Write-ups

Check The Published Writeups

WDBTitleTagsProgramsAuthorsTypePublicationAdded
1838How Docker Made Me More Capable and the Host Less Secure Local Privilege Escalation Microsoft Alon Zahavi (@Alon_Z4) Bug Bounty2022-02-082023-06-13
1837SpoolFool: Windows Print Spooler Privilege Escalation (CVE-2022-21999) Local Privilege Escalation Microsoft Olivier Lyak (@ly4k_) Bug Bounty2022-02-082023-06-13
1771webOS Revisited - Even More Mistaken Identities Local Privilege Escalation Browser hacking LG Andreas Lindh (@addelindh) Bug Bounty2022-03-022023-06-13
1747CVE-2022-24696 – Glance By Mirametrix Privilege Escalation Local Privilege Escalation Lenovo Oddvar Moe (@Oddvarmoe) Bug Bounty2022-03-112023-06-13
1730CVE-2022-22616: Simple way to bypass GateKeeper, hidden for years Local Privilege Escalation GateKeeper bypass MacOS Apple Mickey Jin (@patch1t) Bug Bounty2022-03-152023-06-13
1727Securing Developer Tools: Git Integrations Local Privilege Escalation Microsoft JetBrains GitHub Sonar (@SonarSource) Bug Bounty2022-03-152023-06-13
1719Abusing Arbitrary File Deletes To Escalate Privilege And Other Great Tricks Local Privilege Escalation Microsoft (Windows) Abdelhamid Naceri Bug Bounty2022-03-172023-06-13
1709Targeting Visual Studio Code for macOS: File Discovery and a TCC bypass (kinda) Local Privilege Escalation TCC bypass MacoS Apple Microsoft Alfie Champion (@ajpc500) Bug Bounty2022-03-212023-06-13
1688ABC-Code Execution for Veeam Local Privilege Escalation Veeam Sina Kheirkhah (@SinSinology) Bug Bounty2022-03-292023-06-13
1683Unauthenticated Remote Code Execution in Cisco Nexus Dashboard Fabric Controller (formerly DCNM) Insecure deserialization Local Privilege Escalation RCE Cisco Pedro Ribeiro (@pedrib1337) Bug Bounty2022-03-302023-06-13
1677Pwning a Cisco RV340 with a 4 bug chain exploit Local Privilege Escalation OS command injection RCE Session management issue Cisco Liv (@terminatorLM) Bug Bounty2022-04-012023-06-13
1670How The Tables Have Turned: An analysis of two new Linux vulnerabilities in nf_tables Memory corruption Local Privilege Escalation Linux Kernel Organization David Bouman (@pqlqpql) Bug Bounty2022-04-022023-06-13
1664MacOS SUHelper Root Privilege Escalation Vulnerability: A Deep Dive Into CVE-2022-22639 Local Privilege Escalation Apple Mickey Jin (@patch1t) Bug Bounty2022-04-042023-06-13
1635CVE-2022-24527: Microsoft Connected Cache Local Privilege Escalation (Fixed) Local Privilege Escalation Microsoft Jacob Baines (@Junior_Baines) Bug Bounty2022-04-122023-06-13
1633CVE-2022-25165: Privilege Escalation to SYSTEM in AWS VPN Client Local Privilege Escalation AWS Rhino Security Labs (@RhinoSecurity) Bug Bounty2022-04-122023-06-13
1571Cloudflare Pages, part 1: The fellowship of the secret Command injection Container escape Bash Path injection RCE Local Privilege Escalation Information disclosure Cloudflare Sean Yeoh (@seanyeoh) Bug Bounty2022-05-062023-06-13
1560Diving Into Pre-created Computer Accounts Active Directory Local Privilege Escalation Windows NA Oddvar Moe (@Oddvarmoe) Bug Bounty2022-05-102023-06-13
1526CVE-2022-22977: VMware Guest Authentication Service LPE (FIXED) Local Privilege Escalation VMware Jacob Baines (@Junior_Baines) Bug Bounty2022-05-242023-06-13
1489De-Anonymization attacks against Proton services Privacy issue Information disclosure HTML injection Local Privilege Escalation Proton AG Ruben Santamarta (@reversemode) Bug Bounty2022-06-082023-06-13
1475Yet another bug into Netfilter Memory corruption Local Privilege Escalation Linux Kernel Organization Arthur Mongodin Bug Bounty2022-06-132023-06-13
1463[BugTales] UnZiploc: From 0-click To Platform Compromise Memory corruption Logic flaw RCE Local Privilege Escalation Huawei Daniel Komaromy (@kutyacica) Bug Bounty2022-06-142023-06-13
1460Amazon Linux "log4j hotpatch" <1.3-5 local privilege escalation to root (race condition) Local Privilege Escalation Amazon Justin Steven (@justinsteven) Bug Bounty2022-06-152023-06-13
1419FabricScape: Escaping Service Fabric and Taking Over the Cluster Container escape Local Privilege Escalation Cross-tenant vulnerability Microsoft Unit 42 (@Unit42_Intel) Bug Bounty2022-06-282023-06-13
1406Get root on macOS 12.3.1: proof-of-concepts for Linus Henze%27s CoreTrust and DriverKit bugs (CVE-2022-26766, CVE-2022-26763) Signature validation bypass Memory corruption Local Privilege Escalation MacOS Apple Zhuowei Zhang (@zhuowei) Bug Bounty2022-07-022023-06-13
1399Rediscovering Epic Games 0-Days (Forever Unpatched?) Local Privilege Escalation Epic Games Christopher Vella (@Kharosx0) Bug Bounty2022-07-062023-06-13