netcat

2 articles
sort: new top best
clear filter
0 8/10
bug-bounty

A bug bounty hunter discovered unauthenticated Remote Code Execution via an HTTP PUT method on a staging web service running on a non-standard port, enabling file upload of a PHP web shell. The RCE was leveraged to gain a reverse shell, traverse the internal network using discovered zone transfer files, and achieve lateral movement to other systems using weak credentials embedded in system files.

nmap netcat ncat OPTIONS PUT phpinfo
blog.zsec.uk · devanshbatham/Awesome-Bugbounty-Writeups · 20 hours ago · details
0 7/10

A researcher chained a self-XSS vulnerability with SMTP email injection to achieve stored XSS by crafting malformed emails via netcat that create new clients with XSS payloads in email fields, triggering when employees access client management pages.

Plenum Mailgun Medium
medium.com · devanshbatham/Awesome-Bugbounty-Writeups · 20 hours ago · details