# Analytics ## 1.nmap scan  ``` sudo vim /etc/hosts ``` login頁面無法登入 重新將data.analytical.htb寫入/etc/hosts  google search "Sign in to Metabase cve" 發現RCE in Metabase (CVE-2023-38646) ## 2.metasploit 更新 ``` sudo su apt update; apt install metasploit-framework ``` search metabase and use it   發現 META_PASS=An4lytics_ds20223# META_USER=metalytics ## 3.ssh login  cat user.txt  ## 4.權限提升 ``` uname -a ``` google search "25~22.04.2-Ubuntu cve" 發現CVE-2023-2640 & CVE-2023-32629  ``` nano expc.sh cat expc.sh chmod 777 expc.sh ./expc.sh ```  cat root.txt(flag2)
×
Sign in
Email
Password
Forgot password
or
By clicking below, you agree to our
terms of service
.
Sign in via Facebook
Sign in via Twitter
Sign in via GitHub
Sign in via Dropbox
Sign in with Wallet
Wallet (
)
Connect another wallet
New to HackMD?
Sign up