Microsoft Windows 8.1 Update 2 / 10 10586 (x86/x64) – NtLoadKeyEx User Hive Attachment Point Privilege Escalation (MS16-111)
Source: https://bugs.chromium.org/p/project-zero/issues/detail?id=865
windows 相关平台内容索引。Exploit Database / Exploits for Penetration Testers, Researchers, and Ethical Hackers。聚合漏洞利用代码、PoC 与研究资料。
Source: https://bugs.chromium.org/p/project-zero/issues/detail?id=865
# Exploit Title: Macro Expert 4.0 Multiple Elevation of Privilege
# Exploit Title: Iperius Remote 1.7.0 Unquoted Service Path Elevation of Privilege
#Exploit Title: MSI NTIOLib.sys, WinIO.sys local privilege escalation
# Exploit Title: Elantech Smart-Pad Unquoted Service Path Privilege Escalation
# Exploit Title: NetDrive 2.6.12 Unquoted Service Path Elevation of Privilege
# Exploit Title: Zortam Mp3 Media Studio 21.15 Insecure File Permissions Privilege Escalation
# Exploit Title: Wisecleaner Software Multiple Unquoted Service Path Elevation of Privilege
Ref: https://github.com/tintinweb/pub/tree/master/pocs/cve-2016-5725
# Exploit Title: AnyDesk 2.5.0 Unquoted Service Path Elevation of Privilege
# Exploit Title: Kerberos Security Feature Bypass Vulnerability (Kerberos to NTLM Fallback)
Source: https://bugs.chromium.org/p/project-zero/issues/detail?id=866
Source: https://bugs.chromium.org/p/project-zero/issues/detail?id=850
Source: https://bugs.chromium.org/p/project-zero/issues/detail?id=849
# Exploit Title: Multiple Icecream Apps Local Privilege Escalation
# Exploit Title: WinSMS 3.43 Local Privilege Escalation
Use After Free
# Exploit Title: Zapya Desktop Version ('ZapyaService.exe') Privilege Escalation
# Exploit Title: Battle.Net 1.5.0.7963 Local Privilege Escalation
Title: WIN-911 - Insecure File Permissions EoP
Title: ArcServe UDP - Unquoted Service Path Privilege Escalation
ZKTeco ZKAccess Professional 3.5.3 Insecure File Permissions
ZKTeco ZKTime.Net 3.0.1.6 Insecure File Permissions
Source: https://bugs.chromium.org/p/project-zero/issues/detail?id=828
Source: https://bugs.chromium.org/p/project-zero/issues/detail?id=826
Source: https://bugs.chromium.org/p/project-zero/issues/detail?id=824
EyeLock Myris 3.3.2 SDK Service Unquoted Service Path Privilege Escalation
#####################################################################################
# Exploit Title: Group Policy Elevation of Privilege Vulnerability
require 'msf/core'
# Exploit Title: Kodi 16.1 Web Server Remote DoS
# Exploit Title: [Haliburton LogView Pro v9.7.5]
#!/usr/bin/python
mySCADAProv7 Local Privilege Escalation
#!/usr/bin/python
# Exploit Title: [CoolPlayer+ Portable build 2.19.6 - .m3u Stack Overflow [Egghunter+ASLR bypass]]
# Exploit Title: [MediaCoder 0.8.43.5852 - .m3u SEH Exploit]
Rapid7 AppSpider 6.12 Web Application Vulnerability Scanner Elevation Of Privilege
# Exploit Title: [TFTP Server 1.4 - WRQ Buffer Overflow Exploit [Egghunter]]
Wowza Streaming Engine 4.5.0 Local Privilege Escalation