07-31-2024, 02:14 AM
1Panel is a web-based linux server management control panel. There are many sql injections in the project, and some of them are not well filtered, leading to arbitrary file writes, and ultimately leading to RCEs.
SQLi bug exposes 1Panel users to remote hijacking
by Loki - Wednesday July 31, 2024 at 02:14 AM
|
07-31-2024, 02:14 AM
1Panel is a web-based linux server management control panel. There are many sql injections in the project, and some of them are not well filtered, leading to arbitrary file writes, and ultimately leading to RCEs.
07-31-2024, 02:16 AM
highkey doubt ts
07-31-2024, 11:32 PM
Nice interesting loki lets to see
08-08-2024, 06:22 AM
Looks interesting thanks i check this one out...but seems kinda similar
|
« Next Oldest | Next Newest »
|
Possibly Related Threads… | |||||
Thread | Author | Replies | Views | Last Post | |
CVE-2025-47812 - Wing FTP Server Remote Code Execution (RCE) | 7 | 370 |
08-03-2025, 08:21 PM Last Post: |
||
Palo-Alto-Expedition-Remote-Code | 16 | 1,907 |
04-12-2025, 03:10 AM Last Post: |
||
Craft CMS 4.4.14 - Unauthenticated Remote Code Execution | 13 | 1,074 |
04-06-2025, 10:05 PM Last Post: |
||
D-Link DIR-823X AX3000 Dual-Band Gigabit Wireless Router Remote Command Execution POC | 11 | 1,156 |
03-19-2025, 01:58 PM Last Post: |
||
Liferay TunnelServlet Deserialization Remote Code Execution | 4 | 387 |
03-14-2025, 08:18 AM Last Post: |