buffer-overread

1 article
Sort: New Top Best
clear filter
0

A security researcher describes discovering and exploiting a Server-Side Request Forgery (SSRF) vulnerability using DNS rebinding techniques to bypass IP filtering, access AWS metadata endpoints, enumerate internal ports, and discover a buffer overread vulnerability in a Monit admin interface. The writeup details the exploitation chain and introduces dnsFookup, a GUI tool for automating DNS rebinding attacks.

CVE (Monit buffer overread) AWS Monit OpenSSH lock.cmpxchg8b.com/rebinder.html Fireshell CTF 2019 dnsFookup gel0.space
geleta.eu · devanshbatham/Awesome-Bugbounty-Writeups · 4 hours ago · details