Back to directory
WRITEUP #1243

Git Arbitrary Configuration Injection (CVE-2023-29007)

Logic BugLogic flawArbitrary Code ExecutionSecurity code review
by@0xacb(André Baptista)
Program
Git
Published
Apr 26, 2023
Added to HackDex
Apr 27, 2023
Read Full Writeuphttps://blog.ethiack.com/en/blog/git-arbitrary-configuration-injection-cve-2023-29007
RELATED WRITEUPS
Logic Flaw: I Can Block You from Accessing Your Own Account
Logic BugLogic flaw
“Like” Bypass on Customer Reviews — €500 bounty
Logic BugLogic flaw
Getting code execution on Veeam through CVE-2023-27532
RCEInsecure deserialization
Spip Preauth RCE 2024: Part 2, A Big Upload
RCEFile upload
Basic HTTP Authentication Risk: Uncovering pyspider Vulnerabilities
XSSReflected XSS

Built with ❤️ by Shubham Rawat