Write-ups

Check The Published Writeups

WDBTitleTagsProgramsAuthorsTypePublicationAdded
5261Heroku Directory Transversal Path traversal Heroku Shashank (@cyberboyIndia) Bug Bounty2013-12-032023-06-13
5246Prezi (map.prezi.com) Path Traversal Path traversal Prezi Patrik Fehrenbach (@ITSecurityguard) Bug Bounty2014-05-212023-06-13
5091Airbnb – Chaining Third-Party Open Redirect into Server-Side Request Forgery (SSRF) via LivePerson Chat Open redirect SSRF Path traversal Airbnb Brett Buerhaus (@bbuerhaus) Bug Bounty2017-03-092023-06-13
4882No RCE? Then SSH to the box! LFI Path traversal RCE NA Jasmin Laundry (@JR0ch17) Bug Bounty2018-01-252023-06-13
4867How I gained access to Sony’s database Path traversal Sony Rahul R Bug Bounty2018-02-062023-06-13
4847#BugBounty — API keys leakage, Source code disclosure in India’s largest e-commerce health care company. Path traversal NA Avinash Jain (@logicbomb_1) Bug Bounty2018-02-252023-06-13
47475k$ for path traversal on *.paypal-corp.com subdomain Path traversal Paypal lalka (@0x01alka) Bug Bounty2018-05-302023-06-13
4720Manage Engine OpManager Multiple Authenticated RCE Vulnerabilities RCE Path traversal Unrestricted file upload Information disclosure Arbitrary file write Zoho (ManageEngine) Denis Andzakovic Bug Bounty2018-06-182023-06-13
4623Traversing the Path to RCE Path traversal RCE NA hawkinsecurity Bug Bounty2018-08-272023-06-13
4528Path traversal while uploading results in RCE Path traversal RCE NA Harsh Jaiswal (@rootxharsh) Bug Bounty2018-10-152023-06-13
4498CVE-2018-11759 – Apache mod_jk access control bypass Path traversal Apache HTTP Server Raphaël Arrouas Bug Bounty2018-11-012023-06-13
4494Unauthenticated RSFTP to Command Injection Path traversal RCE NA Nicodemo Gawronski Bug Bounty2018-11-032023-06-13
4342Magento – RCE & Local File Read with low privilege admin rights LFI RCE Path traversal Magento Daniel Le Gall (@Blaklis_) Bug Bounty2019-01-242023-06-13
4324Reverse RDP Attack: Code Execution on RDP Clients Path traversal Microsoft Eyal Itkin Bug Bounty2019-02-052023-06-13
4320Remote Code Execution via Path Traversal in the Device Metadata Authoring Wizard Path traversal RCE Microsoft Lee Christensen (@tifkin_) Bug Bounty2019-02-062023-06-13
4214Old but GOLD Dot Dot Slash to Get the Flag — Uber Microservice SSRF Path traversal Account takeover Uber Ron Chan (@ngalongc) Bug Bounty2019-04-072023-06-13
4195Code execution - Evernote RCE Path traversal Evernote Dhiraj (@mishradhiraj_) Bug Bounty2019-04-172023-06-13
4124Simple PathTraversal bypass Path traversal NA fr0stNuLL Bug Bounty2019-06-032023-06-13
4123Chaining multiple low-impact bugs to arbitrary file read in GitLab Path traversal GitLab Li Rongxi (@nyan_gawa) Bug Bounty2019-06-042023-06-13
3944RCE using Path Traversal RCE Path traversal NA inc0gbyt3 (@incogbyte) Bug Bounty2019-09-022023-06-13
3900Analysis of CVE-2019-14994 – Jira Service Desk Path Traversal leads to Massive Information Disclosure Path traversal Atlassian Sam Curry (@samwcyo) Bug Bounty2019-09-252023-06-13
3488Magic of the Back Slash Path traversal NA Anil Tom (mr_4nk) Bug Bounty2020-05-112023-06-13
3409Cmd Hijack - a command/argument confusion with path traversal in cmd.exe OS command injection Path traversal Microsoft Julian Horoszkiewicz Bug Bounty2020-06-102023-06-13
3377Hacking Starbucks and Accessing Nearly 100 Million Customer Records Path traversal Starbucks Sam Curry (@samwcyo) Bug Bounty2020-06-202023-06-13
3362Bypassing file upload filter by source code review in Bolt CMS RCE Unrestricted file upload Path traversal Security code review Bolt CMS Sivanesh Ashok (@sivaneshashok) Bug Bounty2020-06-272023-06-13