OS Command Injection
What I learned after completing the OS Command Injection path in Portswigger
CCTV
HTB Easy Linux machine — default creds into ZoneMinder, time-based SQL injection (CVE-2024-51482) to dump password hashes, and root via motionEye command injection (CVE-2025-60787)





