writeups.xyz writeups.xyz / Lidor Ben Shitrit

Title Vulnerabilities Programs Authors
Azure HDInsight: The Sequel – Unveiling 3 New Vulnerabilities That Could Have Led to Privilege Escalations and Denial of Service
Azure HDInsight Riddled With XSS Vulnerabilities via Apache Services
Two XSS Vulnerabilities in Azure with Embedded postMessage IFrames
Super FabriXss: From XSS to an RCE in Azure Service Fabric Explorer by Abusing an Event Tab Cluster Toggle (CVE-2023-23383)
How Orca Found Server-Side Request Forgery (SSRF) Vulnerabilities in Four Different Azure Services
FabriXss (CVE-2022-35829): How We Managed to Abuse a Custom Role User Using CSTI and Stored XSS in Azure Fabric Explorer
Oracle Server Side Request Forgery (SSRF) Metadata