writeups.xyz writeups.xyz / Rahul Maini (@Iamnoooob)

Title Vulnerabilities Programs Authors
Hacking Apple - SQL Injection to Remote Code Execution
Hello Lucee! Let us hack Apple again?
Atlassian Confluence - Remote Code Execution (CVE-2023-22527)
Adobe ColdFusion Pre-Auth RCE(s)
CVE-2023-36934 Analysis: MOVEit Transfer SQL Injection
PHP Development Server <= 7.4.21 - Remote Source Disclosure
"A tale of making internet pollution free" - Exploiting Client-Side Prototype Pollution in the wild
Finding 0day to hack Apple
Spilling Local Files via XXE when HTTP OOB fails
Exploiting a Tricky Blind SQL Injection inside LIMIT clause
Local File Read via XSS in Dynamically Generated PDF
Story of a Parameter Specific XSS!