Skip to content

Opening book details…

About this document

112 Buy Stuff Writeup by aru510704 is a document available to read on EtoBox.

The document details a penetration testing exercise on a target IP address where vulnerabilities were identified, including SQL injection on an e-commerce website and an unquoted service path in a Windows service. The SQL injection allowed for remote code execution, leading to the creation of a reverse shell, while the unquoted service path vulnerability enabled privilege escalation to system level. Recommendations for fixing these vulnerabilities include proper input sanitization and enclosing service path

Author
aru510704
Language
EN