Precision exploit for a shell injection vulnerability in a custom LPD (Line Printer Daemon / RFC 1179) server. The server passes unsanitized job names into a shell command, allowing single-quote breakout RCE. Supports multiple reverse shell payload types with automatic retry.
python exploit digital archiving penetration-testing rce offensive-security red-team lpr paper-work hackthebox hackthebox-writeups rfc1179 digital-archiving-solutions subprocess-injection
-
Updated
Jul 15, 2026 - Python