HTB Writeup – Lantern
Posted on 2024-08-21
Skipper Proxy SSRF, Blazor traffic exploit, Privesc from process monitor
Skipper Proxy SSRF, Blazor traffic exploit, Privesc from process monitor
CVE-2023-41425 for WonderCMS RCE with malicious themes module.
CVE-2024-32002 for Git RCE, CVE-2024-20656 for Visual Studio PE
Pluck CMS RCE, and fun Depix to reveal pixelized passwords.
USER Nmap does not give us much information but a domain: Then I went for sub
A combination of previous boxes, relating to PDF generation & Openfire.<