Загрузка видео...
Не удалось загрузить видео
I recently found a cool #RCE/path traversal bug on a target in Intigriti. It was rejected because of OoS :( But I am proud that I found this cool bug through a full manual testing of the endpoint. This video just simplifies the steps, but I took hours to... show more
38,890 просмотров • 2 лет назад •via X (Twitter)
Комментарии: 10

Kanhaiya Sharma 🇮🇳2 лет назад
`id` `cat%20/etc/passwd` cmdi payloads #bugbountytips

N$2 лет назад
🙏

bugoverflow2 лет назад
Cool. What is software allow you redact the text :D?

N$2 лет назад
Snagit + CapCut

NOB0dy2 лет назад
Remind me of a web app I pentested where you could verify if a domain was registered or not. There was a filter in place, and I needed to use domain=example%3b`id`% to bypass it. It was unauth RCE xD the app was already pentested 4 times before me...

Ariff2 лет назад
👏 👏 👏

Wip3r2 лет назад
nice job bro 😋

Shakti2 лет назад
Congratulation sir

Ayadim2 лет назад
Thank you for sharing bro

st0x_r02 лет назад
nice
