RE: Netcat Question

From: Miguel Dilaj (mdilaj@nccglobal.com)
Date: Wed Jun 01 2005 - 10:20:26 EDT


{snip}

> Any ideas on how I can get this shell to work? Or there any other
> commands that may provide me more access or allow me to dump the database?

Hi!

If there's a firewall allowing ONLY incoming traffic to ports 80 and 443 (a
very likely situation) you're out of luck (except if you can stop IIS and
start a listener on these ports).
You can still try to start a listener on your side using typically allowed
ports for outgoing traffic (21,53,80,etc.) and try to connect from the
server. At the end the result will depend on the configuration of
firewall(s) in the middle.
Any hints about non-firewalled ports from portscans?
BTW... The -d modifier (detach) is mainly useful for the listener (your
first command). You don't really want -v (verbose) in your second command.
Cheers,

Miguel

***********************************************************************************************************
DISCLAIMER:
This e-mail contains proprietary information, some or all of which may be legally privileged.
It is for the intended recipient only. If an addressing or transmission error has misdirected this e-mail,
please notify the author by replying to this e-mail. If you are not the intended recipient you may not use,
disclose, distribute, copy, print or rely on this e-mail.
***********************************************************************************************************



This archive was generated by hypermail 2.1.7 : Sat Apr 12 2008 - 10:54:22 EDT