In OnlineJudge 2.0, the sandbox has an incorrect access control vulnerability that can write a file anywhere. A user can write a directory listing to /tmp, and can leak file data with a #include.
Vulnerable Product | Search on Vulmon | Subscribe to Product |
---|---|---|
qduoj onlinejudge 2.0 |