writeups.xyz
/
OnlyOffice
Title
Vulnerabilities
Programs
Authors
RCE via Path Traversal vulnerability in Onlyoffice CommunityServer < 12.5.2 (CVE-2023-34939)
Path Traversal
RCE
OnlyOffice
Kirill Firsov (@K_firsov)
CVE-2021-43444 to 43449: Exploiting ONLYOFFICE Web Sockets for Unauthenticated Remote Code Execution
Websockets
RCE
Arbitrary File Write
Path Traversal
OnlyOffice
Iain Wallace (@Strawp)
Page 1 of 1