Injection NoSQL, XXE, Insecure deserialization & CVE [HTB] [NodeBlog]

preview_player
Показать описание
TIMESTAMP
00:00 Enum
02:54 NoSQL Injection pour obtenir un cookie
09:41 XXE via upload pour obtenir le code source
14:31 Insecure deserialization pour RCE et reverse shell
19:59 Reverse shell OK, User Flag
20:47 Ajout de notre clef SSH
22:39 Enum PrivEsc (linpeas)
23:43 PrivEsc CVE-2021-4034, pkexec/polkit
26:03 Root Flag
Рекомендации по теме
join shbcf.ru