logo

Vulnerability Deep Dive: Gaining RCE Through ImageMagick With Frans Rosen

ID: 3388827d-cc00-55a8-b541-fb6f9a19250f

STIX ID: report--3388827d-cc00-55a8-b541-fb6f9a19250f

Feed Name: HackerOne Blog

Threat Score
70/100

Date Published: 2024-11-27

Date Updated: 2026-06-12

...
...

This report analyzes a 2018 file-upload vulnerability in Semrush's My Report feature where an unpatched ImageMagick/GhostScript setup allowed PostScript/PDF/EPS files to trigger remote code execution; it includes PoC PostScript payloads that use setpagedevice/OutputFile/%pipe% to spawn a reverse shell, explains the GhostScript safety controls and attack mechanics, and recommends blocking PS/EPS/PDF/XPS coders via policy.xml or running GhostScript with -dSAFER.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.