webmedium

Resourcehub Core

necronet

Task: Web application with file upload functionality. Solution: Exploited path traversal in file upload to overwrite routes.js, achieved RCE, then uploaded patched version to pass verification and obtain root-protected flag.

$ ls tags/ techniques/
arbitrary-file-overwriteroute-hijackingpatch-verification-bypass

🔒

Permission denied (requires tier.pro)

Sign in to access full writeups

Create a free account with GitHub, then upgrade to Pro.

$ssh [email protected]