Gogs RCE

Bookmarked!

This exercise covers how to get code execution against the Git self hosted tool: Gogs.

PRO Hard 1-2 Hrs. 682 Green Badge
Course

This course details how to exploit a remote command execution (RCE) vulnerability in Gogs, an open-source git hosting tool. The exploit involves bypassing authentication to gain administrator access and then using a git hook to execute commands on the server.

Skills covered
Injection Authentication Operating System
CWE-384
Included with PRO
Full course content 3 videos Common mistakes

Ready to practice?

Get access to this lab and 600+ hands-on exercises with a PRO subscription.