Reported RCE in 2 public programs of intigiriti hoping for the smoother triage
im new to bug hunting, never heard of intigti before. I will definitely try this one ✌️
But how do you know actually that the server's logic is that it puts the file on the server for a very short amount of time ?
but can't the server just decline the upload if the file type doesn't check ? also how is it that by accessing the file path the code get executed ....shouldn't be that only certain files allowed to run ? like you have to chmod execute them first ?
recently i have found more than 6 websits with same vuln
i guess you deserve a big dislike bro you take 10 minute of my time and i couldn't understand anything
@r0adrunn3rH4cks