Write-ups

Check The Published Writeups

WDBTitleTagsProgramsAuthorsTypePublicationAdded
3116Watch your requests! Open redirect to a complete account takeover Path traversal Open redirect SSRF Account takeover NA Suraj Disoja (@ninetyn1ne_) Bug Bounty2020-10-052023-06-13
3087GitHub Pages - Multiple RCEs via insecure Kramdown configuration - $25,000 Bounty RCE Path traversal GitHub William Bowling / vakzz (@wcbowling) Bug Bounty2020-10-202023-06-13
3048Silver Peak Unity Orchestrator RCE RCE Authentication bypass Path traversal SQL injection Silver Peak Realmode Labs (@RealmodeLabs) Bug Bounty2020-11-082023-06-13
3030SD-PWN Part 2 — Citrix SD-WAN Center — Another Network Takeover RCE Authentication bypass Path traversal OS command injection Local Privilege Escalation Citrix Systems Realmode Labs (@RealmodeLabs) Bug Bounty2020-11-152023-06-13
3007SD-PWN — Part 3 — Cisco vManage — Another Day, Another Network Takeover RCE SSRF Arbitrary file write Path traversal OS command injection Local Privilege Escalation Cisco Realmode Labs (@RealmodeLabs) Bug Bounty2020-11-232023-06-13
3004SD-PWN Part 4 — VMware VeloCloud — The Last Takeover RCE Authentication bypass Default credentials SQL injection Path traversal LFI VMware Realmode Labs (@RealmodeLabs) Bug Bounty2020-11-262023-06-13
2918$10,000 for a vulnerability that doesn’t exist Path traversal NA Valeriy Shevchenko (@Krevetk0Valeriy) Bug Bounty2021-01-072023-06-13
2661Intro to Open-source Bug Bounty Path traversal Mailtrain Arjun Shibu (@0xsegf) Bug Bounty2021-04-052023-06-13
2546Path Traversal in MobileSafari Path traversal Apple David Schütz (@xdavidhu) Bug Bounty2021-05-182023-06-13
2405Remote code execution in cdnjs of Cloudflare RCE Path traversal Cloudflare RyotaK (@ryotkak) Bug Bounty2021-07-162023-06-13
2321Why u should use burp to test Path Traversal Vulnerability and also get RXSS Path traversal XSS CSRF Account takeover NA Yasser Mohammed (@boomneroli) Bug Bounty2021-08-162023-06-13
2205RCE in Citrix ShareFile Storage Zones Controller (CVE-2021-22941) – A Walk-Through RCE Path traversal Citrix Systems Markus Wulftange (@mwulftange) Bug Bounty2021-09-212023-06-13
2013CVE-2021-43798 - Path Traversal Vulnerability In Grafana Path traversal Grafana Labs Jordy Versmissen / J0VSEC (@j0v0x0) Bug Bounty2021-12-082023-06-13
1994GHSL-2021-1053: Path traversal in Grafana REST API - CVE-2021-43813, CVE-2021-43815 Path traversal Grafana Labs Alvaro Muñoz (@pwntester) Bug Bounty2021-12-152023-06-13
1967Common Nginx Misconfiguration leads to Path Traversal Path traversal NA MikeChan Bug Bounty2021-12-282023-06-13
1940Breaking Parser Logic: Gain Access To NGINX Plus API — Read/Write Upstreams. Path traversal NA zoid (@z0idsec) Bug Bounty2022-01-052023-06-13
1918RCE In Adobe Acrobat Reader For Android(CVE-2021-40724) RCE Path traversal Android Google Adobe sunny (@hulkvision) Bug Bounty2022-01-142023-06-13
1899Path Traversal Paradise Path traversal LFI NA Kuldeep Pandya (@kuldeepdotexe) Bug Bounty2022-01-232023-06-13
1827QRCDR ZeroDay Path Traversal Vulnerability Path traversal NA Farhad Karimi (@n0lsec) Bug Bounty2022-02-112023-06-13
1781Catching bugs in VMware: Carbon Black Cloud Workload Appliance and vRealize Operations Manager Authentication bypass RCE SSRF Path traversal VMware Egor Dimitrenko (@elk0kc) Bug Bounty2022-02-252023-06-13
1772[ Directory Traversal attack ] How did I find it using GitHub Information disclosure Path traversal NA Fenrir (@leetibrahim) Bug Bounty2022-03-022023-06-13
1764How I Hacked A Crypto Company And Could Steal 1 Million Dollars Worth of Bitcoin Path traversal NA zoid (@z0idsec) Bug Bounty2022-03-052023-06-13
1686Joomla! <= 4.1.0 (Tar.php) Zip Slip Vulnerability Zip Slip attack Path traversal Source code disclosure Joomla! Egidio Romano / EgiX Bug Bounty2022-03-292023-06-13
1648Meta%27s SparkAR RCE Via ZIP Path Traversal RCE Path traversal Meta / Facebook Fady Othman (@Fady_Othman) Bug Bounty2022-04-072023-06-13
1632Bypass Apple Corp SSO on Apple Admin Panel Path traversal Apple Stealthy (@stealthybugs) Bug Bounty2022-04-122023-06-13