Just leaving this here, in case people run Nginx with the vulnerable rewrite patterns and vulnerable software.
TL;DR, an Nginx RCE can be combined with a local root exploit if the conditions are perfect ![]()
Just leaving this here, in case people run Nginx with the vulnerable rewrite patterns and vulnerable software.
TL;DR, an Nginx RCE can be combined with a local root exploit if the conditions are perfect ![]()