writeups.xyz writeups.xyz / -

Title Vulnerabilities Programs Authors
SSD Advisory – TP-LINK NCXXX Authentication Bypass
SSD Advisory – Zyxel VPN Series Pre-auth Remote Command Execution
SSD Advisory – File History Service (FHSVC.DLL) Elevation Of Privilege
SSD Advisory – NETGEAR R7800 AFPD PreAuth
SSD Advisory – Cisco Secure Manager Appliance jwt_api_impl Hardcoded JWT Secret Elevation of Privilege
SSD Advisory – Cisco Secure Manager Appliance remediation_request_utils SQL Injection Remote Code Execution
SSD Advisory – Galaxy Store Applications Installation/Launching without User Interaction
Cold Hard Cache — Bypassing RPC Interface Security with Cache Abuse
Web application firewall bypass
Hacking TMNF: Part 1 - Fuzzing the game server
SSD Advisory – Linux CLOCK_THREAD_CPUTIME_ID LPE
SSD Advisory – Linux CONFIG_WATCH_QUEUE LPE
SSD Advisory – NETGEAR DGND3700v2 PreAuth Root Access
SSD Advisory – Rocket.Chat Client-side Remote Code Execution
CVE-2021-26420: Remote Code Execution In Sharepoint Via Workflow Compilation
SSD Advisory – NETGEAR D7000 Authentication Bypass
CVE-2021-2429: A Heap-based Buffer Overflow Bug In The Mysql Innodb Memcached Plugin
How I Hacked Google App Engine: Anatomy of a Java Bytecode Exploit
CVE-2021-22204 - Recreating a critical bug in ExifTool, no Perl smarts required.
Cross Site Scripting (XSS) Reflected in one of the subdomains of “General Motors”(Bugbounty)
How i found 3 SSRF in one day on different bug bounty targets
XSS on Google{5.000$}-Google Vulnerability Reward Program (VRP)
0day writeup: XXE in uber.com
Turning Self-XSS into Good XSS v2: Challenge Completed but Not Rewarded