Writeups
Spotlight
Add Your Writeup
Blogs
Contact Us
Register
Login
Write-ups
Check The Published Writeups
Search
Reset
WDB
Title
Tags
Programs
Authors
Type
Publication
Added
231
Pentah0wnage: Pre-Auth RCE in Pentaho Business Analytics Server
RCE
SSTI
Authorization bypass
Groovy scripting
Hitachi Vantara (Pentaho)
Harry Withington
Bug Bounty
2023-04-04
2023-06-13
192
(CVE-2023-2017) Shopware 6 Server-side Template Injection (SSTI) via Twig Security Extension
SSTI
RCE
Security code review
Shopware
Ngo Wei Lin (@Creastery)
Bug Bounty
2023-04-17
2023-06-13
190
Multiple Critical Vulnerabilities In Strapi Versions <=4.7.1
Authentication bypass
SSTI
RCE
Amazon cognito misconfiguration
Information disclosure
Strapi
GhostCcamm (@GhostCcamm)
Bug Bounty
2023-04-17
2023-06-13
137
Placeholder for Dayzzz: Abusing placeholders to extract customer informations
SSTI
Information disclosure
GitHub
Ophion Security (@OphionSecurity)
Bug Bounty
2023-05-01
2023-06-13
130
When you%27re so bored, you start debugging someone else%27s code: bug hunting in a random Cloud-Native project
SSTI
RCE
Foreman
ONSEC.io Research Team
Bug Bounty
2023-05-03
2023-06-13
64
Red team: Journey from RCE to have total control of cloud infrastructure
RCE
SSTI
Container escape
Kubernetes
Components with known vulnerabilities
CI/CD
NA
Quang Vo (@mr_r3bot)
Bug Bounty
2023-05-22
2023-06-13
« Previous
1
2