Buff
Easy Windows box exploiting Gym Management Software RCE then a CloudMe buffer overflow for PrivEsc.
Easy Windows box exploiting Gym Management Software RCE then a CloudMe buffer overflow for PrivEsc.
Easy Windows box with anonymous FTP to steal PRTG config, then RCE via PRTG Network Monitor.
Easy Windows machine exploiting HttpFileServer 2.3 RCE for initial shell and unpatched kernel vulnerability for PrivEsc.