Discovered a CVSS10 directory traversal in critical infrastructure today. Send memes.
@reverseics is there a system(sprintf("/bin/command %s", ARBITRARY_USER_INPUT)) there too?
@azonenberg all kinds of crud including overwriting the firmware and writing to some peculiar named pipes. either one is bad.
@reverseics not quite a meme but