Got problems with Linux with Apache and Tomcat.
Can anybody tell me the name of the tools for viewing what services are running on port 80 and 443.,what version of apache is running. All the osfingerprint that i've tried give me diferent results, like AIX and Linux. I want to know what kernel it runs to see if I can exploit some bugs.
And if anybody knows how to view the source of the JSP files . I know that some version have some bugs that allow you to view the code (something like \index.js$_DATA bla bla)
I'll apreciate if someoane told me what tools to use for OSfingerprinting , for Apache version discovery and other usefull stuff for trying to hack this server (Linux+Apache).
And I have another question: do u think someone is that stupid to put the database on a public IP

?
I think that this servers connects to an internal IP (192.168.xx.xx) to a JDBC driver for Oracle. My goal is to have acces to this one.
A friend told me that the main server (the one with Linux and Apache) conects to the database server(public ip) on a port that dinamicly opens (port 139) when a conection to the database is taking place. I know that this port is for NET Bios , and unix like systems don't have NET Bios.
On the main server I've accesed a hidden directory in wich there where some files (myserver_properties) in wich i saw the conection to the JDBCOracle driver to the local IP 192.168.xxx.xxx.
Can someone help me?
Thank you in advance.
Sorry for the english I don't know how to write in spanish, but
it is very easy for me to understand it.
PS. I am not a nazzy , the username signifies a great rocket, the most powerfull (it has 20 nuclear heads). Once again i say that i am not a nazzy, sorry for those that are ofended by my nickname.