GiveBack - HTB Machine Writeup
Difficulty: Medium | OS: Linux | Status: Completed
GiveBack is rooted by exploiting GiveWP (CVE-2024-5932) to reach an internal php-cgi service (CVE-2024-4577), extract Kubernetes secrets, SSH as a user and abuse sudo /opt/debug (runc) to read the root flag.
Tags: WordPress, Kubernetes, Container Escape
[ LOADING MACHINE DATA... ]
_