HTB Writeup – Unrested
Posted on 2024-12-07
Zabbix CVE-2024-36467 (JSON RPC IDOR) & CVE-2024-42327 (SQLi)
Zabbix CVE-2024-36467 (JSON RPC IDOR) & CVE-2024-42327 (SQLi)
There is no excerpt because this is a protected post.
XSS + RCE for PrestaShop & exploit SSTI on ChangeDetection.io
SQLPad RCE vulnerability & Froxlor exploit via Chrome remote debugging
RCE for CACTI monitor system, Auth bypass for Duplicati backup solution.
Skipper Proxy SSRF, Blazor traffic exploit, Privesc from process monitor
CVE-2023-41425 for WonderCMS RCE with malicious themes module.
CVE-2024-32002 for Git RCE, CVE-2024-20656 for Visual Studio PE