Fintech · Payments
Web Application Penetration Test
Critical: a remote code execution flaw in the application’s web framework that could have given an attacker full control of the server. We escalated it to the development team while the test was still running.
Outcome. The critical RCE was reported and remediated during the engagement via an emergency framework upgrade, which also closed the server-side request forgery, and the remaining findings were retested to confirmation.
1
Critical (RCE)
Mid-test
Critical remediated
2
High





