Relative Path Overwrite

Date

Validations

109 Compromissions 10%

Note  Notation

2 Votes

Description

Warning : this CTF-ATD is linked to the challenge "Relative Path Overwrite".

A new file storage site has been launched. It aims to be light, secure and free, enabling anyone to store and access their files quickly. However, it seems that the developer made a small mistake in developing it. Can you spot it?

  • The web server is accessible on port 8080

WARNING: The bot doesn’t have access to the internet and files are cleared very regularly

Compromission time

2 hours

Operating system

 linux

start this virtual environnement

 176 Virtual Environnements

Results Name Validations Difficulty  Difficulty Author Note  Notation
pas_valide Metasploitable 2 40% 8580
pas_valide Basic pentesting 1 32% 4662
pas_valide LAMP security CTF5 25% 3877
pas_valide Docker - I am groot 51% 3020 Ech0
pas_valide LAMP security CTF4 35% 2715
pas_valide SSH Agent Hijacking 26% 2359 mayfly
pas_valide SSRF Box 18% 1758 sambecks
pas_valide Metasploitable 12% 1726
pas_valide Mr. Robot 1 21% 1637
pas_valide End Droid 35% 1250
pas_valide Imagick 22% 1036 sambecks
pas_valide SamBox v2 13% 979 sambecks
pas_valide Kioptrix level 2 25% 972
pas_valide Docker - Sys-Admin’s Docker 41% 940 Ech0
pas_valide LAMP security CTF7 39% 889
pas_valide VulnVoIP 17% 851
pas_valide SamBox v1 7% 723 sambecks
pas_valide Docker - Talk through me 42% 636 Ech0
pas_valide Well-Known 11% 622 sm0k
pas_valide Django unchained 22% 610 TiWim
pas_valide LAMP security CTF6 18% 603
pas_valide Windows - Group Policy Preferences Passwords 25% 584
pas_valide Kioptrix level 3 33% 575
pas_valide Shared Objects Hijacking 13% 561 das
pas_valide BreakingRootme2020 15% 512 Laluka
pas_valide Windows XP pro 01 5% 495 g0uZ
pas_valide Awky 8% 495 sbrk
pas_valide Kioptrix level 4 35% 462
pas_valide Rootkit Cold Case 16% 462 franb
pas_valide Windows - KerbeRoast 19% 449
pas_valide Websocket - 0 protection 6% 437 Worty
pas_valide Bluebox - Microsoft Pentest 4% 418
pas_valide Windows - ASRepRoast 35% 407
pas_valide pWnOS 32% 400
pas_valide Hackademic RTB1 19% 364
pas_valide DC-1 15% 344
pas_valide SamBox v3 5% 333 sambecks
pas_valide Exploit KB Vulnerable Web App 12% 306
pas_valide Bluebox 2 - Pentest 3% 306 sambecks
pas_valide SAP Pentest 7% 293 iggy
pas_valide Holynix v1 24% 292
pas_valide LAMP security CTF8 14% 291
pas_valide /dev/random : Pipe 5% 236
pas_valide A bittersweet shellfony 12% 233 mayfly
pas_valide LordoftheRoot 25% 230
pas_valide Hopital Bozobe 8% 228 sambecks
pas_valide Acid: Server 12% 218
pas_valide FristiLeaks 1.3 29% 215
pas_valide SkyTower 24% 213
pas_valide Ubuntu 8.04 weak 5% 206 g0uZ