Back to directory
WRITEUP #1544

Facebook bug: A Journey from Code Execution to S3 Data Leak

RCEOS command injection
by@win3zz(Bipin Jitiya)
Program
Meta / Facebook
Published
Feb 16, 2023
Added to HackDex
Feb 26, 2023
Read Full Writeuphttps://medium.com/@win3zz/facebook-bug-a-journey-from-code-execution-to-s3-data-leak-698b7d2b02ef
RELATED WRITEUPS
Vulnerabilities in Open Source C2 Frameworks
RCEOS command injection
SSD Advisory – SonicWall SMA100 Stored XSS To RCE
RCEOS command injection
[2,500$ Bug Bounty Write-Up] Remote Code Execution (RCE) via unclaimed Node package
RCEDependency confusion
Attacking PowerShell CLIXML Deserialization
DeserializationInsecure deserialization
Zero-Click Calendar invite — Critical zero-click vulnerability chain in macOS
RCEArbitrary file write

Built with ❤️ by Shubham Rawat