Back to directory
WRITEUP #3014

How I bypassed PHP functions to read sensitive files on server

RCEComponents with known vulnerabilities
by@corrupted_brain(Kailash)
Program
-
Published
Feb 4, 2022
Added to HackDex
Sep 15, 2022
Read Full Writeuphttps://kailashbohara.com.np/blog/2022/02/04/bypassing-PHP-functions-to-read-system-file-copy/
RELATED WRITEUPS
How I got $24000 Bounty from a Log4j RCE in Apple App Store.
RCEComponents with known vulnerabilities
Studying 0days: How we hacked Anki, the world's most popular flashcard app
RCEComponents with known vulnerabilities
We hacked Anki - 0 day exploit from studying someone elses flashcards
RCEComponents with known vulnerabilities
Vulnerabilities in Open Source C2 Frameworks
RCEOS command injection
[2,500$ Bug Bounty Write-Up] Remote Code Execution (RCE) via unclaimed Node package
RCEDependency confusion

Built with ❤️ by Shubham Rawat