Write-ups

Check The Published Writeups

WDBTitleTagsProgramsAuthorsTypePublicationAdded
5190Command injection which got me "6000$" from #Google OS command injection Google Venkatesh Sivakumar (@pranavvenkats) Bug Bounty2016-03-152023-06-13
5131Command Injection Without Spaces OS command injection NA Fyoorer (@ƒyoorer) Bug Bounty2016-10-022023-06-13
4979Exploiting a Single Request for Multiple Vulnerabilities Stored XSS Reflected XSS SSRF OS command injection NA Osama Ansari (@AnsariOsama10) Bug Bounty2017-09-192023-06-13
4707Unauthenticated Command Injection Vulnerability in VMware NSX SD-WAN by VeloCloud OS command injection RCE VMware Brian Sullivan Bug Bounty2018-06-292023-06-13
4557Collecting Shells by the Sea of NAS Vulnerabilities OS command injection XSS CSRF Lenovo Rick Ramgattie (@RRamgattie) Bug Bounty2018-10-012023-06-13
4438Digging in to SCP Command Injection OS command injection JSch Dylan Katz (@Plazmaz) Bug Bounty2018-12-032023-06-13
4362Command Injection PoC OS command injection NA NoGe (@p4c3n0g3) Bug Bounty2019-01-152023-06-13
3492Pentesting Cisco SD-WAN Part 2: Breaking Routers OS command injection Security code review Cisco Julien Legras (@Julien_Legras) Bug Bounty2020-05-072023-06-13
3409Cmd Hijack - a command/argument confusion with path traversal in cmd.exe OS command injection Path traversal Microsoft Julian Horoszkiewicz Bug Bounty2020-06-102023-06-13
3224Blind OS Command Injection OS command injection NA Ashik B Bug Bounty2020-08-122023-06-13
3109We Hacked Apple for 3 Months: Here’s What We Found RCE Authentication bypass Authorization bypass SSRF XXE Blind XSS IDOR OS command injection SQL injection Apple Sam Curry (@samwcyo) Bug Bounty2020-10-072023-06-13
3065Beyond the wall: command injection still alive. OS command injection NA Ahmed Constant (@a_Constant_) Bug Bounty2020-10-312023-06-13
3030SD-PWN Part 2 — Citrix SD-WAN Center — Another Network Takeover RCE Authentication bypass Path traversal OS command injection Local Privilege Escalation Citrix Systems Realmode Labs (@RealmodeLabs) Bug Bounty2020-11-152023-06-13
3021Hacking into (RCE) Government Server operated for the US Department of Energy’s National Nuclear Security Administration. RCE OS command injection US Department of Energy Shaheen Fazim Bug Bounty2020-11-162023-06-13
3007SD-PWN — Part 3 — Cisco vManage — Another Day, Another Network Takeover RCE SSRF Arbitrary file write Path traversal OS command injection Local Privilege Escalation Cisco Realmode Labs (@RealmodeLabs) Bug Bounty2020-11-232023-06-13
2856Analysing Crash Messages To Achieve Blind Root Command Injection OS command injection NA Shawar Khan (@ShawarkOFFICIAL) Bug Bounty2021-01-282023-06-13
2713An unknown Linux secret that turned SSRF to OS Command injection SSRF Command injection NA secureITmania (@secureitmania) Bug Bounty2021-03-172023-06-13
2667Code execution as root via AT commands on the Quectel EG25-G modem OS command injection RCE Quectel nns Bug Bounty2021-04-032023-06-13
2645Advisory: Cisco RV34X Series – Authentication Bypass and Remote Command Execution Authentication bypass OS command injection RCE Cisco T. Shiomitsu Bug Bounty2021-04-132023-06-13
2634Discoure themes OS Command Injection RCE OS command injection Discourse joernchen (@joernchen) Bug Bounty2021-04-182023-06-13
2110How I found Command Injection via Obsolete PHPThumb OS command injection RCE NA Sushant Kamble Bug Bounty2021-10-302023-06-13
2065A Story of an Epic Blind Remote Code Execution(RCE) RCE OS command injection NA Akash Solanki (@MAALP1225) Bug Bounty2021-11-182023-06-13
1881Command Injection in Google Cloud Shell RCE OS command injection Google Ademar Nowasky Junior Bug Bounty2022-01-282023-06-13
1819Advisory: Western Digital My Cloud Pro Series PR4100 RCE RCE OS command injection Western Digital Quentin Kaiser (@QKaiser) Bug Bounty2022-02-152023-06-13
1809Advisory: Cisco RV340 Dual WAN Gigabit VPN Router (RCE over LAN) RCE Unrestricted file upload OS command injection Cisco Quentin Kaiser (@QKaiser) Bug Bounty2022-02-172023-06-13