pwn.college is an education platform to learn about, and practice, core cybersecurity concepts in a hands-on fashion. Incorrect symlink checks on user specified dojos allows for users (admin not required) to perform an LFI from the CTFd container. When a user clones or updates repositories, a check is performed to see if the repository had contained any symlinks. A malicious user could craft a repository with symlinks pointed to sensitive files and then retrieve them using the CTFd website.
Metrics
Affected Vendors & Products
References
History
Fri, 31 Jan 2025 16:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Thu, 30 Jan 2025 22:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | pwn.college is an education platform to learn about, and practice, core cybersecurity concepts in a hands-on fashion. Incorrect symlink checks on user specified dojos allows for users (admin not required) to perform an LFI from the CTFd container. When a user clones or updates repositories, a check is performed to see if the repository had contained any symlinks. A malicious user could craft a repository with symlinks pointed to sensitive files and then retrieve them using the CTFd website. | |
| Title | pwn.college has Symlink LFI in Dojo repos | |
| Weaknesses | CWE-200 CWE-61 |
|
| References |
| |
| Metrics |
cvssV3_1
|
Status: PUBLISHED
Assigner: GitHub_M
Published: 2025-01-30T22:40:10.799Z
Updated: 2025-01-31T16:06:07.620Z
Reserved: 2025-01-27T15:32:29.450Z
Link: CVE-2025-24886
Updated: 2025-01-31T16:05:54.106Z
Status : Received
Published: 2025-01-30T23:15:08.990
Modified: 2025-01-30T23:15:08.990
Link: CVE-2025-24886
No data.