Seems like Redmine is running on port 8080, we try the default credentials admin:admin and we are authenticated.
Under /admin/info, we can see the version this Redmine is running, however, it doesn't seem to be a version with any exploits.
HTTP (Port 10000)
Nothing much on here. Looks like another dead end.
Postgresql (Port 5432)
We can try default credentials postgres:postgres and we are easily authenticated.
We are able to get RCE, however, further enumeration shows that this is likely a rabbit hole as I spent hours on here not being able to find any means to privilege escalate. :/