This post discusses the exploitation of vulnerabilities in the HTB: Clicker box, including mass assignment vulnerability, XXE vulnerability, and abuse of environment variables. The post provides a step-by-step walkthrough to gain access to the box as well as escalate privileges to become the root user.

28m read time From 0xdf.gitlab.io
Post cover image
Table of contents
Box InfoReconShell as www-dataShell as jackShell as root

Sort: