Rich Warren (@buffaloverflow) 's Twitter Profile
Rich Warren

@buffaloverflow

Webshell Engineer. Red Team & Offensive Security Research @AmberWolfSec // @buffaloverflow.rw.md on bsky

ID: 293922100

calendar_today06-05-2011 06:38:35

1,1K Tweet

10,10K Takipçi

661 Takip Edilen

Rich Warren (@buffaloverflow) 's Twitter Profile Photo

I reproduced the full chain of Ivanti Connect Secure CVE-2023-46805 (auth bypass) + CVE-2024-21887 (RCE) 🥳 While it is mentioned in the advisory, it's worth noting that 21887 is multiple command injection vulns under one CVE. I counted 5 before I got bored looking 😆

I reproduced the full chain of Ivanti Connect Secure CVE-2023-46805 (auth bypass) + CVE-2024-21887 (RCE) 🥳

While it is mentioned in the advisory, it's worth noting that 21887 is multiple command injection vulns under one CVE. I counted 5 before I got bored looking 😆