<?xml version="1.0" encoding="utf-8" standalone="yes"?><rss version="2.0" xmlns:atom="http://www.w3.org/2005/Atom"><channel><title>Path Traversal on bubka hacks stuff</title><link>https://hexpysya.github.io/tags/path-traversal/</link><description>Recent content in Path Traversal on bubka hacks stuff</description><generator>Hugo -- gohugo.io</generator><language>en-us</language><lastBuildDate>Thu, 02 Apr 2026 00:00:00 +0000</lastBuildDate><atom:link href="https://hexpysya.github.io/tags/path-traversal/index.xml" rel="self" type="application/rss+xml"/><item><title>LD-Passwd Found in Requested URL - Possible LFI Attack</title><link>https://hexpysya.github.io/blue_team/ld-passwd-found-in-requested-url---possible-lfi-attack/</link><pubDate>Thu, 02 Apr 2026 00:00:00 +0000</pubDate><guid>https://hexpysya.github.io/blue_team/ld-passwd-found-in-requested-url---possible-lfi-attack/</guid><description>An external Tencent Cloud IP sent a single LFI request targeting /etc/passwd via path traversal. The server returned HTTP 500 with an empty response body, confirming the attack did not succeed.</description></item><item><title>LD-Arbitrary File Read on Checkpoint Security Gateway (CVE-2024-24919)</title><link>https://hexpysya.github.io/blue_team/ld-arbitrary-file-read-on-checkpoint-security-gateway-cve-2024-24919/</link><pubDate>Tue, 31 Mar 2026 00:00:00 +0000</pubDate><guid>https://hexpysya.github.io/blue_team/ld-arbitrary-file-read-on-checkpoint-security-gateway-cve-2024-24919/</guid><description>An attacker exploited CVE-2024-24919 against a Check Point Security Gateway, successfully reading /etc/passwd via a path traversal payload. A second request targeting /etc/shadow from a related IP was blocked. The attack succeeded and the endpoint was escalated to Tier 2.</description></item><item><title>HTB-Conversor</title><link>https://hexpysya.github.io/investigations/htb-conversor/</link><pubDate>Mon, 19 Jan 2026 00:00:00 +0000</pubDate><guid>https://hexpysya.github.io/investigations/htb-conversor/</guid><description>Flask web application vulnerable to path traversal during file uploads. Exploited by uploading Python reverse shell to cron-executed directory → gained www-data shell → extracted MD5 hashes from SQLite database → cracked password for user fismathack → leveraged CVE-2024-48990 in needrestart 3.7 for privilege escalation to root.</description></item></channel></rss>