directory-traversal

3 articles
sort: new top best
clear filter
0 6/10

A Local File Inclusion (LFI) vulnerability was discovered in Apache Drill through improper handling of file paths in the query interface, allowing an attacker to read arbitrary files from the server by manipulating the dfs storage plugin configuration to access sensitive files like /etc/passwd.

Apache Drill HackerOne Jobert Abma Gujjuboy10x00 Shodan crt.sh
medium.com · devanshbatham/Awesome-Bugbounty-Writeups · 22 hours ago · details
0 3/10

A researcher discovered a $900 XSS vulnerability on Yahoo through extensive reconnaissance of deep subdomain levels, leveraging directory enumeration and the Knoxss XSS discovery service to find a private WebPageTest instance and exposed PHP endpoints.

Yahoo Knoxss Th3G3nt3lman Brute WebPageTest Shodan Aquatone Sublister HackerOne
medium.com · devanshbatham/Awesome-Bugbounty-Writeups · 22 hours ago · details
0 8/10

Slacker Slash is a path traversal vulnerability in Bun-based web applications caused by desynchronization between Bun's WHATWG-compliant URL parser (which preserves multiple leading slashes and backslashes) and POSIX-normalizing filesystem operations (which collapse them). Attackers bypass string-based middleware checks like startsWith() using double-slash notation (//admin) or sibling directory prefixes (public_backup) while the filesystem still resolves the requested file.

Bun ze3ter Mohamed Salem Eddah WHATWG POSIX Node.js path module
lab.ctbb.show · bugbountydaily · 22 hours ago · details