domingo, 30 de enero de 2022

HTB - BASTARD

 IP: 10.10.10.9

S.O: Windows

Drupal / SeImpersonatePrivilege

Introduction

We will take advantage of a RCE in drupal to get a reverse shell.

Once in the system, we will escalate priviledge  with SeImpersonatePrivilege