Blog Logo
Sebastian Neef - 0day.work

  • Home
  • Contact
  • @0daywork
  • @gehaxelt
  • Impressum
  • Datenschutz

Proof of Concept for "Apache Httpd Limited cross-site scripting in mod_proxy error page (CVE-2019-10092)"

19 October 2019  research, cve

A few days ago, I came across the Apache Httpd Security Page and read about a XSS issue in mod_proxy. I couldn't find a Proof-of-Concept right away,

CVE-2019-11360: BufferOverflow in iptables-restore v1.8.2

11 July 2019  cve, writeups

This blogpost is about a BufferOverflow vulnerability which I found by fuzzing iptables-restore using AFL in March, 2019. It was fixed by the netfilter team in April 2019 and was

CVE-2019-6726: Arbitrary File Deletion in WP fastest Cache <= 0.8.9.0

09 March 2019  writeups, cve

In this blogpost I will explain the details of CVE-2019-6726 - an arbitrary file deletion bug in the WP Fastest Cache wordpress plugin that I discovered last year. Overview The

CVE-2019-1000032: Memory corruption / DoS in nanosvg

24 February 2019  writeups, cve

This is finally the first 0day-like blogpost about a memory corruption/DoS issue that I have discovered in nanosvg by fuzzing it with AFL. UPDATE: After my request for updating

← Newer Posts Page 2 of 2
© 2025 Sebastian Neef - 0day.work All rights reserved.

Coder Ghost Theme created by Milos Bejda
Proudly published with Ghost