Geezip
This is a web application that allows us to gzip
content and provides a summary using zgrep
. I found a recent vulnerability in zgrep
that leads to RCE when using multi-line file names.
However, slashes (/
) won't work in the filename, so we need to do something like the following to run the get_flag
binary in the root directory:
Placing the above payload into our filename:
Last updated