writeups.xyz
/
SAP
Title
Vulnerabilities
Programs
Authors
How I got Two RCE at BBP Program @0xbartita
RCE
Default Credentials
SAP
Groovy Scripting
Undisclosed
0xBartita (@0xBaRtiTa)
Chained to hit: Discovering new vectors to gain remote and root access in SAP Enterprise Software
SAP
Java RMI
RCE
JNDI Injection
SQL Injection
DoS
SSRF
Missing Authentication
HTTP Header Injection
Privilege Escalation
Information Disclosure
Memory Corruption
SAP
Pablo Artuso (@Lmkalg)
Yvan Genuer
How I got Two RCE at EPAM-Bounty Program
SAP
Default Credentials
RCE
Groovy Scripting
EPAM
0xBartita (@0xBaRtiTa)
Page 1 of 1