help with mock pentest

Discussion in 'Exploitation' started by Dstudy, Apr 28, 2018.

    Apr 28, 2018
    Trying to do a virtual penetration test based on the topology in the NDG ethical hacking series of labs.
    The only tools I am allowed to use are metasploit/armitage and scanning tools such as openVAS and Owasp Z.
    The web server and firewalls have not been a problem but the internal devices I have not been able to exploit.
    Any exploits that they appear to be vulnerable fail (VNC Authentication exploit) or don't have the means to such as a JAVA vulnerability on port 5801
    The topology is as shown on the NDG site:

    Any help or hints are much appreciated

