xsspresso
xsspresso
Tags/ CMS

CMS

4 writeups tagged with CMS

WebEasyLinux

HTB — Dog

Backdrop CMS with exposed .git repository leaks DB credentials. Password reuse for SSH. SUID bee binary grants root.

#CMS#Git Disclosure#Password Reuse
Mar 15, 2025HackTheBox
WebEasyWindows

VHL — Jennifer

Windows with FileZilla FTP and CMS Mini web app. FTP credential exposure and CMS RCE via file upload for initial foothold.

#FileZilla#FTP#CMS
Feb 12, 2025Virtual Hacking Labs
WebEasyLinux

VHL — Quick

Quick.CMS v6.7 with a known authenticated RCE vulnerability. Admin credentials discovered via enumeration for initial access.

#CMS#RCE#Quick.CMS
Feb 10, 2025Virtual Hacking Labs
WebEasyLinux

VHL — Tiki

TikiWiki CMS Groupware on CentOS. Exploited a known CVE for unauthenticated remote code execution to gain a shell.

#TikiWiki#CMS#RCE
Feb 10, 2025Virtual Hacking Labs