Back to directory
WRITEUP #2125

Securing Developer Tools: A New Supply Chain Attack on PHP

RCEArgument injectionSupply chain attackSecurity code review
by@swapgs(Thomas Chauchefoin)
Program
Packagist
Published
Oct 4, 2022
Added to HackDex
Oct 6, 2022
Read Full Writeuphttps://blog.sonarsource.com/securing-developer-tools-a-new-supply-chain-attack-on-php/
RELATED WRITEUPS
Getting code execution on Veeam through CVE-2023-27532
RCEInsecure deserialization
Spip Preauth RCE 2024: Part 2, A Big Upload
RCEFile upload
Back To School - Exploiting A Remote Code Execution Vulnerability In Moodle
RCESecurity code review
WordPress GiveWP POP to RCE (CVE-2024-5932)
RCEPHP pop chain
Traccar 5 Remote Code Execution Vulnerabilities
RCEUnrestricted file upload

Built with ❤️ by Shubham Rawat