writeups.xyz writeups.xyz / Unrestricted File Upload

Title Vulnerabilities Programs Authors
Hitting the jackpot with RCE!
Traccar 5 Remote Code Execution Vulnerabilities
From Discovery to Disclosure: ReCrystallize Server Vulnerabilities
CVE-2023-25365 / XSS via file upload bypass
Unrestricted File Upload Lead to Stored XSS at Microsoft main domain
Technical Advisory – Multiple Vulnerabilities in PandoraFMS Enterprise
$7000 Bounty on a Single Web Application
Revisiting an Old Bug: File Upload to Code Execution
Technical Advisory: Vulnerabilities Identified within ListServ
Unveiling RCE on Dutch Government Website
RCE on Application’s Tracking Admin Panel
Multiple Vulnerabilities In Cockpit CMS <= V2.5.2
Sony Bravia Remote Code Execution Disclosure
A deep-dive on Pluck CMS vulnerability CVE-2023-25828
How a simple Directory Listing leads to PII Data Leakage, Remote Code Execution and many more vulnerabilities on a HR management subdomain
When Good APIs Go Bad: Uncovering 3 Azure API Management Vulnerabilities
Apache Solr 8.3.1 RCE from exposed administration interface
Exploiting an Order of Operations Bug to Achieve RCE in Oracle Opera
Bug Bounty: como encontrei o bug Unrestricted File Upload
The Tale of a Command Injection by Changing the Logo
Zip bomb attack
Disabling js for the win
CentreStack Disclosure
CVE-2022-21587 (Oracle E-Business Suite Unauthenticated RCE)
Lexmark MC3224adwe RCE exploit