New article "From 0 to RCE: Cockpit CMS" by our researcher Nikita Petrov. The story of discovering an unauth NoSQL injection and abusing it to retrieve admin hashes, change passwords, and execute commands! https://swarm.ptsecurity.com/rce-cockpit-cms/ 696 views16:21