Pwnable.kr Shellshock
This challenge has a bash executable in the home directory which the shellshock executable runs like below:
|
|
The bash binary is vulnerable to shellshock as can be seen by the following command:
|
|
Since the binary simply calls the bash binary, we can the command below to run the flag:
|
|