Well, that’s not a solution, there is a too long error message, so you can’t read the whole file, am i wrong ?
I can read 3-4 rows of a file but keep getting the illegal command detected message for any other command. Any hint on how to bypass the filter? Or is this not the right track?
You are on the right track.
That was a fun box! Pretty easy to go down rabbit-holes that lead you nowhere, but definitely interesting once you figure out what you need to do!
Weirdly enough none of the read commands worked for me. I am going to reset the box and try again tomorrow. Been an interesting box so far.
i cannot get past the restriction to only read 3-4 lines.
There is no way to execute commands and there does not seem to be a way to get past this restriction.
Why is this an easy rated box ???!
Just a hint for everyone trying to read multiple lines, it can be useful but it’s not where you’ll find the foothold. The one file you could use to bypass the step between has special characters making it throw an error when you try to read it… It just gives you more information about the system before you get a shell and start enumerating.
any clue on how to find which file i need to perform LFI on?
You can beat that special char.
somoene onlyne rn ? got some problem whit revshell …some help ?
p.p.s what i usually do after upload sc its ?**=revshell … but aaint work in burp , curl or browser directly
hi, i’m just allowed to find the first line into passwd, no other commands works “illegal”
any tips ?
Hey, that seems to be a rabbit hole. I am rn trying to figure out how to circumvent the write restriction.
I’m having some troubles with getting the foothold, some commands just gets an error and some are illegal. Any hints?
same here
Finally Rooted ! thank u ![]()
Can you give any hint in getting the foothold
Second box i’m trying, just found the latex subdomain and i modified hosts file, but ■■■■, the machine is so slow.
I am able to create files, but for some reason they get created without any content in them. Any tips?
i think there is option to overwrite them, my problem is that whenever i use it i can see that they are modified but no content is in them because size is 0