Write-ups

Check The Published Writeups

WDBTitleTagsProgramsAuthorsTypePublicationAdded
425Multiple vulnerabilities in Nokia BTS Airscale ASIKA Base transceiver station Path traversal Hardcoded private key Local Privilege Escalation Security misconfiguration Nokia Geoffrey Bertoli (@YofBalibump) Bug Bounty2023-02-212023-06-13
422Trellix Advanced Research Center Discovers a New Privilege Escalation Bug Class on macOS and iOS Local Privilege Escalation Apple (macOS) Austin Emmitt (@alkalinesec) Bug Bounty2023-02-212023-06-13
407LogicalDOC Vulnerability Disclosure XXE RCE Command injection Privilege escalation LogicalDOC Brett DeWall (@xbadbiddyx) Bug Bounty2023-02-232023-06-13
396From CVE-2022-33679 to Unauthenticated Kerberoasting Kerberos MiTM Local Privilege Escalation Downgrade attack Microsoft (Windows) Trampas Howe (@trampashowe) Bug Bounty2023-02-252023-06-13
394Give me a browser, I’ll give you a Shell Local Privilege Escalation Kiosk hacking NA Rend Bug Bounty2023-02-252023-06-13
356Bypass TCC via iCloud TCC bypass Local Privilege Escalation Apple (macOS) Wojciech Reguła (@_r3ggi) Bug Bounty2023-03-042023-06-13
326Leveraging ssh-keygen for Arbitrary Execution (and Privilege Escalation) Local Privilege Escalation IoT NA Sean Pesce (@SeanPesce) Bug Bounty2023-03-092023-06-13
309Veeam Backup and Replication CVE-2023-27532 Deep Dive Local Privilege Escalation Veeam James Horseman (@JamesHorseman2) Bug Bounty2023-03-132023-06-13
306Your Browser is Not a Safe Space Local Privilege Escalation Lateral movement NA Corey Ham Bug Bounty2023-03-142023-06-13
305Exploiting CVE-2023-23397: Microsoft Outlook Elevation of Privilege Vulnerability Privilege escalation NTLM Microsoft (Outlook) Dominic Chell (@domchell) Bug Bounty2023-03-142023-06-13
300AD Security Research: Breaking Trust Transitivity Active Directory Privilege Escalation Microsoft (Windows) Charlie Clark (@exploitph) Bug Bounty2023-03-142023-06-13
276Windows Installer EOP (CVE-2023-21800) Local Privilege Escalation Microsoft (Windows) Adrian Denkiewicz Bug Bounty2023-03-212023-06-13
274Improper Privilege Management in Grails Spring Security Core <= 5.1.0 (CVE-2022-41923) Privilege escalation Authorization bypass Grails Benjamin Sepe (@Butanal_C4H8O) Bug Bounty2023-03-212023-06-13
270Escalating Privileges with Azure Function Apps Privilege escalation Cloud Container escape RCE Microsoft (Azure) Karl Fosaaen (@kfosaaen) Bug Bounty2023-03-232023-06-13
261Dynamic Linking Injection and LOLBAS Fun DLL Hijacking Dynamic-linking injection Local Privilege Escalation NA Joseph Henry Bug Bounty2023-03-282023-06-13
259High severity vulnerability fixed in WordPress Elementor Pro plugin. Broken Access Control Privilege Escalation Security code review Elementor Jerome Bruandet Bug Bounty2023-03-282023-06-13
255BingBang: The AAD misconfiguration that led to Bing.com results manipulation and account takeover explained Account takeover Azure AD Cloud XSS Privilege escalation Microsoft (Bing) Hillai Ben-Sasson (@hillai) Bug Bounty2023-03-292023-06-13
253Hacking Admin Panel & Getting free subscription Exposed registration API Privilege escalation Account takeover NA Zeeshan Mustafa (@by6153) Bug Bounty2023-03-292023-06-13
233CyberGhostVPN - the story of finding MITM, RCE, LPE in the Linux client RCE MiTM Local Privilege Escalation CyberGhost mmmds Bug Bounty2023-04-032023-06-13
228Windows Task Scheduler Application, Version 19044.1706 Advisory Unquoted search path Local Privilege Escalation Microsoft (Windows) Ben Lincoln (@0x00C651E0) Bug Bounty2023-04-042023-06-13
227Microsoft Intune, Version 1.55.48.0 Advisory Unquoted search path Local Privilege Escalation Microsoft (Intune) Ben Lincoln (@0x00C651E0) Bug Bounty2023-04-042023-06-13
224Bash Privileged-mode Vulnerabilities In Parallels Desktop And CDPATH Handling In MacOS MacoS Local Privilege Escalation Parallels Reno Robert (@renorobertr) Bug Bounty2023-04-062023-06-13
210From listKeys to Glory: How We Achieved a Subscription Privilege Escalation and RCE by Abusing Azure Storage Account Keys Cloud Privilege escalation Microsoft (Azure) Roi Nisimi (@) Bug Bounty2023-04-112023-06-13
202CVE-2023-29383: Abusing Linux chfn to Misrepresent /etc/passwd Local Privilege Escalation shadow-utils Tom Neaves Bug Bounty2023-04-122023-06-13
197User impersonation via stolen UUID code in KeyCloak (CVE-2023-0264) OAuth OpenID Connect Privilege escalation Authentication flaw Keycloack Jordi Zayuelas i Muñoz Bug Bounty2023-04-142023-06-13