Write-ups

Check The Published Writeups

WDBTitleTagsProgramsAuthorsTypePublicationAdded
663Passwordless Persistence and Privilege Escalation in Azure Privilege escalation Cloud Azure AD Microsoft Andy Robbins (@_wald0) Bug Bounty2022-12-212023-06-13
659ACSESSED: Cross-tenant network bypass in Azure Cognitive Search Cloud Cross-tenant vulnerability Privilege escalation Microsoft (Azure) Emilien Socchi (@emiliensocchi) Bug Bounty2022-12-222023-06-13
607Lexmark MC3224adwe RCE exploit RCE SSRF Printer hacking Unrestricted file upload Local Privilege Escalation Lexmark blasty (@bl4sty) Bug Bounty2023-01-092023-06-13
600SSD Advisory – MacOS Mozilla Firefox Download Protections Were Bypassed By .atloc / .ftploc Files Local Privilege Escalation Mozilla (Firefox) Dohyun Lee Bug Bounty2023-01-112023-06-13
599Google Chrome “SymStealer” Vulnerability: How to Protect Your Files from Being Stolen Local Privilege Escalation Browser hacking Symbolic link following Google (Chrome & Chromium) Ron Masas (@RonMasas) Bug Bounty2023-01-112023-06-13
597DER Entitlements: The (Brief) Return of the Psychic Paper iOS MacOS Local Privilege Escalation Apple Ivan Fratric (@ifsecure) Bug Bounty2023-01-122023-06-13
595Bad things come in large packages: .pkg signature verification bypass on macOS Local Privilege Escalation GateKeeper bypass SIP bypass MacOS Apple Sector 7 (@sector7_nl) Bug Bounty2023-01-132023-06-13
575Sudoedit bypass in Sudo <= 1.9.12p1 (CVE-2023-22809) Local Privilege Escalation Sudo Matthieu Barjole (@aevy__) Bug Bounty2023-01-182023-06-13
572Nothing new under the Sun – Discovering and exploiting a CDE bug chain Printer hacking Local Privilege Escalation Memory corruption Buffer Overflow Oracle Marco Ivaldi / Raptor (@0xdea) Bug Bounty2023-01-182023-06-13
570API Misconfiguration - No Swag of SwaggerUI Security misconfiguration Privilege escalation NA Jerry Shah (@Jerry) Bug Bounty2023-01-192023-06-13
554CVE-2023-24068 && CVE-2023-24069: Abusing Signal Desktop Client for fun and for Espionage Thick client Insecure data storage Local Privilege Escalation Signal John Jackson (@johnjhacking) Bug Bounty2023-01-222023-06-13
552Activation Context Cache Poisoning: Exploiting CSRSS For Privilege Escalation Local Privilege Escalation Windows Microsoft Simon Zuckerbraun Bug Bounty2023-01-232023-06-13
507WEEKEND DESTROYER - RCE in Western Digital PR4100 NAS RCE Hardcoded credentials Privilege escalation Western Digital Pedro Ribeiro (@pedrib1337) Bug Bounty2023-02-022023-06-13
506Breaking Docker Named Pipes SYSTEMatically: Docker Desktop Privilege Escalation – Part 1 Local Privilege Escalation Windows Thick client Docker Eviatar Gerzi Bug Bounty2023-02-022023-06-13
504Host Header Injection to Complete Organization takeover SSRF Host header injection Privilege escalation NA Muhammad Umer Adeem Bug Bounty2023-02-022023-06-13
502WEEKEND DESTROYER - RCE in Western Digital PR4100 NAS RCE Hardcoded credentials Privilege escalation Cryptographic issues Security code review Western Digital Pedro Ribeiro (@pedrib1337) Bug Bounty2023-02-022023-06-13
501Azure security — Internal recon leveraging lack of access control Azure AD Cloud Security misconfiguration Privilege escalation Microsoft (Azure) Molx32 Bug Bounty2023-02-022023-06-13
487Post-Exploitation: Abusing the KeePass Plugin Cache Local Privilege escalation Windows KeePass Kevin Minacori Bug Bounty2023-02-072023-06-13
472Elevation of privileges from Everyone through Avast Sandbox to System AmPPL (CVE-2021-45335, CVE-2021-45336 and CVE-2021-45337) Local Privilege Escalation Avast Denis Skvortcov (@Denis_Skvortcov) Bug Bounty2023-02-092023-06-13
470LocalPotato - When Swapping The Context Leads You To SYSTEM Windows NTLM Local Privilege Escalation Microsoft Andrea Pierini (@decoder_it) Bug Bounty2023-02-102023-06-13
457Bypassing SameSite=lax cookie restrictions to preform CSRF resulting to a horizontal privilege escalation via poor email verification mechanism CSRF NA Imad Husanovic (@deadoverflow_) Bug Bounty2023-02-132023-06-13
453LPE via StorSvc Local Privilege Escalation DLL Hijacking Microsoft (Windows) Antón Ortigueira (@antuache) Bug Bounty2023-02-132023-06-13
440EoP via Arbitrary File Write/Overwite in Group Policy Client “gpsvc” – CVE-2022-37955 Local Privilege Escalation Microsoft (Windows) ap (@decoder_it) Bug Bounty2023-02-162023-06-13
436Readline crime: exploiting a SUID logic bug Local Privilege Escalation Arch Linux util-linux roddux Bug Bounty2023-02-162023-06-13
433Disabling ClamAV as an Unprivileged User Local Privilege Escalation ClamAV Arch Cloud Labs (@DLL_Cool_J) Bug Bounty2023-02-192023-06-13