Skip to content

Instantly share code, notes, and snippets.

View svennergr's full-sized avatar
🐶

Sven Grossmann svennergr

🐶
View GitHub Profile
Sorry, something went wrong. Reload?
Sorry, we cannot display this file.
Sorry, this file is invalid so it cannot be displayed.
Sorry, something went wrong. Reload?
Sorry, we cannot display this file.
Sorry, this file is invalid so it cannot be displayed.
Sorry, something went wrong. Reload?
Sorry, we cannot display this file.
Sorry, this file is invalid so it cannot be displayed.
@svennergr
svennergr / LFI SVG
Last active July 21, 2022 10:26
Test
TestFile
@svennergr
svennergr / 0-CVE-2019-16416-summary.md
Last active May 7, 2020 15:53
Writeup for CVE-2019-16416

Summary

A cross-site-scripting (XSS) issue was discovered in HRworks (classic) 3.36.9. An attacker could exploit this by storing persistent scripts which would lead to unwanted code execution when visiting an affected page.

Export Title

Stored XSS - HRworks (classic) v3.36.9

Vendor Homepage

https://www.hrworks.de

Exploit Author

@svennergr
svennergr / 0-CVE-2019-16417-summary.md
Last active May 7, 2020 15:53
Writeup for CVE-2019-16417

Summary

A cross-site-scripting (XSS) issue was discovered in HRworks FLOW 3.36.9. An attacker could exploit this by storing persistent scripts which would lead to unwanted code execution when visiting an affected page.

Export Title

Stored XSS - HRworks FLOW v3.36.9

Vendor Homepage

https://www.hrworks.de