507 | WEEKEND DESTROYER - RCE in Western Digital PR4100 NAS |
RCE
Hardcoded credentials
Privilege escalation |
Western Digital |
Pedro Ribeiro (@pedrib1337) |
Bug Bounty | 2023-02-02 | 2023-06-13 |
505 | IDOR - Inside the Session Storage |
IDOR |
NA |
Jerry Shah (@Jerry) |
Bug Bounty | 2023-02-02 | 2023-06-13 |
504 | Host Header Injection to Complete Organization takeover |
SSRF
Host header injection
Privilege escalation |
NA |
Muhammad Umer Adeem |
Bug Bounty | 2023-02-02 | 2023-06-13 |
503 | Discovering 5 XSS Vulnerabilities In a Simple Way With Xssor.go |
Reflected XSS |
NA |
Fares Walid (@SirBagoza) |
Bug Bounty | 2023-02-02 | 2023-06-13 |
502 | WEEKEND DESTROYER - RCE in Western Digital PR4100 NAS |
RCE
Hardcoded credentials
Privilege escalation
Cryptographic issues
Security code review |
Western Digital |
Pedro Ribeiro (@pedrib1337) |
Bug Bounty | 2023-02-02 | 2023-06-13 |
499 | Authentication Bypass in Izanami Docker image 1.10.22 CVE-2023-22495 |
Authentication bypass
JWT
Security code review
Container security |
Izanami |
Raphaël Lob |
Bug Bounty | 2023-02-03 | 2023-06-13 |
497 | SSO Gadgets: Escalate (Self-)XSS to ATO |
SSO
OAuth
Account takeover
Self-XSS
Login CSRF |
NA |
Lauritz Holtmann (@_lauritz_) |
Bug Bounty | 2023-02-04 | 2023-06-13 |
494 | How we made $120k bug bounty in a year with good automation |
XSS
Security misconfiguration
Log4shell
Debug mode enabled |
NA |
Dawid Moczadło (@kannthu1) |
Bug Bounty | 2023-02-06 | 2023-06-13 |
493 | GoAnywhere MFT - A Forgotten Bug |
Insecure deserialization
Security code review |
Fortra (GoAnywhere) |
Florian Hauser (@frycos) |
Bug Bounty | 2023-02-06 | 2023-06-13 |
491 | Discovering a weakness leading to a partial bypass of the login rate limiting in the AWS Console |
Rate limiting bypass
Bruteforce |
AWS |
Christophe Tafani-Dereeper (@christophetd) |
Bug Bounty | 2023-02-06 | 2023-06-13 |
489 | A zero day for the government’s “demo servers” and internal networks |
XSS |
NA |
fopwn |
Bug Bounty | 2023-02-06 | 2023-06-13 |
487 | Post-Exploitation: Abusing the KeePass Plugin Cache |
Local Privilege escalation
Windows |
KeePass |
Kevin Minacori |
Bug Bounty | 2023-02-07 | 2023-06-13 |
486 | Code Injection via Python Sandbox Escape — how I got a shell inside a network. |
Code injection
RCE |
NA |
Viktor Mares |
Bug Bounty | 2023-02-07 | 2023-06-13 |
485 | [CVE-2023-22855] Kardex MLOG - Insecure path join to RCE via SSTI |
RCE
SSTI
Security code review |
NA |
Patrick Hener (@C1sc01) |
Bug Bounty | 2023-02-07 | 2023-06-13 |
484 | How I Got +1000$ by Clickjacking |
Clickjacking |
NA |
W13DOM |
Bug Bounty | 2023-02-07 | 2023-06-13 |
483 | Bypassing API Restrictions for Fun and Profit |
Payment bypass
Logic flaw |
NA |
Arnav Tripathy |
Bug Bounty | 2023-02-07 | 2023-06-13 |
481 | Reflected XSS on Target with tough WAF ( WAF Bypass ) |
Reflected XSS
WAF bypass |
NA |
Eagle_92 |
Bug Bounty | 2023-02-08 | 2023-06-13 |
480 | Chaining Bugs to get my First Bug Bounty |
CSRF
Open redirect
Clickjacking
Account takeover |
NA |
ag3n7 (@ag3n7apk) |
Bug Bounty | 2023-02-08 | 2023-06-13 |
478 | Exploit Development – A Sincere Form of Flattery |
MS-RPC
RCE |
NA |
moth |
Bug Bounty | 2023-02-09 | 2023-06-13 |
477 | Exploits Explained: Default Credentials Still a Problem Today |
Default credentials |
NA |
Popeax |
Bug Bounty | 2023-02-09 | 2023-06-13 |
476 | Azure Ad Kerberos Tickets: Pivoting To The Cloud |
Active Directory
Cloud
Lateral movement |
NA |
Edwin David |
Bug Bounty | 2023-02-09 | 2023-06-13 |
475 | How I got $$$$ Bounty within 5 mins |
RCE
Components with known vulnerabilities |
NA |
Hashir Khan (@P4n7h3Rx) |
Bug Bounty | 2023-02-09 | 2023-06-13 |
474 | Cracking The Odd Case Of Randomness In Java |
Cryptographic issues |
NA |
Joseph (@josep68_) |
Bug Bounty | 2023-02-09 | 2023-06-13 |
472 | Elevation of privileges from Everyone through Avast Sandbox to System AmPPL (CVE-2021-45335, CVE-2021-45336 and CVE-2021-45337) |
Local Privilege Escalation |
Avast |
Denis Skvortcov (@Denis_Skvortcov) |
Bug Bounty | 2023-02-09 | 2023-06-13 |
470 | LocalPotato - When Swapping The Context Leads You To SYSTEM |
Windows
NTLM
Local Privilege Escalation |
Microsoft |
Andrea Pierini (@decoder_it) |
Bug Bounty | 2023-02-10 | 2023-06-13 |