Back to directory
WRITEUP #3282

Sitecore Experience Platform Pre-Auth RCE - CVE-2021-42237

RCEInsecure deserializationSecurity code review
by@infosec_au(Shubham Shah)
Program
Sitecore
Published
Nov 1, 2021
Added to HackDex
May 11, 2023
Read Full Writeuphttps://blog.assetnote.io/2021/11/02/sitecore-rce/
RELATED WRITEUPS
Getting code execution on Veeam through CVE-2023-27532
RCEInsecure deserialization
Attacking PowerShell CLIXML Deserialization
DeserializationInsecure deserialization
Spip Preauth RCE 2024: Part 2, A Big Upload
RCEFile upload
Back To School - Exploiting A Remote Code Execution Vulnerability In Moodle
RCESecurity code review
WordPress GiveWP POP to RCE (CVE-2024-5932)
RCEPHP pop chain

Built with ❤️ by Shubham Rawat