$ cat writeup.md…
$ cat writeup.md…
hackadvisor
Task: DropVault file sharing platform with archive import feature using npm tar v6.1.1 (CVE-2021-32803). Solution: Craft a tar with a directory entry followed by a same-name symlink to /root/ — cache poisoning bypasses symlink protection, scanDir traverses the symlink and registers /root/flag.txt in the database for download.
Permission denied (requires tier.pro)
Sign in with GitHub, Discord, or Google to continue. No email required.
$sign in$ grep --similar