password-cracking

1 article
sort: new top best
clear filter
0 3/10

Security researcher found SQL injection vulnerability leading to admin credential extraction, then chained it with discovered phpMyAdmin access to achieve remote code execution via PHP shell upload. The researcher progressively exploited MySQL information_schema to enumerate databases, tables, columns, and ultimately obtained system shell access.

Jerry Shah HackerOne BugCrowd crackstation.net pentestmonkey.net
shahjerry33.medium.com · kh4sh3i/bug-bounty-writeups · 3 hours ago · details