PostgreSQL 10.7 with the superuser postgres / postgres, where COPY ... FROM PROGRAM (CVE-2019-9193, disputed as a feature) runs a shell command as the database server user and reads its output into a table.
Pas commencéDockercommit f61954ex86_64 · aarch64Secret
Log in to PostgreSQL and use COPY FROM PROGRAM (CVE-2019-9193) to run commands on the server and read /ctf/flag.
Le brief de ce lab se trouve dans son dépôt.