SQLi bug exposes 1Panel users to remote hijacking
by Loki - Wednesday July 31, 2024 at 02:14 AM
#1
1Panel is a web-based linux server management control panel. There are many sql injections in the project, and some of them are not well filtered, leading to arbitrary file writes, and ultimately leading to RCEs.
Hidden Content
You must register or login to view this content.


Omnicer
Reply
#2
highkey doubt ts
Reply
#3
Nice interesting loki lets to see
Reply
#4
Looks interesting thanks i check this one out...but seems kinda similar
Reply
#5
(Aug 08, 2024, 06:22 AM)Banuk Wrote: Looks interesting thanks i check this one out...but seems kinda similar

Similar to what?
Reply
#6
yeah this one CVE-2024-39907 which is the case...
Reply


Possibly Related Threads…
Thread Author Replies Views Last Post
  Dokan Pro Unauthenticated SQL Injection POC | CVSS 10 Loki 41 3,632 3 hours ago
Last Post: Xploitd
  {SECRET} DATABASE OF EXPLOITS lulagain 435 26,346 Today, 06:11 AM
Last Post: DirtyEra
  New Zer0 Day Wordpress A3g00n 81 3,332 Today, 03:06 AM
Last Post: DirtyEra
  Wordpress Elementor 3.11.6 Exploit - Full Takeover TheGoodlife 102 19,691 Yesterday, 06:45 AM
Last Post: eztocard
  new wordpress website takeover vuln (video + poc ) zinzeur 314 28,316 Apr 30, 2026, 03:54 PM
Last Post: baku

Forum Jump:


 Users browsing this forum: 1 Guest(s)