865 | Practical Client Side Path Traversal Attacks |
Path traversal
Client-side Path Traversal
Open redirect
CSS injection |
Acronis |
Medi (@medi_0ne) |
Bug Bounty | 2022-11-04 | 2023-06-13 |
863 | Directory traversal in PDF viewing application. Leading to full database takeover |
Path traversal |
NA |
Tom Wrinn |
Bug Bounty | 2022-11-05 | 2023-06-13 |
849 | Chaining Path Traversal with SSRF to disclose internal git repo data in a Bank Asset |
SSRF
Path traversal |
NA |
Nikhil (niks) (@niksthehacker) |
Bug Bounty | 2021-11-09 | 2023-06-13 |
844 | Unit 42 Finds Three Vulnerabilities in OpenLiteSpeed Web Server |
RCE
OS command injection
Path traversal
Local Privilege Escalation |
LiteSpeed |
Artur Avetisyan (@3v1LMonk3y) |
Bug Bounty | 2022-11-10 | 2023-06-13 |
834 | Path Traversal Vulnerability in Payara Platform |
Path traversal |
Payara |
Michael Baer |
Bug Bounty | 2022-11-14 | 2023-06-13 |
733 | Drupal H5P Module <= 2.0.0 (isValidPackage) Zip Slip Vulnerability |
Zip Slip attack
Path traversal
Source code disclosure |
Drupal |
Egidio Romano / EgiX |
Bug Bounty | 2022-12-03 | 2023-06-13 |
693 | CVE-2021-43444 to 43449: Exploiting ONLYOFFICE Web Sockets for Unauthenticated Remote Code Execution |
Websockets
RCE
Arbitrary file write
Path traversal |
OnlyOffice |
Iain Wallace (@strawp) |
Bug Bounty | 2022-12-14 | 2023-06-13 |
691 | CVE-2021-43444 to 43449: Exploiting ONLYOFFICE Web Sockets for Unauthenticated Remote Code Execution |
Websockets
XSS
RCE
Arbitrary file write
Path traversal |
OnlyOffice |
Iain Wallace (@strawp) |
Bug Bounty | 2022-12-14 | 2023-06-13 |
680 | Directory Traversal Vulnerability in Huawei HG255s Products |
Path traversal |
Huawei |
Ismail Tasdelen |
Bug Bounty | 2022-12-17 | 2023-06-13 |
648 | How I found multiple critical bugs in Red Bull |
Authentication bypass
HTTP response manipulation
Path traversal
LFI
XSS
SQL injection
RCE
Unrestricted file upload
RFI
Security code review |
Red Bull |
Bartłomiej Bergier (@_bergee_) |
Bug Bounty | 2022-12-26 | 2023-06-13 |
646 | The OWASSRF + TabShell exploit chain |
SSRF
Path traversal
Sandbox escape |
Microsoft |
Rskvp93 (@rskvp93) |
Bug Bounty | 2022-12-26 | 2023-06-13 |
616 | PandoraFMS - Pre-Auth Remote Code Execution |
RCE
Path traversal
Arbitrary file upload
LFI
Security code review |
PandoraFMS |
esj4y (@esj4y) |
Bug Bounty | 2023-01-06 | 2023-06-13 |
603 | Practical Example Of Client Side Path Manipulation |
Client-side Path Traversal |
NA |
Antoine Roly (@aroly) |
Bug Bounty | 2023-01-09 | 2023-06-13 |
583 | Unauthenticated Configuration Export in Multiple WAGO Products |
Path traversal
Security code review |
WAGO |
ONEKEY (@onekey_sec) |
Bug Bounty | 2023-02-16 | 2023-06-13 |
549 | Using 0days to Protect the United Nations |
RCE
Authentication bypass
Path traversal |
United Nations |
Florian Hauser (@frycos) |
Bug Bounty | 2023-01-24 | 2023-06-13 |
519 | Remote Command Execution in binwalk |
RCE
Path traversal
Security code review |
ReFirm Labs (binwalk)
ubi_reader
jefferson
yaffshiv |
Quentin Kaiser (@QKaiser) |
Bug Bounty | 2023-01-31 | 2023-06-13 |
427 | Escaping misconfigured VSCode extensions |
Path traversal
DNS rebinding
XSS
HTML injection
Webview
CSP bypass |
Microsoft (SARIF viewer & Live Preview) |
Vasco Franco |
Bug Bounty | 2023-02-21 | 2023-06-13 |
425 | Multiple vulnerabilities in Nokia BTS Airscale ASIKA |
Base transceiver station
Path traversal
Hardcoded private key
Local Privilege Escalation
Security misconfiguration |
Nokia |
Geoffrey Bertoli (@YofBalibump) |
Bug Bounty | 2023-02-21 | 2023-06-13 |
423 | What the Vuln: Zimbra |
Zip Slip attack
Path traversal |
NA |
Carlos Yanez |
Bug Bounty | 2023-02-21 | 2023-06-13 |
403 | Escaping well-configured VSCode extensions (for profit) |
Electron
Webview
Path traversal |
Microsoft |
Vasco Franco |
Bug Bounty | 2023-02-23 | 2023-06-13 |
362 | How I Earned $$$ for Excessive Data Exposure Through Directory Traversal Leads to Product Price Manipulation |
Path traversal
Information disclosure
Payment bypass |
NA |
Mohamed Shibil |
Bug Bounty | 2023-03-03 | 2023-06-13 |
288 | Directory Traversal and LFI worth $400 |
Path traversal |
NA |
Hritik Thapa |
Bug Bounty | 2023-03-17 | 2023-06-13 |
279 | Parallels Desktop Toolgate Vulnerability |
Path traversal
Arbitrary file write
Security code review
Thick client |
Parallels |
Alexandre Adamski (@NeatMonster_) |
Bug Bounty | 2023-03-20 | 2023-06-13 |
205 | Losing control over Schneider%27s EcoStruxure Control Expert |
RCE
Path traversal
Security code review |
Schneider Electric |
Ruben Santamarta (@reversemode) |
Bug Bounty | 2023-04-11 | 2023-06-13 |
160 | Vocera Report Server Pwnage |
RCE
Arbitrary file upload
Path traversal
Zip Slip attack |
Stryker |
b0yd (@rwincey) |
Bug Bounty | 2023-04-24 | 2023-06-13 |