file-wrapper

1 article
sort: new top best
clear filter
0 4/10

A researcher discovered an SSRF vulnerability in PDFReactor that allowed reading local files including /etc/shadow and SSH keys by injecting iframe tags with file:// protocol wrappers, ultimately achieving RCE by stealing root-level SSH credentials.

PDFReactor Armaan Pathan Rahul Maini
medium.com · devanshbatham/Awesome-Bugbounty-Writeups · 22 hours ago · details