linux 18
- OS Command Injection via Archive Export Filename | Parchive
- OS Command Injection in Network Diagnostics | Netcheck
- Command Injection via Filename Parameter Leading to Remote Code Execution | Quotin
- SQL Injection – Authentication Bypass & Privilege Escalation | Simple CTF
- Broken Access Control – Credential Leakage to Privilege Escalation | Silver Platter
- Remote Code Execution – Exploiting FuelCMS (CVE-2018-16763) | Vulnerability Capstone
- Remote Code Execution – Nostromo Exploit to Root via Dirty Pipe | Glitch
- Remote Code Execution – Supervisor Exploit to Root via SUID Python | Super Process
- Remote Code Execution – GLPI Exploit to Root & ZIP Password Cracking | Find and Crack
- Server-Side Template Injection – Remote Code Execution & Data Exposure | Leaf
- Weak Authentication – SSH Brute Force Leading to Unauthorized Access | Discover Lernaean
- Unauthenticated Access – MySQL Misconfiguration Leading to Data Exposure | Query Gate
- Default Credentials – SSH Misconfiguration Leading to Root Access | Secure Command
- Anonymous Access – FTP Misconfiguration Leading to Credential Disclosure | File Hunter
- Default Credentials – Telnet Misconfiguration Leading to Root Access | Arrow
- Local File Inclusion – Log Poisoning to Remote Code Execution | Venomous
- Server-Side Template Injection – Remote Code Execution via Twig & Bind Shell | Leaf
- Weak Authentication – FTP Brute Force Leading to Unauthorized Access | Net Sec Challenge