
@zauxzaux said:
@umby24 this messed me up for a while, but the mistake was trying to get too much information out of it, which can be a rabbit hole… you should be focused on how you might be able to execute a command via that injection and how that might be useful… if you don’t know the tech behind it you’ll get stuck for hours… DM if you need a nudge.

I knew the tech, I just didn’t enumerate fully.

Took a couple of hours after getting user, but I got root!