Back to directory
WRITEUP #2358

Remote Code Execution on Element Desktop Application using Node Integration in Sub Frames Bypass - CVE-2022-23597

RCEXSS
by@s1r1u5_(s1r1us)
Program
Matrix (Element)
Published
Aug 13, 2022
Added to HackDex
Sep 15, 2022
Read Full Writeuphttps://blog.electrovolt.io/posts/element-rce/
RELATED WRITEUPS
From MLOps to MLOops: Exposing the Attack Surface of Machine Learning Platforms
AI / LLMAI
Confusion Attacks: Exploiting Hidden Semantic Ambiguity in Apache HTTP Server!
RCEConfusion attack
Studying 0days: How we hacked Anki, the world's most popular flashcard app
RCEComponents with known vulnerabilities
We hacked Anki - 0 day exploit from studying someone elses flashcards
RCEComponents with known vulnerabilities
Evernote RCE: From PDF.js font-injection to All-platform Electron exposed ipcRenderer with listened BrokerBridge Remote-Code Execution
RCEXSS

Built with ❤️ by Shubham Rawat