Soulmate
Soulmate
Soulmate 721
Soulmate
RETIRED MACHINE

Soulmate

Soulmate - Linux Linux
Soulmate - Easy Easy

3.4

MACHINE RATING

9588

USER OWNS

9257

SYSTEM OWNS

06/09/2025

RELEASED
Created by kavigihan

Machine Synopsis

`Soulmate` is an easy difficulty Linux machine that showcases exploitation of [CVE-2025-31161](https://nvd.nist.gov/vuln/detail/CVE-2025-31161), an authentication bypass vulnerability in CrushFTP, allowing players to access an admin user account. By uploading a malicious PHP file to the application's web root, remote command execution is achieved. For privilege escalation, [CVE-2025-32433](https://nvd.nist.gov/vuln/detail/CVE-2025-32433), another remote command execution vulnerability in the Erlang/OTP SSH server is being exploited to gain `root` access.

Machine Matrix

Ready to start your
hacking journey?