writeups.xyz writeups.xyz / RCE

Title Vulnerabilities Programs Authors
KnowBe4 RCE and LPE
Pwn2Own Miami: Aveva Edge Arbitrary DLL Loading Vulnerability
MITMing the Xbox 360 Dashboard for Fun and RCE
Path Traversal and Code Execution in CSLA.NET (CVE-2024-28698)
Studying 0days: How we hacked Anki, the world's most popular flashcard app
3 ways to get Remote Code Execution in Kafka UI
JNDI Injection Remote Code Execution via Path Manipulation in MemoryUserDatabaseFactory
SSD Advisory – XenForo RCE Via CSRF
SSD Advisory – SonicWall SMA100 Stored XSS To RCE
Chaining Three Bugs to Access All Your ServiceNow Data
Evernote RCE: From PDF.js font-injection to All-platform Electron exposed ipcRenderer with listened BrokerBridge Remote-Code Execution
Shelltorch Explained: Multiple Vulnerabilities in Pytorch Model Server (Torchserve) (CVSS 9.9, CVSS 9.8) Walkthrough
WhatsUp Gold Pre-Auth RCE GetFileWithoutZip Primitive (CVE-2024-4885)
WhatsUp Gold Pre-Auth RCE WriteDataFile Primitive (CVE-2024-4883)
Universal Code Execution by Chaining Messages in Browser Extensions
CVE-2024-29510 – Exploiting Ghostscript using format strings
From Limited file read to full access on Jenkins (CVE-2024-23897)
CVE-2024-27292: docAssembling exploits for RCE
Getting Unauthenticated Remote Code Execution On The Logsign Unified Secops Platform
regreSSHion: Remote Unauthenticated Code Execution Vulnerability in OpenSSH server
Vulnerabilities In CocoaPods Open The Door To Supply Chain Attacks Against Thousands Of iOS And MacOS Applications
Bytecode Breakdown: Unraveling Factorio's Lua Security Flaws
Inside Xerox WorkCentre: Two Unauthenticated RCEs
17 vulnerabilities in Sharp Multi-Function Printers
Exploiting Steam: Usual and Unusual Ways in the CEF Framework