3221 | False2True, Match and Replace bug hunting — A cautionary tale |
Privilege escalation |
NA |
Vuk Ivanovic |
Bug Bounty | 2020-08-14 | 2023-06-13 |
3207 | Windows AppX Deployment Service Local Privilege Escalation (CVE-2020-1488 |
Local Privilege Escalation |
Microsoft |
ACTIVELabs |
Bug Bounty | 2020-08-18 | 2023-06-13 |
3204 | How to contact Google SRE: Dropping a shell in cloud SQL |
SQL injection
Privilege escalation
Parameter injection
RCE |
Google |
wtm@offensi.com (@wtm_offensi) |
Bug Bounty | 2020-08-18 | 2023-06-13 |
3168 | CVE-2020-8150 – Remote Code Execution as SYSTEM/root via Backblaze |
RCE
Local Privilege Escalation |
Backblaze |
Jason Geffner (@JasonGeffner) |
Bug Bounty | 2020-09-09 | 2023-06-13 |
3155 | Dropbox Escalation of Privileges to SYSTEM on Windows |
Local Privilege Escalation |
Dropbox |
Teresa Alberto |
Bug Bounty | 2020-09-17 | 2023-06-13 |
3152 | Privilege Escalation via Account Takeover on NodeBB Forum Software — Bug Bounty (512$) — CVE-2020–15149 |
IDOR
Account takeover |
NodeBB |
Muhammed Eren Uygun (@erenuyguun) |
Bug Bounty | 2020-09-19 | 2023-06-13 |
3142 | suPHP - The vulnerable ghost in your shell |
Local Privilege Escalation |
NA |
Maxime (@punkeel) |
Bug Bounty | 2020-09-21 | 2023-06-13 |
3115 | 90 days, 16 bugs, and an Azure Sphere Challenge |
Local privilege escalation
RCE
DoS
Information disclosure |
Microsoft |
Cisco Talos |
Bug Bounty | 2020-10-06 | 2023-06-13 |
3114 | Our Experiences Participating in Microsoft’s Azure Sphere Bounty Program |
Local privilege escalation
RCE
Security Feature bypass |
Microsoft |
McAfee Advanced Threat Research (ATR) |
Bug Bounty | 2020-10-06 | 2023-06-13 |
3108 | Kud I Enter Your Server? New Vulnerabilities in Microsoft Azure |
Privilege escalation
RCE
Cloud |
Microsoft |
Intezer |
Bug Bounty | 2020-10-08 | 2023-06-13 |
3100 | Guest Blog Post: Rollback Attack |
Local Privilege Escalation |
Mozilla |
Xiaoyin Liu (@general_nfs) |
Bug Bounty | 2020-10-12 | 2023-06-13 |
3095 | MS Enterprise app management service RCE. CVE-2022-35841 |
RCE
Local Privilege Escalation
Windows |
Microsoft |
Ceri Coburn (@_ethicalchaos_) |
Bug Bounty | 2020-10-13 | 2023-06-13 |
3041 | Local Privilege Escalation Vulnerability Discovered in VMware Fusion |
Local Privilege Escalation |
VMware |
Rich Mirch (@0xm1rch) |
Bug Bounty | 2020-11-11 | 2023-06-13 |
3030 | SD-PWN Part 2 — Citrix SD-WAN Center — Another Network Takeover |
RCE
Authentication bypass
Path traversal
OS command injection
Local Privilege Escalation |
Citrix Systems |
Realmode Labs (@RealmodeLabs) |
Bug Bounty | 2020-11-15 | 2023-06-13 |
3008 | Fixing a Google Vulnerability |
Privilege escalation |
Google |
I (@InsecureNature) |
Bug Bounty | 2020-11-22 | 2023-06-13 |
3007 | SD-PWN — Part 3 — Cisco vManage — Another Day, Another Network Takeover |
RCE
SSRF
Arbitrary file write
Path traversal
OS command injection
Local Privilege Escalation |
Cisco |
Realmode Labs (@RealmodeLabs) |
Bug Bounty | 2020-11-23 | 2023-06-13 |
2927 | Privilege Escalation: From being a normal user to admin |
Privilege escalation
Broken Access Control |
NA |
Akshar Tank |
Bug Bounty | 2021-01-05 | 2023-06-13 |
2926 | Each and every request make sense… |
Privilege escalation
Exposed JWT generation endpoint
JWT |
NA |
Akshar Tank |
Bug Bounty | 2021-01-05 | 2023-06-13 |
2912 | A %27Novel%27 Way to Bypass Executable Signature Checks with Electron |
Local Privilege Escalation |
NA |
Parsia Hackerman (@cryptogangsta) |
Bug Bounty | 2021-01-08 | 2023-06-13 |
2893 | BitLocker Lockscreen bypass |
Lock screen bypass
Local Privilege Escalation
Windows |
Microsoft |
Jonas L (@jonasLyk) |
Bug Bounty | 2021-01-15 | 2023-06-13 |
2860 | How We Escaped Docker in Azure Functions |
Privilege escalation
Cloud |
Microsoft |
Intezer |
Bug Bounty | 2021-01-27 | 2023-06-13 |
2841 | CVE-2020-9759 - Getting root on webOS |
Local Privilege Escalation
Browser hacking |
LG |
Andreas Lindh (@addelindh) |
Bug Bounty | 2021-02-03 | 2023-06-13 |
2831 | How I Gain Access to the Server Administration of a Million-Dollar Company |
Privilege escalation
Mass assignment |
NA |
Marx Chryz Del Mundo |
Bug Bounty | 2021-02-08 | 2023-06-13 |
2800 | I Own your Cloud Shell: Taking over “Azure Cloud Shell” Kubernetes Cluster Through Unsecured Kubelet API 30,000$ Bounty |
Privilege escalation
RCE |
Microsoft |
Chen Cohen (@chencococococo) |
Bug Bounty | 2021-02-15 | 2023-06-13 |
2758 | Any Account Takeover Through Privilege Escalation |
Privilege escalation
Account takeover |
NA |
Shubham Chaskar (@chaskar_shubham) |
Bug Bounty | 2021-02-28 | 2023-06-13 |