|
You are here |
statuscode.ch | ||
| | | | |
machevalia.blog
|
|
| | | | | [AI summary] The article details a remote code execution vulnerability in a .tgz file upload feature, where the server's parsing logic allowed an attacker to bypass filters by crafting a malicious archive with a web shell. | |
| | | | |
brunty.me
|
|
| | | | | Developer and problem solver | |
| | | | |
swordbytes.com
|
|
| | | | | SwordBytes researchers have identified an Unauthenticated Remote Code Execution (RCE) vulnerability in Overwolf's Client Application by abusing a Reflected Cross-Site Scripting (XSS) issue present in the "overwolfstore://" URL handler. This vulnerability allows remote unauthenticated attackers to execute arbitrary commands on the underlying operating system that hosts Overwolf's Client Application. | |
| | | | |
www.thezdi.com
|
|
| | | [AI summary] A security researcher details the discovery, exploitation, and mitigation of a critical remote code execution vulnerability in the NVIDIA Merlin Transformers4Rec library caused by unsafe Pickle deserialization. | ||