xsspresso
xsspresso
Tags/ File Upload Bypass

File Upload Bypass

2 writeups tagged with File Upload Bypass

WebMediumLinux

HTB — Magic

Magic Portfolio with SQLi bypass on login. File upload bypass with double extension for PHP webshell. mysqldump credential extraction and SUID sysinfo for root.

#SQLi#File Upload Bypass#SUID
Jan 20, 2025HackTheBox
WebMediumLinux

HTB — Popcorn

File upload bypass on torrent hosting site via content-type manipulation for PHP webshell. Kernel exploit or DirtyCow for privilege escalation.

#File Upload Bypass#PHP Webshell#Kernel Exploit
Jan 18, 2025HackTheBox