xsspresso
xsspresso
Tags/ Log Poisoning

Log Poisoning

1 writeup tagged with Log Poisoning

WebMediumLinux

HTB — Poison

PHP LFI escalated to RCE via Apache log poisoning. SSH tunneling exposes an internal VNC session running as root.

#LFI#Log Poisoning#VNC
Apr 10, 2022HackTheBox