Back to directory
WRITEUP #6489

Magix Bug Bounty: magix.com (RCE, SQLi) and xara.com (LFI, XSS)

RCESQL injectionLFIXSS
by@MrTuxracer(Julien Ahrens)
Program
Magix
Published
Apr 26, 2014
Added to HackDex
Sep 15, 2022
Read Full Writeuphttps://www.rcesecurity.com/2014/04/magix-bug-bounty-magix-com-rce-sqli-and-xara-com-lfi-xss/
RELATED WRITEUPS
$15k RCE Through Monitoring Debug Mode
RCELFI
From MLOps to MLOops: Exposing the Attack Surface of Machine Learning Platforms
AI / LLMAI
Confusion Attacks: Exploiting Hidden Semantic Ambiguity in Apache HTTP Server!
RCEConfusion attack
Exploiting authorization by nonce in WordPress plugins
RCEArbitrary file upload
Studying 0days: How we hacked Anki, the world's most popular flashcard app
RCEComponents with known vulnerabilities

Built with ❤️ by Shubham Rawat