Boost _ Shardeum_ Ancillaries 34298 - [Websites and Applications - Medium] archive-server can be kil
archive-server can be killed by connected shardus-instance
Description
Brief/Intro
Vulnerability Details
Proof of concept
Prepare
create and start evil shardus-instance
Create folder
save as package.json
save as evil-shardus.js
install packages and replace encoder with evil encoder
run evil shardus instance
run archiver
general setup
make sure that archiver connects to our evil implementation of a shardus-instance
run shardus
PreviousBoost _ Shardeum_ Ancillaries 33809 - [Websites and Applications - Insight] Blocking the user from iNextBoost _ Shardeum_ Ancillaries 34367 - [Websites and Applications - Low] CSRF vulnerability due to mi
Last updated
Was this helpful?