DanielAzulayy / FlaskyCTF-2020

The CTF requires an understanding of how Flask works in order to exploit an SSTI.

Geek Repo:Geek Repo

Github PK Tool:Github PK Tool

FlaskyCTF-2020 ๐Ÿฆ„

Summary ๐Ÿ‘‘

Created a CTF for students. The goal was to exploit a SSTI vulnerability in order to gain access to the server by reading the SSH keys of the server. The LPE part was based on a SUID file.

About

The CTF requires an understanding of how Flask works in order to exploit an SSTI.


Languages

Language:CSS 70.9%Language:SCSS 14.7%Language:HTML 10.0%Language:JavaScript 3.3%Language:Python 0.8%Language:Jinja 0.3%Language:Shell 0.0%