<?xml version="1.0" encoding="utf-8" standalone="yes"?>
<rss version="2.0" xmlns:atom="http://www.w3.org/2005/Atom">
  <channel>
    <title>Vulnerability on 思安录 | Thinking&#39;s Security Notes</title>
    <link>https://blog.1sec.day/en-gb/tags/vulnerability/</link>
    <description>Recent content in Vulnerability on 思安录 | Thinking&#39;s Security Notes</description>
    <generator>Hugo -- gohugo.io</generator>
    <language>en-gb</language>
    <managingEditor>Thinking</managingEditor>
    <webMaster>Thinking</webMaster>
    <lastBuildDate>Tue, 02 Jan 2018 00:00:00 +0000</lastBuildDate><atom:link href="https://blog.1sec.day/en-gb/tags/vulnerability/index.xml" rel="self" type="application/rss+xml" />
    <item>
      <title>Code Audit: Axublog Frontend SQL Injection to Backend GetShell</title>
      <link>https://blog.1sec.day/en-gb/posts/2018-01-02-axublog-sqli-to-getshell/</link>
      <pubDate>Tue, 02 Jan 2018 00:00:00 +0000</pubDate>
      <author>Thinking</author>
      <guid>https://blog.1sec.day/en-gb/posts/2018-01-02-axublog-sqli-to-getshell/</guid>
      
      <description></description>
      
    </item>
    
    <item>
      <title>PHPCMS 9.6.2 Audit: Arbitrary File Download Bypass and Front-End SQL Injection</title>
      <link>https://blog.1sec.day/en-gb/posts/2017-12-19-phpcms-962-vulnerabilities/</link>
      <pubDate>Tue, 19 Dec 2017 00:00:00 +0000</pubDate>
      <author>Thinking</author>
      <guid>https://blog.1sec.day/en-gb/posts/2017-12-19-phpcms-962-vulnerabilities/</guid>
      
      <description></description>
      
    </item>
    
    <item>
      <title>Code Audit: DuomiCms Global Filter Bypass</title>
      <link>https://blog.1sec.day/en-gb/posts/2017-11-21-duomicms-filter-bypass/</link>
      <pubDate>Tue, 21 Nov 2017 00:00:00 +0000</pubDate>
      <author>Thinking</author>
      <guid>https://blog.1sec.day/en-gb/posts/2017-11-21-duomicms-filter-bypass/</guid>
      
      <description></description>
      
    </item>
    
    <item>
      <title>APPCMS Code Audit: SQL Injection, XSS, CSRF and GetShell</title>
      <link>https://blog.1sec.day/en-gb/posts/2017-11-17-appcms-code-audit/</link>
      <pubDate>Fri, 17 Nov 2017 00:00:00 +0000</pubDate>
      <author>Thinking</author>
      <guid>https://blog.1sec.day/en-gb/posts/2017-11-17-appcms-code-audit/</guid>
      
      <description></description>
      
    </item>
    
    <item>
      <title>Oracle SQL Injection Techniques: A Summary</title>
      <link>https://blog.1sec.day/en-gb/posts/2017-08-31-oracle-sql-injection-summary/</link>
      <pubDate>Thu, 31 Aug 2017 00:00:00 +0000</pubDate>
      <author>Thinking</author>
      <guid>https://blog.1sec.day/en-gb/posts/2017-08-31-oracle-sql-injection-summary/</guid>
      
      <description>&lt;p&gt;I&amp;rsquo;ve been running into Oracle injection tests more often lately, and solid writeups on the topic are surprisingly scarce online (MySQL material, by contrast, is everywhere). To speed up future testing and vulnerability hunting, I decided to revisit what I&amp;rsquo;d learned and put it all in one place. This post draws on Oracle&amp;rsquo;s official docs, fellow researchers&amp;rsquo; blogs, and a few classic papers — feedback and discussion very welcome. Throughout, the &lt;code&gt;user&lt;/code&gt; value is &lt;code&gt;SQLINJECTION&lt;/code&gt;.&lt;/p&gt;
&lt;blockquote&gt;
&lt;p&gt;Note: This article was first written in August 2017. I&amp;rsquo;ve updated the version- and privilege-related details that have since gone stale and flagged the changes with side notes.&lt;/p&gt;
&lt;/blockquote&gt;</description>
      
    </item>
    
  </channel>
</rss>
