Writeups
Spotlight
Add Your Writeup
Blogs
Contact Us
Register
Login
Write-ups
Check The Published Writeups
Search
Reset
WDB
Title
Tags
Programs
Authors
Type
Publication
Added
1328
WordPress Transposh: Exploiting a Blind SQL Injection via XSS - RCE Security
SQL injection
XSS
Account takeover
WordPress
Julien Ahrens (@MrTuxracer)
Bug Bounty
2022-07-22
2023-06-13
1123
WordPress Core - Unauthenticated Blind SSRF
SSRF
WordPress
Simon Scannell (@scannell_simon)
Bug Bounty
2022-09-06
2023-06-13
337
WordPress BuddyForms Plugin — Unauthenticated Insecure Deserialization (CVE-2023–26326)
Insecure deserialization
Security code review
RCE
NA
Joshua Martinelle (@J0_mart)
Bug Bounty
2023-03-07
2023-06-13
259
High severity vulnerability fixed in WordPress Elementor Pro plugin.
Broken Access Control
Privilege Escalation
Security code review
Elementor
Jerome Bruandet
Bug Bounty
2023-03-28
2023-06-13
154
Never Connect to RDP Servers Over Untrusted Networks
RDP
Microsoft
Olivier Bilodeau (@obilodeau)
Bug Bounty
2023-04-26
2023-06-13
81
DLL Hijacking Strikes Back: Exploiting Windows on ARM RDP Client (CVE-2023-24905)
DLL Hijacking
Local Privilege Escalation
Microsoft (Windows)
Dor Dali
Bug Bounty
2023-05-17
2023-06-13
47
XSS in WordPress via open embed auto discovery
XSS
postMessage
WordPress
Jakub Żoczek (@zoczus)
Bug Bounty
2023-05-29
2023-06-13
« Previous
1
2