Whispers of the Moonbeam
Personal Rating: Very Easy
Last updated
Personal Rating: Very Easy
Last updated
We start off with a website.
This immediately looks like OS Command injection since the ls
command is likely executed with the "gossip" command. A very simple OS command injection was sufficient to get the flag: