Netmon Box By mrb3n - HackTheBox

Just finished this box!

Hint for user: User.txt was straight forward however, getting root.txt was frustrated due to resets.

Hint for root: There’s an CVE for remote code execution which works quite well.

"path"; copy root.txt > root.txt

Can you explain the hint?
Is there any other way to get the root?

I figured two ways through notifications and sensors.

There must be unintended way which i don’t know about but this RCE exploit works.

Can you help me for the path, means which path i have to put here ?

what is the path of root.txt. how would i knw?

For every Windows Box the path is the same C:\Users\Administrator\Desktop\root.txt

"path"; copy root.txt > root.txt