/ tags
#sudo
2 writeups tagged sudo.
Shocker easy featured
A CGI shell script backed by a vulnerable Bash lets a crafted HTTP header trigger Shellshock (CVE-2014-6271) for RCE. Privesc via a passwordless sudo rule on perl, one GTFOBins command to root.
linuxwebcgishellshockcve-2014-6271sudogtfobinsprivesc
01 Jul 2026
HTB
Expressway easy
Linux box with IKE/ISAKMP on UDP/500: crack the PSK with psk-crack, SSH in, then exploit a vulnerable sudo version (CVE-2025-32463) to root.
linuxikevpnpsk-cracksshCVE-2025-32463sudoprivesc
22 Sept 2025
HTB