4492 | Evernote For Windows Read Local File and Command Execute Vulnerabilities |
Stored XSS
LFI
RCE |
Evernote |
TongQing Zhu |
Bug Bounty | 2018-11-05 | 2023-06-13 |
3985 | LAN-Based Blind SSRF Attack Primitive for Windows Systems (switcheroo) |
SSRF |
Microsoft |
initstring (@init_string) |
Bug Bounty | 2019-08-09 | 2023-06-13 |
3857 | 5,000 USD XSS Issue at Avast Desktop AntiVirus for Windows (Yes, Desktop!) |
Reflected XSS |
Avast |
YoKo Kho (@YokoAcc) |
Bug Bounty | 2019-10-29 | 2023-06-13 |
3526 | XSS in Peerio 2 Windows Application (Write Up) |
XSS |
Peerio |
Evan Ricafort (@evanricafort) |
Bug Bounty | 2020-04-24 | 2023-06-13 |
3470 | CVE-2020–1088 — Yet another arbitrary delete EoP |
Local Privilege Escalation
Windows |
Microsoft |
Søren Fritzbøger (@fritzboger) |
Bug Bounty | 2020-05-18 | 2023-06-13 |
3266 | One Click to Compromise -- Fun With ClickOnce Deployment Manifests |
NTLMv2 hash disclosure
One-click execution of arbitrary .Net assemblies
Windows |
Microsoft |
Dave Cossa (@G0ldenGunSec) |
Bug Bounty | 2020-07-30 | 2023-06-13 |
3207 | Windows AppX Deployment Service Local Privilege Escalation (CVE-2020-1488 |
Local Privilege Escalation |
Microsoft |
ACTIVELabs |
Bug Bounty | 2020-08-18 | 2023-06-13 |
3155 | Dropbox Escalation of Privileges to SYSTEM on Windows |
Local Privilege Escalation |
Dropbox |
Teresa Alberto |
Bug Bounty | 2020-09-17 | 2023-06-13 |
3095 | MS Enterprise app management service RCE. CVE-2022-35841 |
RCE
Local Privilege Escalation
Windows |
Microsoft |
Ceri Coburn (@_ethicalchaos_) |
Bug Bounty | 2020-10-13 | 2023-06-13 |
2893 | BitLocker Lockscreen bypass |
Lock screen bypass
Local Privilege Escalation
Windows |
Microsoft |
Jonas L (@jonasLyk) |
Bug Bounty | 2021-01-15 | 2023-06-13 |
2773 | CVE-2021-23827: Sakura Samurai discover cleartext pictures in Keybase Desktop Client; Windows, macOS, Linux |
Unencrypted storage |
Keybase |
John Jackson (@johnjhacking) |
Bug Bounty | 2021-02-22 | 2023-06-13 |
2733 | Partially disable Cybereason EDR as low privileges user on Windows |
EDR bypass
Local Privilege Escalation |
Cybereason |
Mehdi Alouache |
Bug Bounty | 2022-10-28 | 2023-06-13 |
2604 | Relaying Potatoes: Another Unexpected Privilege Escalation Vulnerability in Windows RPC Protocol |
Local Privilege Escalation |
Microsoft |
Antonio Cocomazzi (@splinter_code) |
Bug Bounty | 2021-04-26 | 2023-06-13 |
2469 | Certified Pre-Owned |
Active Directory Privilege Escalation
ADCS
Windows |
Microsoft |
Will Schroeder (@harmj0y) |
Bug Bounty | 2021-06-17 | 2023-06-13 |
2189 | CVE-2021-39246 – Tor Browser through 10.5.6 and 11.x through 11.0a4 allows a correlation attack excessive verbose logging – Windows, macOS, Linux |
Verbose logging |
Tor |
sickcodes (@sickcodes) |
Bug Bounty | 2021-09-27 | 2023-06-13 |
2187 | DeepSurface Security Advisory: LPE in Firefox on Windows |
Local Privilege Escalation |
Mozilla |
Robert Chen |
Bug Bounty | 2021-09-28 | 2023-06-13 |
2058 | GoSecure Investigates Abusing Windows Server Update Services (WSUS) to Enable NTLM Relaying Attacks |
Local Privilege Escalation |
Microsoft |
Romain Carnus |
Bug Bounty | 2021-11-22 | 2023-06-13 |
2041 | This Microsoft Windows RCE Vulnerability Gives an Attacker Complete Control |
Memory corruption |
Microsoft |
Malcolm Stagg (@malcolmst) |
Bug Bounty | 2021-11-30 | 2023-06-13 |
2017 | Windows 10 RCE: The exploit is in the link |
RCE |
Microsoft |
Fabian Bräunlein |
Bug Bounty | 2021-12-07 | 2023-06-13 |
1885 | Stealing administrative JWT%27s through post auth SSRF (CVE-2021-22056) |
Windows Driver hacking
Kernel DoS |
VMware |
Christopher (@Kharosx0) |
Bug Bounty | 2022-01-27 | 2023-06-13 |
1837 | SpoolFool: Windows Print Spooler Privilege Escalation (CVE-2022-21999) |
Local Privilege Escalation |
Microsoft |
Olivier Lyak (@ly4k_) |
Bug Bounty | 2022-02-08 | 2023-06-13 |
1719 | Abusing Arbitrary File Deletes To Escalate Privilege And Other Great Tricks |
Local Privilege Escalation |
Microsoft (Windows) |
Abdelhamid Naceri |
Bug Bounty | 2022-03-17 | 2023-06-13 |
1560 | Diving Into Pre-created Computer Accounts |
Active Directory
Local Privilege Escalation
Windows |
NA |
Oddvar Moe (@Oddvarmoe) |
Bug Bounty | 2022-05-10 | 2023-06-13 |
1493 | CVE-2022-26937: Microsoft Windows Network File System NLM Portmap Stack Buffer Overflow |
Buffer Overflow
Memory corruption |
Microsoft |
Yuki Chen (@guhe120) |
Bug Bounty | 2022-06-08 | 2023-06-13 |
1368 | CVE-2022-30136: Microsoft Windows Network File System V4 Remote Code Execution Vulnerability |
RCE
DoS
Memory corruption |
Microsoft |
Yuki Chen (@guhe120) |
Bug Bounty | 2022-07-14 | 2023-06-13 |