Tag

sqli

CVE-2024-5315, an actively exploited Dolibarr SQL Injection with in incorrect patched-in version.

Security

zCamera, 100M+ installation app, from remote compromise to data leaks

This article is a technical deep dive, showing how a 100M+ installation image application can expose its user’s images and suffer from remotely exploitable vulnerabilities ranging from SQL injection and intent redirect to arbitrary file download.

Tue 04 July 2023