2 Videos for Gogs RCE II

Access to videos for this exercise is only available with PentesterLab PRO
GOPRO
CVE-2018-20303 - Introduction
This video covers the CVE-2018-20303 vulnerability exercise from the green badge series. It explains how session management in Gogs can be exploited using directory traversal to create a malicious session file, granting admin access.

Access to videos for this exercise is only available with PentesterLab PRO
GOPRO
CVE-2018-20303: Exploitation
In this video, we dive into the exploitation of CVE-2018-20303 using the Gogs application. We demonstrate how to manipulate session files to gain administrative access and execute arbitrary commands on the server.