WingData - HTB Machine Writeup
Difficulty: Easy | OS: Linux | Status: Completed
Exploit Wing FTP Server 7.4.3 NULL-byte RCE (CVE-2025-47812) and Python tarfile PATH_MAX bypass (CVE-2025-4138) to pwn an Easy Linux box through Lua injection and symlink privilege escalation.
Tags: CVE 2025-47812, Python Tarfile CVE-2025-4138, Wing FTP RCE
[ LOADING MACHINE DATA... ]
_