Interface
Interface
Interface 527
Interface
RETIRED MACHINE

Interface

Interface - Linux Linux
Interface - Medium Medium

3.2

MACHINE RATING

1553

USER OWNS

1460

SYSTEM OWNS

11/02/2023

RELEASED
Created by irogir

Machine Synopsis

Interface is a medium difficulty Linux machine that features a `DomPDF` API endpoint that is vulnerable to remote command execution by injecting `CSS` into the processed data. `DomPDF` can be tricked into storing a malicious font with a `PHP` file extension in its font cache, which can then be executed by accessing it from its exposed directories. Privilege escalation involves abusing a quoted expression injection inside a bash script.

Machine Matrix

Ready to start your
hacking journey?