Write-ups

Check The Published Writeups

WDBTitleTagsProgramsAuthorsTypePublicationAdded
4833CVE-2017-13253: Buffer overflow in multiple Android DRM services Memory corruption Local Privilege Escalation Google Tamir Zahavi-Brunner (@tamir_zb) Bug Bounty2018-03-152023-06-13
3740Admin capabilities around your ears Local Privilege Escalation Poly (Plantronics) Markus Krell (@MarkusKrell) Bug Bounty2020-01-022023-06-13
3470CVE-2020–1088 — Yet another arbitrary delete EoP Local Privilege Escalation Windows Microsoft Søren Fritzbøger (@fritzboger) Bug Bounty2020-05-182023-06-13
3422Three Privilege Escalation Bugs in Google Cloud Platform’s OS Login Local Privilege Escalation Cloud Google initstring (@init_string) Bug Bounty2020-06-042023-06-13
3411Local Privilege Escalation Discovered in VMware Fusion Local Privilege Escalation MacOS VMware Rich Mirch (@0xm1rch) Bug Bounty2020-06-092023-06-13
3277CVE-2020–9934: Bypassing the macOS Transparency, Consent, and Control (TCC) Framework for unauthorized access to sensitive user data MacOS Local Privilege Escalation Authorization flaw Apple Matt Shockley (@mattshockl) Bug Bounty2020-07-272023-06-13
3259CVE-2020–9854: "Unauthd" - (three) logic bugs ftw! Local Privilege Escalation Logic flaw Apple Ilias Morad (@A2nkF_) Bug Bounty2020-08-012023-06-13
3256CVE-2020–9854: "Unauthd" MacOS Local Privilege Escalation SIP bypass Apple (macOS) Ilias Morad (@A2nkF_) Bug Bounty2020-08-012023-06-13
3250Amazon AWS Bastion - Logger Bypass Logging bypass Local Privilege Escalation AWS Denis Andzakovic Bug Bounty2020-08-032023-06-13
3207Windows AppX Deployment Service Local Privilege Escalation (CVE-2020-1488 Local Privilege Escalation Microsoft ACTIVELabs Bug Bounty2020-08-182023-06-13
3168CVE-2020-8150 – Remote Code Execution as SYSTEM/root via Backblaze RCE Local Privilege Escalation Backblaze Jason Geffner (@JasonGeffner) Bug Bounty2020-09-092023-06-13
3155Dropbox Escalation of Privileges to SYSTEM on Windows Local Privilege Escalation Dropbox Teresa Alberto Bug Bounty2020-09-172023-06-13
3142suPHP - The vulnerable ghost in your shell Local Privilege Escalation NA Maxime (@punkeel) Bug Bounty2020-09-212023-06-13
311590 days, 16 bugs, and an Azure Sphere Challenge Local privilege escalation RCE DoS Information disclosure Microsoft Cisco Talos Bug Bounty2020-10-062023-06-13
3114Our Experiences Participating in Microsoft’s Azure Sphere Bounty Program Local privilege escalation RCE Security Feature bypass Microsoft McAfee Advanced Threat Research (ATR) Bug Bounty2020-10-062023-06-13
3100Guest Blog Post: Rollback Attack Local Privilege Escalation Mozilla Xiaoyin Liu (@general_nfs) Bug Bounty2020-10-122023-06-13
3095MS Enterprise app management service RCE. CVE-2022-35841 RCE Local Privilege Escalation Windows Microsoft Ceri Coburn (@_ethicalchaos_) Bug Bounty2020-10-132023-06-13
3041Local Privilege Escalation Vulnerability Discovered in VMware Fusion Local Privilege Escalation VMware Rich Mirch (@0xm1rch) Bug Bounty2020-11-112023-06-13
3030SD-PWN Part 2 — Citrix SD-WAN Center — Another Network Takeover RCE Authentication bypass Path traversal OS command injection Local Privilege Escalation Citrix Systems Realmode Labs (@RealmodeLabs) Bug Bounty2020-11-152023-06-13
3007SD-PWN — Part 3 — Cisco vManage — Another Day, Another Network Takeover RCE SSRF Arbitrary file write Path traversal OS command injection Local Privilege Escalation Cisco Realmode Labs (@RealmodeLabs) Bug Bounty2020-11-232023-06-13
2912A %27Novel%27 Way to Bypass Executable Signature Checks with Electron Local Privilege Escalation NA Parsia Hackerman (@cryptogangsta) Bug Bounty2021-01-082023-06-13
2893BitLocker Lockscreen bypass Lock screen bypass Local Privilege Escalation Windows Microsoft Jonas L (@jonasLyk) Bug Bounty2021-01-152023-06-13
2841CVE-2020-9759 - Getting root on webOS Local Privilege Escalation Browser hacking LG Andreas Lindh (@addelindh) Bug Bounty2021-02-032023-06-13
2733Partially disable Cybereason EDR as low privileges user on Windows EDR bypass Local Privilege Escalation Cybereason Mehdi Alouache Bug Bounty2022-10-282023-06-13
2674Who Contains the Containers? Local Privilege Escalation Microsoft James Forshaw (@tiraniddo) Bug Bounty2021-04-012023-06-13