SQLi bug exposes 1Panel users to remote hijacking
by Loki - Wednesday July 31, 2024 at 02:14 AM
#1
1Panel is a web-based linux server management control panel. There are many sql injections in the project, and some of them are not well filtered, leading to arbitrary file writes, and ultimately leading to RCEs.
Hidden Content
You must register or login to view this content.


Omnicer
Reply
#2
highkey doubt ts
Reply
#3
Nice interesting loki lets to see
Reply
#4
Looks interesting thanks i check this one out...but seems kinda similar
Reply
#5
(Aug 08, 2024, 06:22 AM)Banuk Wrote: Looks interesting thanks i check this one out...but seems kinda similar

Similar to what?
Reply
#6
yeah this one CVE-2024-39907 which is the case...
Reply


Possibly Related Threads…
Thread Author Replies Views Last Post
  {SECRET} DATABASE OF EXPLOITS lulagain 440 27,444 Yesterday, 09:44 PM
Last Post: caribou
  Dokan Pro Unauthenticated SQL Injection POC | CVSS 10 Loki 44 3,958 Yesterday, 04:45 PM
Last Post: Insulina
  [POC] Google OAuth "MultiLogin" endpoint 0-day Farfallaiero 108 13,965 May 06, 2026, 05:42 PM
Last Post: nobcoderfck
  Ban Any Discord Exploit phineasfisherman 7 522 May 06, 2026, 10:16 AM
Last Post: sniperx86
  New Zer0 Day Wordpress A3g00n 81 3,527 May 05, 2026, 03:06 AM
Last Post: DirtyEra

Forum Jump:


 Users browsing this forum: 1 Guest(s)