A PHP upload page that converts images with ImageMagick 7.0.8 and Ghostscript 9.23, vulnerable to CVE-2018-16509: a PostScript file disguised as an image abuses the restore and error handling to escape -dSAFER and run a command through %pipe%.
Not startedDockercommit 8a02436x86_64 · aarch64Secret
Exploit CVE-2018-16509 with a crafted image upload to run commands on the server and get a shell.
The brief for this lab lives in its repository.