
Is 'b' For Backdoor? Pre-Auth RCE Chain In Sitecore Experience Platform - watchTowr Labs
CybersecurityVulnerabilitiesRemote Code ExecutionExploitation
The Reddit post discusses a pre-authentication Remote Code Execution (RCE) vulnerability in the Sitecore Experience Platform, identified by watchTowr Labs. This flaw allows an attacker to execute code remotely without requiring prior authentication. The exploitation chain, named "Is b For Backdoor?", is detailed in a report published by watchTowr Labs.