Bypass IIS Authorisation with this One Weird Trick – Three RCEs and Two Auth Bypasses in Sitecore 9.3
Introduction It’s time to look at Sitecore again! In 2021 our security research team took a look at Sitecore and found some nice vulnerabilities. Some time has passed, Sitecore is still very prevalent and we decided we would have another look. In this round we looked at version 9.3. This...