63

GitHub - ezequielpereira/GAE-RCE: Google App Engine - Remote Code Execution bug...

 5 years ago
source link: https://github.com/ezequielpereira/GAE-RCE
Go to the source link to view the article. You can view the picture content, updated content and better typesetting reading experience. If the link is broken, please click the button below to view the snapshot at that time.

README.md

GAE-RCE

Google App Engine - Remote Code Execution bug ($36k bug bounty): https://sites.google.com/site/testsitehacking/-36k-google-app-engine-rce

  • app - Example application hosted in http://save-the-expanse.appspot.com/
    • /args - Returns all command-line arguments passed to the Java launcher
    • /nmap - Performs a scan of all ports in 169.254.169.253 (Binary taken from here)
    • /grpc - Runs the gRPC C++ client
  • gRPC_client - Source code of the gRPC C++ client
  • protos - All Protocol Buffer definitions extracted from Google App Engine

About Joyk


Aggregate valuable and interesting links.
Joyk means Joy of geeK