writeups.xyz writeups.xyz / Code Injection

Title Vulnerabilities Programs Authors
Spip Preauth RCE 2024: Part 1, The Feather
How i hacked NASA? at NASA VDP
LLM Pentest: Leveraging Agent Integration For RCE
Code Injection to RCE with .NET
CVE-2024-21378 — Remote Code Execution in Microsoft Outlook
How I Hacked the Dutch Government: Exploiting an Innocent Image for Remote Code Execution
CVE-2023-5372 - Post-auth blind Python code injection vulnerabilities in Zyxel’s NAS326 and NAS542 devices
CVE-2023-37927 & CVE-2023-37928 - Multiple post-auth blind OS command and Python code injection vulnerabilities in Zyxel’s NAS326 devices
Securing our home labs: Home Assistant code review
CVE-2023-33733 RCE via HTMLi in reportlab
[P2O Vancouver 2023] SharePoint Pre-Auth RCE chain (CVE-2023–29357 & CVE-2023–24955)
CraftCMS RCE
CVE-2023-35150: Arbitrary Code Injection In XWiki.Org XWiki
Analysis of CVE-2023-3519 in Citrix ADC and NetScaler Gateway
CVE-2023-33733 reportlab RCE
Code Injection via Python Sandbox Escape — how I got a shell inside a network.
Cool Vulns Don't Live Long - Netgear And Pwn2Own
Checkmk: Remote Code Execution by Chaining Multiple Bugs (1/3)
CVE-2022-3236: Sophos Firewall User Portal and Web Admin Code Injection
Persistent PHP Payloads In PNGs: How To Inject PHP Code In An Image – And Keep It There !
Bypassing ModSecurity for RCEs
RCE on Spip and Root-Me, v2!
Exploiting CVE-2022-24816: A Code Injection In The Jt-jiffle Extension Of Geoserver
How i made 15k$ from Remote Code Execution Vulnerability
RCE By Code Injection | Perl Reverse Shell