Back to directory
WRITEUP #759

Unzipping Dangers: OpenRefine Zip Slip Vulnerability

RCEZip Slip attackArbitrary Code ExecutionPath traversalSecurity code review
by@scryh_(Stefan Schiller)
Program
OpenRefine
Published
Sep 27, 2023
Added to HackDex
Feb 6, 2024
Read Full Writeuphttps://www.sonarsource.com/blog/openrefine-zip-slip/
RELATED WRITEUPS
Traccar 5 Remote Code Execution Vulnerabilities
RCEUnrestricted file upload
Path Traversal and Code Execution in CSLA.NET (CVE-2024-28698)
RCEPath traversal
Shelltorch Explained: Multiple Vulnerabilities in Pytorch Model Server (Torchserve) (CVSS 9.9, CVSS 9.8) Walkthrough
AI / LLMAI
WhatsUp Gold Pre-Auth RCE WriteDataFile Primitive (CVE-2024-4883)
RCEPath traversal
WhatsUp Gold Pre-Auth RCE GetFileWithoutZip Primitive (CVE-2024-4885)
RCEPath traversal

Built with ❤️ by Shubham Rawat