Back to directory
WRITEUP #1123

Kramer VIA GO² – Multiple issues

RCESQL injectionArbitrary file uploadArbitrary file read
by@JimSRush(Jim Rush)
Program
Kramer
Published
May 31, 2023
Added to HackDex
Jun 5, 2023
Read Full Writeuphttps://zxsecurity.co.nz/research/advisories/kramer-via-go-2-rce-and-other-vulns/
RELATED WRITEUPS
Exploiting authorization by nonce in WordPress plugins
RCEArbitrary file upload
Analysis of CVE-2024-43044 — From file read to RCE in Jenkins through agents
RCEArbitrary file read
From Limited file read to full access on Jenkins (CVE-2024-23897)
RCEArbitrary file read
Studying 0days: How we hacked Anki, the world's most popular flashcard app
RCEComponents with known vulnerabilities
We hacked Anki - 0 day exploit from studying someone elses flashcards
RCEComponents with known vulnerabilities

Built with ❤️ by Shubham Rawat