Write-ups

Check The Published Writeups

WDBTitleTagsProgramsAuthorsTypePublicationAdded
2345Do you like to read? I can take over your Kindle with an e-book Memory corruption RCE Local Privilege Escalation Amazon Slava Makkaveev Bug Bounty2021-08-062023-06-13
2340Size Matters — CVE-2021–0485 (High) Local Privilege Escalation Android Google Dimitrios Valsamaras (@Ch0pin) Bug Bounty2021-08-072023-06-13
2339CVE-2021-0090: Intel Driver & Support Assistant (DSA) Elevation Of Privilege (EOP) Local Privilege Escalation Intel bohops (@bohops) Bug Bounty2021-08-072023-06-13
2335Multiple Vulnerabilities In cPanel/WHM XXE Stored XSS Privilege escalation CSRF Cross-Site WebSocket Hijacking (CSWH) cPanel Adrian Tiron (@adrian__t) Bug Bounty2021-08-102023-06-13
2328How we was able to takeover whole organization via Privilege Escalation Privilege escalation Authorization flaw NA Yasser Mohammed (@boomneroli) Bug Bounty2021-08-132023-06-13
2314A New Attack Surface on MS Exchange Part 1 - ProxyLogon! RCE Privilege escalation Microsoft Orange Tsai (@orange_8361) Bug Bounty2021-08-182023-06-13
2289ChaosDB: Critical Vulnerability in Microsoft Azure Cosmos DB Account takeover Local Privilege Escalation Microsoft Nir Ohfeld (@nirohfeld) Bug Bounty2021-08-262023-06-13
2288How did I earned 6000$ from tokens and scopes in one day Authorization flaw Privilege escalation NA Corraldev (@javier_corralg) Bug Bounty2021-08-272023-06-13
2277Two account takeover bugs worth $4300 🎁 Account takeover Privilege escalation 403 bypass IDOR NA Usama Varikkottil (@usama_dev) Bug Bounty2021-08-292023-06-13
2273Broken Access Control Leads To Change Of Admin Details Privilege escalation Client-side enforcement of server-side security NA V3D (@v3d_bug) Bug Bounty2021-08-312023-06-13
2270Full PoC | Metasploit Pro Trial License Request Limit Bypass Privilege escalation Logic flaw Rapid7 ChooK Bug Bounty2021-08-312023-06-13
22435 Different Vulnerabilities in Google’s Threadit DOM XSS Clickjacking Privilege escalation Information disclosure Google Thomas Orlita (@ThomasOrlita) Bug Bounty2021-09-072023-06-13
2235Finding Azurescape – Cross-Account Container Takeover in Azure Container Instances Container takeover Container escape Privilege escalation Cloud Microsoft Unit 42 (@Unit42_Intel) Bug Bounty2021-09-092023-06-13
2224OMIGOD: Critical Vulnerabilities in OMI Affecting Countless Azure Customers Local Privilege Escalation RCE Microsoft Nir Ohfeld (@nirohfeld) Bug Bounty2021-09-142023-06-13
2210Admin access !! Privilege escalation Broken Access Control NA th3.d1p4k (@DipakPanchal05) Bug Bounty2021-09-192023-06-13
2197Bug-Bounty | FASTMAIL [topicbox.com: Privileges Escalation > Organization Takeover] Privilege escalation Logic flaw Fastmail Mohammed ELdawody Bug Bounty2021-09-242023-06-13
2194Disclosure of three 0-day iOS vulnerabilities and critique of Apple Security Bounty program Information disclosure Local Privilege Escalation Privacy issue Apple Denis Tokarev / illusionofchaos Bug Bounty2021-09-242023-06-13
2187DeepSurface Security Advisory: LPE in Firefox on Windows Local Privilege Escalation Mozilla Robert Chen Bug Bounty2021-09-282023-06-13
2178vScalation (CVE-2021-22015)- Local Privilege Escalation in VMware vCenter Local Privilege Escalation VMware Yuval Lazar Bug Bounty2021-11-302023-06-13
2177Privilege Escalation to stored XSS Privilege escalation HTTP response manipulation Stored XSS NA Rohit Kumar (Rohit_443) Bug Bounty2021-10-012023-06-13
2152Stealing all your secrets using IPFS Mounts Web3 hacking Local Privilege Escalation Filecoin Security Joran Honig (@joranhonig) Bug Bounty2021-10-122023-06-13
2151Bypassing required reviews using GitHub Actions Privilege escalation Logic flaw GitHub Omer Gil (@omer_gil) Bug Bounty2021-10-122023-06-13
2124Zimbra “nginx” Local Root Exploit Local Privilege Escalation Zimbra Darren Martyn (@_darrenmartyn) Bug Bounty2021-10-252023-06-13
2122Zimbra “zmslapd” Local Root Exploit. Local Privilege Escalation Zimbra Darren Martyn (@_darrenmartyn) Bug Bounty2021-10-272023-06-13
2113Microsoft finds new macOS vulnerability, Shrootless, that could bypass System Integrity Protection SIP bypass Local Privilege Escalation Apple Microsoft Security Vulnerability Research (MSVR) Bug Bounty2021-10-282023-06-13