$ cat writeup.md…
$ cat writeup.md…
hackadvisor
Task: PHP/Twig CMS blog platform where post content is rendered through unsandboxed Twig template engine. Solution: Injected {{[\"cat /root/flag.txt\"]|filter(\"system\")}} in post content, exploiting Twig's |filter() → PHP array_filter() → system() callback chain for RCE.
Permission denied (requires tier.pro)
Sign in with GitHub, Discord, or Google to continue. No email required.
$sign in$ grep --similar