Back to feed
Dev.to
Dev.to
6/25/2026
HackTheBox: Nexus Writeup

HackTheBox: Nexus Writeup

Short summary

HackTheBox Nexus writeup demonstrates end-to-end exploitation: discovered publicly accessible Gitea repo exposing database credentials, successfully authenticated to vulnerable Krayin CRM 2.2.0, and exploited TinyMCE file upload validation bypass to achieve remote code execution via PHP reverse shell. Complete walkthrough covers reconnaissance, credential harvesting, vulnerability analysis, and payload delivery.

  • Credential exposure in Git commit history enabled CRM authentication
  • TinyMCE media upload endpoint lacked file type validation
  • PHP reverse shell executed via intercepted Burp request

Generated with AI, which can make mistakes.

Is this a good recommendation for you?

Comments

Failed to load comments. Please try again.

Explore more