Simple CTF writeup and attack path
Simple CTF is a easy Linux machine on TryHackMe that I solved myself. This page is my short attack path summary and the techniques it trains.
| Platform | TryHackMe |
|---|---|
| Operating system | Linux |
| Difficulty | Easy |
| Time to user | 18m |
| Time to root | 45m |
| User owned | 2026-08-15 |
| Root owned | 2026-08-15 |
Attack path summary
CMS Made Simple 2.2.8 is vulnerable to CVE-2019-9053 SQL injection. Crack salt hash, login via SSH, and escalate via vim sudo.
Techniques
CMS-Made-Simple CVE-2019-9053 SQLi Vim-Sudo
Related solved machines
Other machines I solved that share techniques with Simple CTF.
- Appointment (HTB Linux Very Easy)
- Vaccine (HTB Linux Very Easy)
Track Simple CTF in ZeroBox. Log your progress, notes and flags offline in your browser, and follow the pentest methodology checklist.
Simple CTF belongs to TryHackMe. This page contains only my own notes.