Vulnerability Capstone writeup and attack path
Vulnerability Capstone is a easy Linux machine on TryHackMe that I solved myself. This page is my short attack path summary and the techniques it trains.
| Platform | TryHackMe |
|---|---|
| Operating system | Linux |
| Difficulty | Easy |
| Time to user | 8m |
| Time to root | 20m |
| User owned | 2026-08-15 |
| Root owned | 2026-08-15 |
Attack path summary
Target runs Fuel CMS 1.4.1. Exploit CVE-2020-17463 / fuel_page_input PHP evaluation for remote code execution.
Techniques
Fuel-CMS CVE-2020-17463 RCE
Related solved machines
Other machines I solved that share techniques with Vulnerability Capstone.
- Agent T (THM Linux Easy)
- Pennyworth (HTB Linux Very Easy)
Track Vulnerability Capstone in ZeroBox. Log your progress, notes and flags offline in your browser, and follow the pentest methodology checklist.
Vulnerability Capstone belongs to TryHackMe. This page contains only my own notes.