Home
Articles
Community
Discord
Tools
Merchandise
Training
About
Terms of Use
Home
Articles
Community
Discord
Tools
Merchandise
Training
About
Terms of Use
Posts:
All
Active Directory
Certificates
Cisco
Cons and Seminars
Corelan Free Tools
Crypto
CSO
Debugging
Development
Exploit Writing Tutorials
Exploits
Fuzzing
Juniper
Legal
Linux and Unix
Malware and Reversing
Metasploit
mona
MS Exchange
Networking
OpsMgr
Outlook
Papers
Penetration testing
Pentesting
Powershell
Private
Root Cause Analysis
Scripts
Security
Sharepoint
SQL Injection
Storage
Tools
Uncategorized
Video
Virtualization
Web Application Security
Windows Client OS
Windows Internals
Windows Server
Wordpress
Zabbix SQL Injection/RCE – CVE-2013-5743
Table of Contents
Introduction
Disclosure Timeline:
Vendor Details
Vulnerability Details
The patch
Leveraging SQL Injection
Cool! We got Admin, now what?
Code Execution
Further Exploitation?
Table of Contents
Introduction
Disclosure Timeline:
Vendor Details
Vulnerability Details
The patch
Read more
Read More
Manage Consent
To provide the best experiences, we use technologies like cookies to store and/or access device information. Consenting to these technologies will allow us to process data such as browsing behavior or unique IDs on this site. Not consenting or withdrawing consent, may adversely affect certain features and functions.
Functional
Functional
Always active
The technical storage or access is strictly necessary for the legitimate purpose of enabling the use of a specific service explicitly requested by the subscriber or user, or for the sole purpose of carrying out the transmission of a communication over an electronic communications network.
Preferences
Preferences
The technical storage or access is necessary for the legitimate purpose of storing preferences that are not requested by the subscriber or user.
Statistics
Statistics
The technical storage or access that is used exclusively for statistical purposes.
The technical storage or access that is used exclusively for anonymous statistical purposes. Without a subpoena, voluntary compliance on the part of your Internet Service Provider, or additional records from a third party, information stored or retrieved for this purpose alone cannot usually be used to identify you.
Marketing
Marketing
The technical storage or access is required to create user profiles to send advertising, or to track the user on a website or across several websites for similar marketing purposes.
Manage options
Manage services
Manage {vendor_count} vendors
Read more about these purposes
Accept
Deny
View preferences
Save preferences
View preferences
{title}
{title}
{title}
Manage consent