su2=ykOz?ANztRm4s^;3YUX z{lDLT{(pb{>eDa3YwsFGhEL+z;n)slYr~Y0mQhqzrP8g1A`CF0%F>d7zG0usm711T zQCnx-c8(5D7CbFhYSub?Mw3%=D4N(~vK$lDs268v6}|nVx9_KV1I+Zq#FHnv@;R-1 zLU#4~ov|6UW!rlC+~wX8xqM1~${(n!LTsY)p7Oe?eV$Q zp`p=~Jdf|*y?HBrY+U7X z`c?Du)3WK#&VdV;9&T=IjSTc2|KBQ7-0ZXZ7{= zuIV@b^Yh8Z)^?Rf`|$4lzW%WYwpkU&V@FLmj+R1_>LdV_X5&<`9F33|plI0e!R?|k z#YWHpaPQe@|FYK)P}@4$IJzDb6w=Zbm0Ug+#gi~A=4ejCXi4X6bbqnM~dX-ttlWH5saA0syMV)hH?aKQ8m6GSvt{|T9 zCFC8oBK#ofLAsscAiGgsr(!l4xK|=mIMBUtUDKxI#w8;S>5Ymz6*JXSp3M*}o8eT> zoW=uQ8cMrXGaD3H?V8UYPd2Kce$0HWMx~9y#nkS>jVPMsz!rHuGma~zY8SqwZbY?p z@mX(|8NNyG^`SwJzEmD&0MPJYSs%mRfCGFhaQc328{U7pUao*TCxw6^yH6RD^u>mMEkfYP$k3E2by8`0ksZY<3@6!vtUyirL)k{0DcFe>#5Au9tK zvD|;0>52dw^%WNuj*g?%sqwL~y!>Y_pZ`&64$ZHqCaKY`nC( z#?L}ZQfhu)v0)Pp%d8gX?VAtnE}EmbG|ula=@ALF(84I=8W5*X!5M zUrzD+qCt=C(S!6g?OIM+#`B&DJV(SWEy$nd5&-#`-reeEqZbR<(ly7X$b52ZmPB8dCZ5nUX<+hnUqcoX!f@3&#U2 zSbUK5Y-mIm^5Pz|KMYUWR?gRIeE{YV+{+tO*-?MIuwm|-%z+sXx_r~kK+BXl`}raO z3@Wy=J2Wl;F9Sga!o)o0@MbtiuF4-Nf>4hY?dIViw{f;X#hEBbsgx=0$ez1rdLyYp zBG7(m;k=dk~J-`O%s-D)k<{)&ZYJAnZh2S zPtzlJoGws!@N!h^_|nbd!TxRdCb`Q8P}plIm_%k#iw^kmewQW$x5}nFHAsfpW70zZWqt zsgN*;NGMcSTmR=jfA-t|{p#;uogR=a?Pz0>ac<0zAMITfCSD9{rfZjOnG7416&3vh z0{~D~UO7580UVc|m6QCWptP>Fyt=8e{<+r|LPEhXCc{c{O8V5ScH3yWbvt>@97s*h z7@M3&GbdEIu<+T~%!1WweVmc&rGbfhs>&;-WT+jP9G}R`d*=2AlTz|&1_ry@E2``K z9MBPOURKt&$t52jFDb7K0(e}`=DPYDS8k1tFPOL8H*VdtIw%N7Gw)m*9$5f@%@y^P zYmXH38q1dX#PMqe{g&RacKXr-uP+kzI+GrztgE$|4<7W6E2FqmW?a@iD=5@1o3GzY z+1f@Owc+m8n!3gS5m|D5$XyM!7s-7zj4uTq*3S`bgg8utY@NPRj|_RYgK$5uPi+Su zz_Z4gi~-brVA1XtT5W^tMblA$DP8Dsm0~4`X7Fe{Iy%bpuJ2cbULHHKZbRmgPwU6q z7Q)*!q?C7=jCFE#qdt4^e{}q8_>9vwQs|lYvTk=vYeI=#p#J3O^-1_c72W zxBiqd)HoNs-?sgS8$HVbXq$GNPVVkdc#DTUf4$sRIqmOWgy*_w>H+-tE;L8hK7+sDl2Pm?Ft9z zrl!`i%38ZOylwaCmW<>wC;(VnQl+M)n=PKjIrT56uCH%}8k<`3pOtOfgL>WajqA52 zXH{0KEh!x-Bw&ISC1tWnB>+r}P2}YlIz53$$+;8*1D);VRdvYFGwjRH%Guga5&y)3)RM`SVN5TM=I{<<5=4F%+7>? zddvEz;pC~yCZomg^gMi+W>{J8X=%ClD8p!SxLv`j%DUFJzU8&;TX)l}Ry0FB)cw4= zwmw8U??+WwkFr8iYBs*f86Vn)rEOTYgAW@;Mmg}a@G!4;bR`-BsBB&+9NBP@i5i;L zS>a0IbO@kbzLnFr6ftl|fQ0}9 zU6aPlI$7hmQSU?JC*D@#V{bZMJO892pxt1|c6COxrL&+O#@M{s5=6Gz%iGZ*t#{o4 z)jit6c1`bs$4jG`mtnQLYCyH*hJi(YS=UmR!d*XYQ&~Y{3iT~G%@OFDTr>JP)H?(Q z80eMTFO@DeDZ&MvV5y(g000!7Nkl_|p3^*guCNq|_t6CMl>T%1q z4_p*2oT_VinPYhG{5V9_zQmD(GSABD4@cf?)RNOk7-HrdX!q-$4!b%8Er*8*~c0hI+14@cLAB zUbpfG(4Mr=uJ_i~R?gooM?J&7!$sOF%z}vTmT83wvanz^<=LXwtN}TUM z!;{)8vgWB@Mo5^z;oJDglU z4UHCH-+16gFWo@8MkfB-UvJLAHK{sKf6Rk+i@P^&Y0Hm4pW=J^@oz@`QNjJH+mk6x zEY*pP5tfQ9Mo5H04OPVUcj!X+-|op&7*#>LZ?g~lnCW(n3>c;M(6cwFim(p%Epg21oQf1emU}#ZpqS zmZd7yLZm@4KB&Qz*fNQ_6zj<#+qJ|}WxND$1DR!D{U#7OF3&0uGr)uy$q}AbLrqf} z11um?EAM(6vVOaj=ASCY*c>gBi=P$yeNE}appg?5$}g1q%%dtB7;7{0Rj!tyTWwFz zT+nrDMD|_hX*fpXpyKBI7d+Ff4gbxz@t2Mi_+f*0GQ^!QrlcZBE>+`AEH%ULyI(2a zdTuUvCPze}EAfl|ENO!i^?l$~0!xm@{3lIc|B|dmzg~h44gN*Bu*!kRSQ|OjU?@YD zzXOYhFQ|P&CSLHIT2K?0Zd^msY!Z`b)x*+S69Z-AaDK7eynvzw=*H@-&}8@)E_4xJ zvb2Dag`!B(@KdQYs~lWte!2<`rCaY`AhPG0{q?@fU!wat1#cils061IL6?q# zU^`watX&3OTdyhz3c0f-ww;3}+?E40I86FKBd6@-4aE{tU#ywoMFE;IU8IApNRI_L z5s9;^8Gq;WGH~>ELj0czTJX5>gbR@r%(JLI|->LmkII?Ylr-@1ny#I$lb3ByW3 zm2C5pY*g;C88`a+Xl_0{Q9MX##oWbJYW5oH$_DU>hANXNYQ-r%=<4j^1(f z!4VGXJ)Z-aEUQK@uX0Pu88QHm$8Y{$`WsmJa%oXgNPxYUm!5Jn*(s2fBCECk>6n`^ z;tq@SJsD$e$a1bijCve-KKz<;4tj3RFyqT6U0fiPCJhHjss^$@}FV8Kf7QXcz_C+suRs)=K*@+_&k`kCML73st% z@zmqmv{5%+<5R^oqr|h)9rowxyyGCy5KX*U8pfYDuf*P$SWJ0>#Ybe<6}n{(BZnc3 zh&KgkDimOMb{o1Vn=_=c zC?#CNJo!~@xQvwYUIPfN^&}F>e(H~=6KRx_t32&jWBRp1iau>a6iTFA@^f4X<#fWB^Sq;!FKKj= z7|E=F5|{MrnzU?Qt*oR90wrgBAu4}+C~-@QDfi|SN6(j?`vw(q63~Leb8`8721{Pb zv2dPU5j(p})Ygd{v^`u-ARC;|hv>iNA8Dad+emj|=>6}`5s;8Gj26b}rAV$#?I64Z zrrPVE1ht&yTTL5VXoM9A&7=oCntY&)iSPN#_KEh^u|{iOG0ial+V6D{GKEdoq$yD zhA1pYPbc$%8jbi_d!NzgnA!Sv2i0Jq8nZW<9g{9fe2Aks*?e_zIXh;9kE8!x^mPj$ zCHF+N^5}4(=G>N40}cEZOI2V7EcsA`TvO(tgIE%PGG} z(UFh+>FNaABx49?>WCVTeQA`}s{u(mfk~v^I(d(zs0$v7H7yY$;|~*@txf`ZS3RLK-W^l zH&@Ep;Ao90c?wzFk*>B9j?G=~veh3Vt$S&$aBZLtK~@0e1wU6|0_q(y6<gP>VRp38T7bl6|EF}YVh@K+FG?7;HSdr!Q_4E3nt;(2`|5WVjX zhDT>%IFP-q7VnthT+o~-ghXSCSu!k^*2IPqJC?8$w6H;A-bXLnF%FjjjNI3eI!5l{ zv7A#%6EfiB7VqK}P11g@Eu=b8`fj2!!7sM+6cF}i?u^NJ*Jp+wsJOnYsYgR}*QxVk zh>3*;$#%LJi`jG9-sKDyi{wAO^AQcvx8jKL5;als9zEh8YA|Ywk}4-MucOBb2G25J z7Q=rHKwb~}ve5Nbdhl4yj_YxYfP3l0q;ywWFs`_CVxLnPyMUWUoB*UWG1+Cejj~|W z#LWYf?}@_p?$sW-veQg8zm<+EPkZ6xHuOo;tK03S@=kI@O-!(NkjwK~@LKvoXdF&k zY&mJCL68=yNWSQwfz596Ov_wDyNvfswHZX_)1y;qH#yA+6!}r=`}-YNbac*xDa&qv zi&*e4x0Hu$B@^3*NOmHQV{QA@@MMDv$|c^cB>=p>w|MGvzV_Y3c07qw@8L$FjpzbQ zbFo-FPq?$MFV5y%{iZH(2mbp#|EWGE7AI>hF1^K_q4Z}q#x);atmwga?=gLRkZJ!o z7xr8p{3ysM$0fJ4cVD7)ei&JL0bSxSr|Qj_K3c51wzz)>WajQ)(WIrxxwHfru7}5? z%wJ6(2+1TyZ4**4tj zFu`iIOT4QzA}vG#vKDV_ANef7b1&Zl0G0}obi|K2s_TP%|g~D8zx&nVZ(lGYt znk_R64bzxK62_KNVDVnfjMX2I~CH~iPqiX@{GZj>s-O?xGuyB-8YH@?CompIo zv{E{@KVrBd|42aYro5rf)|z$^{_~QLy~)W*;G|Bq?5y8Cle^Bg%ciw@UU%e-BAebv-$_X-}~F%k)^%LRBf~y zTTSYCeCGPc#=>TbR_*GMeK(zW)VoxOhKDDy(gaR0Ux4%!EO_(kHrMOp^twmKlJgF? zlvKiT2zvk2Z`m|q>|Bh)G_%<(ST23>@T}8M$iz8eao?@oggAY1kN6rBcX9USQOayK zvg!aP-kt8lLg@A}+pJ=qyT9X{+(?RFZl{|2INxI)4sILAE)|$`UL=$tZ`)+V^{&603ET{eoVXG2n~D2ZyLlz9?snQ z_JoIu4{2kQFCj@^r5C%gG%$p5e`C{wuW?NLwy2@}BTY?I;z|2{mq4l2h$s7`*kQ7g zUEZ=X&XKc7Fg!clp{=3CUSDNfo_yb>Qp>wNz=UzWZPgt7TFNb96)OOvXZBb=;rJy3 zaDDA+zgMH=8QomMfRu6A9g5+gC%lF4$1BDRx!d9WE8OHj$~A)lpT#QfFpa?ifW#XZ z@6n`)j1y|CE%&ASWQ8*NTY}+jx_J97U@Ua1&Wjs!LIe zr@bs8Dl+1?zfEWO!Ru{TVEsk3`(PS(-QM{h4w2&rYk2w5bYM_zr6Pr!n|WRDeb^BN z&RHIxtuUfPC#gpCTfbivPWf-4e>*|vt(bopL{e8STF2ri(6Rfhfe`CI&cg~UtW#;& z0ihw%r*sJ7>%h>K^G@^GH#upyiLYSCWi-#~I+<~=naI##jzK0(p~SM!(r`&>BFbi( z?}v@6H7wMEyN!kR%ISq2nkVrrb!e3x1SmZgkD<Nf*8l8j5_A+ zSIt)DuPquVE%RzFjkp&(1acP+9-t&Ej?3_CXiMwLQRboi`H5#sEiD1f^u18`y_oa%o~v5KY4gCyw*Db7W`M=@KT^le%jE~Y@u;rpXvwy&7zy) zzX9<%#wS;ixC7z8cNF+Ho?<@_a{W1CW5?+m@yz_1?xjhS;u@?@c1o3S0)pKNI}FxK?7A`z^9#J-arcq79O4inr2Nm; zaBOUQ3IJ>{9znseS8P*)&6DoY*ho*);?6TbcXnFC4h-A1HKbJJRD%CFQJsw)fjnaD?d4dhi$ZvSI_sFj&KZiW%{e zH`mX%eW)2Ft_X~s4*y*45r)oY72Vc~hJJd55rUPd z1p>fc=HgF_ay}K1A7K%8n@^0r?oP|&!Pw$bs6KD{$fpn_nxTRb@_{TqJB>s)9}H3Z zdDwb=K!EK1UMUyLm!HLS;~nsjY>aAUTRq zN^Z?-ja{`ZcVV?};@6&=_^ooHR7qlJEuYA!;G=)W6(T4@6s}t#*rTTiv0z)C?6EN$ zW@lUrMRfoek+GA=cfB1UQ&GLgCu-T}U&h}A1mHtTIRJ@eM}8tO-QI+8!qB8Oo=)R2 zeDzk=N+5vq8J#dMV}%r-%;*AX-X!5^9wmyy#QNVai6@XI_BShgq1_Lx)1Na}{AG)|7$KkOE z|B0RKGbXksq~rf!_C066{i2bl;805U)r=OfOyxC8|4NZceG*Lhi2-VO91OWl*gdXY_Ktluq5$R1jgq04`LXjf97?iFQ zsS*S!qDU`NH8kmd!Cm*TyT_Sx?|bK*=RVKOy#M@kHOR=R0LNnv-mm-fsbnMr06+j8yAaqeV$2~4M2b2O0I>W^ ziEu#M+_xfaLdY5E+-q!)X1ESM)bx9!%NZLkrX|I_=B#RN2vY#*&aQYd@UwZFdQ$?4 z6P}`kDq7XT9c4r0u#BImpXi2ct!IG=V`&gsOXeZWe;{vU-!FS3ecN7brbdy$^m;MZ z2)|1^i3_4)m>4+(dhK!Z&a+1SG)afo%kuZeX1U|PM5j$ARB8?pUq2$3

$pdMAF4 zQI}GQmQoieb)`buEHI*?|lwln$Ef=UlBBy?e$cVM;G3 zC#xrs#}H*5EQm{;V-3Z-7$)}$DCKJl0NiMhJsq8KEtMA?G^EqD0~azjcfPT>2tC=s z=0JxrK~F7_~Dn1(7Kp1C{NHeGJ$R?67O8GmephjMZOUN=*0Js!D1S;?pVPOo6n za*jX%a(4u~D9zGBSw>8ghw~`SLwM$Mumc)iEpv&$k_3zSNxyT}bWy6;$c~3Mf7zKKv<8XfAOl?1hTT7&;ev#o;Ft95u z1slQ4&O@4WZr{wZNYm~e6MYW7MM?Qe`ZP!*|16`L*rkX0M*8Kgu1WQ_T?F;RN@(7^ z%zRk8`I<%DJG;gxOr&(ZStztC&>F$%E!i`D)2v|ne1dF)%0RN#JJyT zkj#`JZWG}WNjt)-F8+$l=2(gJdWbl&F<>%PwC$fXSUPe{nQ9f*rHPkiC5f z&^N4FsfKHcb;$Qh-x*wUcfu1I{iJYFmQ7h^c*!qY-zyMQvgwyMy$`%=-M0>Cxs;m~ zcXv41VC=Cs;xr&HxzZOPLq=#9|vWC*6Et!f(XD&N^%vWUCW8#i`M5i4nsYj(y zFUsfZQk>F{!%&P)mhLd=OWamWwr$u1544R*)Gl>@zG4`>%;ZY>dcG+j&hk>xG9oF=M0NAI;0hrO?MS|j; z2g8I4X*?mFUy};X8Y}_z%YPVp*yjEc>CcgMFLL06wW9aeDUSn;PsSR*_f0VR3b!^n>P0}DEj8`mmj4CTTg?E1Xk=dV~ zmJXHXh7I3yUEbbyDHjPDUmmcm9a&Vb+>K%F8RLg&$_c4w2x{WmF9=o#DkM9-K?Y4^ zl}2aRLJla(E|oH`PJiuxrb0$taC=4;S6n|mT)7NEA(H*3LDV!$mBRV0JNAWgwmki- ztZIxibd9TNvIi1cH^P@3TNFbDFD0+|`RaA78;p-GZ$j_XJn}pXF7uU5dE&OrGG@5( zW-UVth?6sfS~?(C!3N8cqPJvl8x}v5l6Ad#QfQ8xFvP12!t@#%hm#I4?zgr^M4}Yu zjn9tP^G~xsuwYezyZ^C?La9o}C5?2!RLF507TfPDE^Gy4OD z2!^Lhv_>T5AYXmIA?+1VuKvf%(CT>EVYxj?cXWbJERC!|#OW#kt1v-7OdY$@of{RQ zzCCysS*N&HR*UEwb$tDyITOqfoVt9!2<7`s)J@<}e&FqO-18w+YWQTnzQoWY@B8kq zV+cg?CYOKFLR?uCw?Z6J6?2BWTOzV0kAF03(qi{9M?0TwW?=EC%-3C-r%bWFHU;&> z4lshXjf)`0j_Uq4cUU0iC*=d~lD{XwY%?@pD({?{O>M-(VNn1AH$$a&h&Qq5IWO7W zm0lvE>Vt_I_!MGV3ASReFGTimNxLIZO8QY4>nh$HG>#qxtN%!(WL$m)bs-LFzV5P0 zsqsKvBmaum48RI>WlS`+A$%NAUy}2h39$FMnEs)jSf!HouW=geWKkP#OL(5;*_)AM zQ@c8KENuf`!wZe8^xQ6i;u}SSB_ep|`)i%Bj)>x<GLGuE`zA15~ESf4{ zUtGM@4+lrK)!fF?e(!qY4c7&UYWM{3n2s1p*a8B0k+7%Q2aUc(THPT%bbrB&n;qtX zJ=*CQVV+kCck=2^&cXOP`Lz1pzOUxj5QGrk_UTs`ia<$IL{v;tq(UW5htMb3*{9LV z4=mEv>F&}YJQh~hHhg&+psN8qbs6wGUb{+4JRaab%TIcv0&x6X0RhYa|Ivz5R?5Rb zTgA=G$2D|w<7YkT`d`L7>B>d&I%dM3#COuVL~H&wjAZ$k?f2II<-(KJ$5-~ZHHi{W zy0={9%*T-2f7M?p#~YU?`yEUEa_0!hee~d8?*AamlTiUrK-M702=L$a&pY~Er~i&3 t#VC-l`1l|v`hGHC4fnC|_$ diff --git a/pentesting/pentesting-web/moodle.md b/pentesting/pentesting-web/moodle.md index 1ca201527..29569760e 100644 --- a/pentesting/pentesting-web/moodle.md +++ b/pentesting/pentesting-web/moodle.md @@ -1,6 +1,102 @@ # Moodle -## Dump Credentials +## Automatic Scans + +### droopescan + +```bash +pip3 install droopescan +droopescan scan moodle -u http://moodle.example.com// + +[+] Plugins found: + forum http://moodle.schooled.htb/moodle/mod/forum/ + http://moodle.schooled.htb/moodle/mod/forum/upgrade.txt + http://moodle.schooled.htb/moodle/mod/forum/version.php + +[+] No themes found. + +[+] Possible version(s): + 3.10.0-beta + +[+] Possible interesting urls found: + Static readme file. - http://moodle.schooled.htb/moodle/README.txt + Admin panel - http://moodle.schooled.htb/moodle/login/ + +[+] Scan finished (0:00:05.643539 elapsed) +``` + +### moodlescan + +```bash +#Install from https://github.com/inc0d3/moodlescan +python3 moodlescan.py -k -u http://moodle.example.com// + +Version 0.7 - Dic/2020 +............................................................................................................. + +By Victor Herrera - supported by www.incode.cl + +............................................................................................................. + +Getting server information http://moodle.schooled.htb/moodle/ ... + +server : Apache/2.4.46 (FreeBSD) PHP/7.4.15 +x-powered-by : PHP/7.4.15 +x-frame-options : sameorigin +last-modified : Wed, 07 Apr 2021 21:33:41 GMT + +Getting moodle version... + +Version found via /admin/tool/lp/tests/behat/course_competencies.feature : Moodle v3.9.0-beta + +Searching vulnerabilities... + + +Vulnerabilities found: 0 + +Scan completed. +``` + +### CMSMap + +```bash +pip3 install cmsmap +cmsmap http://moodle.example.com/ +``` + +### CVEs + +I found that the automatic tools are pretty **useless finding vulnerabilities affecting the moodle version**. You can **check** for them in [**https://snyk.io/vuln/composer:moodle%2Fmoodle**](https://snyk.io/vuln/composer:moodle%2Fmoodle)\*\*\*\* + +## **RCE** + +You need to have **manager** role and you **can install plugins** inside the **"Site administration"** tab**:** + +![](../../.gitbook/assets/image%20%28448%29.png) + +If you are manager you may still need to **activate this option**. You can see how ins the moodle privilege escalation PoC: [https://github.com/HoangKien1020/CVE-2020-14321](https://github.com/HoangKien1020/CVE-2020-14321). + +Then, you can **install the following plugin** that contains the classic pentest-monkey php r**ev shell** \(_before uploading it you need to decompress it, change the IP and port of the revshell and crompress it again_\) + +{% file src="../../.gitbook/assets/moodle-rce-plugin.zip" %} + +Or you could use the plugin from [https://github.com/HoangKien1020/Moodle\_RCE](https://github.com/HoangKien1020/Moodle_RCE) to get a regular PHP shell with the "cmd" parameter. + +To access launch the malicious plugin you need to access to: + +```bash +http://domain.com//blocks/rce/lang/en/block_rce.php?cmd=id +``` + +## POST + +### Find database credentials + +```bash +find / -name "config.php" 2>/dev/null | grep "moodle/config.php" +``` + +### Dump Credentials from database ```bash /usr/local/bin/mysql -u --password= -e "use moodle; select email,username,password from mdl_user; exit"