writeups.xyz writeups.xyz / Path Traversal

Title Vulnerabilities Programs Authors
Analysis of CVE-2019-14994 – Jira Service Desk Path Traversal leads to Massive Information Disclosure
RCE using Path Traversal
Chaining multiple low-impact bugs to arbitrary file read in GitLab
Simple PathTraversal bypass
Code execution - Evernote
Old but GOLD Dot Dot Slash to Get the Flag — Uber Microservice
Remote Code Execution via Path Traversal in the Device Metadata Authoring Wizard
Reverse RDP Attack: Code Execution on RDP Clients
Magento – RCE & Local File Read with low privilege admin rights
Unauthenticated RSFTP to Command Injection
CVE-2018-11759 – Apache mod_jk access control bypass
Path traversal while uploading results in RCE
Traversing the Path to RCE
Manage Engine OpManager Multiple Authenticated RCE Vulnerabilities
5k$ for path traversal on *.paypal-corp.com subdomain
Multiple security vulnerabilities in domains belonging to Google
#BugBounty — API keys leakage, Source code disclosure in India’s largest e-commerce health care company.
How I gained access to Sony’s database
No RCE? Then SSH to the box!
One Cloud-based Local File Inclusion = Many Companies affected
Airbnb – Chaining Third-Party Open Redirect into Server-Side Request Forgery (SSRF) via LivePerson Chat
Prezi (map.prezi.com) Path Traversal
Heroku Directory Transversal
Compromising an unreachable Solr server with CVE-2013-6397