Write-ups

Check The Published Writeups

WDBTitleTagsProgramsAuthorsTypePublicationAdded
1719Abusing Arbitrary File Deletes To Escalate Privilege And Other Great Tricks Local Privilege Escalation Microsoft (Windows) Abdelhamid Naceri Bug Bounty2022-03-172023-06-13
1709Targeting Visual Studio Code for macOS: File Discovery and a TCC bypass (kinda) Local Privilege Escalation TCC bypass MacoS Apple Microsoft Alfie Champion (@ajpc500) Bug Bounty2022-03-212023-06-13
1688ABC-Code Execution for Veeam Local Privilege Escalation Veeam Sina Kheirkhah (@SinSinology) Bug Bounty2022-03-292023-06-13
1683Unauthenticated Remote Code Execution in Cisco Nexus Dashboard Fabric Controller (formerly DCNM) Insecure deserialization Local Privilege Escalation RCE Cisco Pedro Ribeiro (@pedrib1337) Bug Bounty2022-03-302023-06-13
1677Pwning a Cisco RV340 with a 4 bug chain exploit Local Privilege Escalation OS command injection RCE Session management issue Cisco Liv (@terminatorLM) Bug Bounty2022-04-012023-06-13
1670How The Tables Have Turned: An analysis of two new Linux vulnerabilities in nf_tables Memory corruption Local Privilege Escalation Linux Kernel Organization David Bouman (@pqlqpql) Bug Bounty2022-04-022023-06-13
1667Vulnerable GitHub Actions Workflows Part 1: Privilege Escalation Inside Your CI/CD Pipeline Privilege escalation CI/CD GitHub Noam Dotan Bug Bounty2022-04-042023-06-13
1664MacOS SUHelper Root Privilege Escalation Vulnerability: A Deep Dive Into CVE-2022-22639 Local Privilege Escalation Apple Mickey Jin (@patch1t) Bug Bounty2022-04-042023-06-13
1635CVE-2022-24527: Microsoft Connected Cache Local Privilege Escalation (Fixed) Local Privilege Escalation Microsoft Jacob Baines (@Junior_Baines) Bug Bounty2022-04-122023-06-13
1633CVE-2022-25165: Privilege Escalation to SYSTEM in AWS VPN Client Local Privilege Escalation AWS Rhino Security Labs (@RhinoSecurity) Bug Bounty2022-04-122023-06-13
1625Abusing Azure Hybrid Workers for Privilege Escalation – Part 2: An Azure PrivSec Story Privilege escalation Microsoft Josh Magri (@passthehashbrwn) Bug Bounty2022-04-142023-06-13
1610AWS%27s Log4Shell Hot Patch Vulnerable to Container Escape and Privilege Escalation Privilege escalation Container escape AWS Unit 42 (@Unit42_Intel) Bug Bounty2022-04-192023-06-13
1607Gaining Unlimited access to graph AuditLogs endpoint using complex filters with non-privileged user account Information disclosure Privilege escalation Microsoft Joosua Santasalo (@SantasaloJoosua) Bug Bounty2022-04-212023-06-13
1595Azure Monitor – Malicious KQL Query Privilege escalation Cloud Microsoft Joosua Santasalo (@SantasaloJoosua) Bug Bounty2022-04-272023-06-13
1591Wiz Research discovers "ExtraReplica"— a cross-account database vulnerability in Azure PostgreSQL Cross-tenant vulnerability Privilege escalation Authentication bypass Cloud Microsoft Shir Tamari (@shirtamari) Bug Bounty2022-04-282023-06-13
1585Vulnerable GitHub Actions Workflows Part 2: Actions That Open the Door to CI/CD Pipeline Attacks Privilege escalation CI/CD NA Noam Dotan Bug Bounty2022-05-022023-06-13
1571Cloudflare Pages, part 1: The fellowship of the secret Command injection Container escape Bash Path injection RCE Local Privilege Escalation Information disclosure Cloudflare Sean Yeoh (@seanyeoh) Bug Bounty2022-05-062023-06-13
1561Certifried: Active Directory Domain Privilege Escalation (CVE-2022–26923) Active Directory Privilege Escalation Microsoft Oliver Lyak (@ly4k_) Bug Bounty2022-05-102023-06-13
1560Diving Into Pre-created Computer Accounts Active Directory Local Privilege Escalation Windows NA Oddvar Moe (@Oddvarmoe) Bug Bounty2022-05-102023-06-13
1548Kubernetes Privilege Escalation: Excessive Permissions in Popular Platforms Privilege escalation Broken Access Control Kubernetes Google AWS Microsoft Red Hat Yuval Avrahami (@yuval_avrahami) Bug Bounty2022-05-172023-06-13
1536I Obtained ADMIN access via the Account Activation link [In 30 seconds] Privilege escalation Amazon cognito misconfiguration NA popalltheshells Bug Bounty2022-05-202023-06-13
1526CVE-2022-22977: VMware Guest Authentication Service LPE (FIXED) Local Privilege Escalation VMware Jacob Baines (@Junior_Baines) Bug Bounty2022-05-242023-06-13
1489De-Anonymization attacks against Proton services Privacy issue Information disclosure HTML injection Local Privilege Escalation Proton AG Ruben Santamarta (@reversemode) Bug Bounty2022-06-082023-06-13
1475Yet another bug into Netfilter Memory corruption Local Privilege Escalation Linux Kernel Organization Arthur Mongodin Bug Bounty2022-06-132023-06-13
1474Microsoft Azure Synapse Pwnalytics Privilege escalation Cloud Microsoft Jimi Sebree (@DinoBytes) Bug Bounty2022-06-132023-06-13