Write-ups
Check The Published Writeups
WDB | Title | Tags | Programs | Authors | Type | Publication | Added |
---|---|---|---|---|---|---|---|
828 | Checkmk: Remote Code Execution by Chaining Multiple Bugs (1/3) | RCE Code injection SSRF Line Feed injection Arbitrary file read Authentication bypass Security code review | Checkmk | Stefan Schiller (@scryh_) | Bug Bounty | 2022-11-15 | 2023-06-13 |
620 | Cacti: Unauthenticated Remote Code Execution | RCE Authentication bypass OS command injection Security code review | Cacti | Stefan Schiller (@scryh_) | Bug Bounty | 2023-01-03 | 2023-06-13 |
254 | It’s a (SNMP) Trap: Gaining Code Execution on LibreNMS | RCE Stored XSS Security code review | LibreNMS | Stefan Schiller (@scryh_) | Bug Bounty | 2023-03-29 | 2023-06-13 |
208 | Pretalx Vulnerabilities: How to get accepted at every conference | Arbitrary file read Arbitrary file write RCE Security code review | Pretalx | Stefan Schiller (@scryh_) | Bug Bounty | 2023-04-11 | 2023-06-13 |