From aldeid
Jump to navigation Jump to search
  • Level: Basic::11
  • URL: http://www.hackthissite.org/missions/basic/11/
  • Exercise: Sam decided to make a music site. Unfortunately he does not understand Apache. This mission is a bit harder than the other basics. I love my music! "Sad Songs (Say So Much)" is the best !
  • Solution: Directory listening seems to be enabled. Try to add a/, b/, c/ at the end of the URL to check it. By refreshing the page, different songs are displayed, all from Elton John. In addition, directory e/l/t/o/n exists. In this Directory, there is no protection on .htaccess. This file indicates a DaAnswer/ directory, giving the password : the answer is « short ». Go to http://www.hackthissite.org/missions/basic/11/index.php and enter the password.