Back to directory
WRITEUP #1233

Exploiting an Order of Operations Bug to Achieve RCE in Oracle Opera

RCEUnrestricted file uploadPath traversalSecurity code review
by@infosec_au(Shubham Shah)
Program
Oracle (Opera)
Published
Apr 30, 2023
Added to HackDex
May 4, 2023
Read Full Writeuphttps://blog.assetnote.io/2023/04/30/rce-oracle-opera/
RELATED WRITEUPS
Traccar 5 Remote Code Execution Vulnerabilities
RCEUnrestricted file upload
Path Traversal and Code Execution in CSLA.NET (CVE-2024-28698)
RCEPath traversal
WhatsUp Gold Pre-Auth RCE WriteDataFile Primitive (CVE-2024-4883)
RCEPath traversal
WhatsUp Gold Pre-Auth RCE GetFileWithoutZip Primitive (CVE-2024-4885)
RCEPath traversal
Getting code execution on Veeam through CVE-2023-27532
RCEInsecure deserialization

Built with ❤️ by Shubham Rawat