This lab has a bunch of vulnerabilities which includes
- SQL Injection
- XSS (Cross-Site Scripting)
- Insecure File Uploads
- Privilege Escalation (via cron and file permission)
- Ubuntu 18.04 LTS (Bionic Beaver)
- Internet connection for
apt install
andgit
PLEASE INSTALL IT ON A VIRTUAL MACHINE. THE REPOSITORY OWNER WON'T TAKE ANY RESPONSIBILITIES IF THE INSTALLATION SCRIPT RUINS YOUR MACHINE!
git clone https://github.com/codesonteen/TNI-CWC-TheFools-FakeNews
cd TNI-CWC-TheFools-FakeNews
sudo bash install.sh
username: admin
password: N00b555+