Horizontall

#easy #linux

https://app.hackthebox.com/machines/Horizontallarrow-up-right


sudo nmap -sS -p- --min-rate 5000 -Pn -n -vv 10.129.53.146 -oA allPorts

http://horizontall.htb/arrow-up-right

Agregar api-prod al archivo /etc/hosts

Buscar strapi rce

https://github.com/Hackhoven/Strapi-RCEarrow-up-right

http://api-prod.horizontall.htb/admin/initarrow-up-right

Shell interactiva estable

User flag

circle-check

http://localhost:8000/arrow-up-right

Googlear laravel debug mode vulnerability

https://hackerone.com/reports/2765259arrow-up-right

Googlear CVE-2021-3129 site:github.com

https://github.com/0x0d3ad/CVE-2021-3129arrow-up-right

Root flag

circle-check

Last updated