$ cat writeup.md…
$ cat writeup.md…
hackthebox
Task: Flask image resizer with file upload, unsanitized filename, and incomplete extension blacklist. Solution: path traversal to plant a malicious olefile.so in /app, which gets imported by Pillow's lazy plugin initialization on Image.open(), achieving RCE to exfiltrate the flag.
Permission denied (requires tier.pro)
Sign in with GitHub or Discord to continue. No email required.
$sign in$ grep --similar