netscape-looping-extension

1 article
sort: new top best
clear filter
0 8/10

A remote image upload feature allowing RCE through injecting PHP payloads into GIF images with Netscape Looping Application Extensions, which survive PHP-GD image recreation due to preserved null byte blocks. The attack bypasses file extension validation by renaming uploaded images to .php and exploiting image processing that fails to sanitize injected code in GIF metadata.

PHP-GD dlegs/php-jpeg-injector fakhrizulkifli/Defeating-PHP-GD-imagecreatefromjpeg ABOUL3LA asdqwe3 Imagemagick
medium.com · devanshbatham/Awesome-Bugbounty-Writeups · 18 hours ago · details