Write-ups
Check The Published Writeups
WDB | Title | Tags | Programs | Authors | Type | Publication | Added |
---|---|---|---|---|---|---|---|
1834 | Oracle Server Side Request Forgery (SSRF) Metadata | SSRF | Oracle | Lidor Ben Shitrit | Bug Bounty | 2022-02-08 | 2023-06-13 |
934 | FabriXss (CVE-2022-35829): How We Managed to Abuse a Custom Role User Using CSTI and Stored XSS in Azure Fabric Explorer | CSTI Stored XSS | Microsoft | Lidor Ben Shitrit | Bug Bounty | 2022-10-19 | 2023-06-13 |
580 | How Orca Found Server-Side Request Forgery (SSRF) Vulnerabilities in Four Different Azure Services | SSRF Cloud | Microsoft (Azure) | Lidor Ben Shitrit | Bug Bounty | 2023-01-17 | 2023-06-13 |
248 | Super FabriXss: From XSS to an RCE in Azure Service Fabric Explorer by Abusing an Event Tab Cluster Toggle (CVE-2023-23383) | RCE XSS Cloud | Microsoft (Azure) | Lidor Ben Shitrit | Bug Bounty | 2023-03-30 | 2023-06-13 |