Ubuntu 18.04 – ‘lxd’ Privilege Escalation
#!/usr/bin/env bash
local 相关类别内容索引。Exploit Database / Exploits for Penetration Testers, Researchers, and Ethical Hackers。聚合漏洞利用代码、PoC 与研究资料。
#!/usr/bin/env bash
CVE-2019-0841 BYPASS #2
# VMware Escape Exploit
Vim/Neovim Arbitrary Code Execution via Modelines
# Exploit Title: DVDXPlayer 5.5 Pro Local Buffer Overflow with SEH
Press CTRL+V+Enter
#Exploit title: EquityPandit v1.0 - Insecure Logging
# Title: Axessh 4.2 - 'Log file name' Local Stack-based Buffer Overflow
There is still a vuln in the code triggered by CVE-2019-0841
edit: Figure out how this works for yourself. I can't be bothered. It's a really hard race, doubt anyone will be able...
Windows: CmKeyBodyRemapToVirtualForEnum Arbitrary Key Enumeration EoP
Inject into IE11.
Task Scheduler .job import arbitrary DACL write
EDIT: Apparently this was patched earlier this month.. so whatever.
Huawei eSpace Desktop DLL Hijacking Vulnerability
Exploit Author: bzyo
# Title: JetAudio jetCast Server 2.0 'Log Directory' Local SEH Alphanumeric Encoded Buffer Overflow
#---------------------------------------------------------
# CVE-2019-0803
# Exploit Title: MiniFtp parseconf_load_setting local-bufferoverflow (318 bytes)
# Title: Admin Express v1.2.5.485 'Folder Path' Local SEH Alphanumeric Encoded Buffer Overflow
Exploit Author: bzyo
# Exploit Title: DeviceViewer v3.12.0.1 username field SEH overflow (PoC)
# Exploit Title: Lavavo CD Ripper 4.20 Local Seh Exploit
VirtualBox: COM RPC Interface Code Injection Host EoP
Ross Video DashBoard 8.5.1 Insecure Permissions
#!/usr/bin/python
Exploit Title: Code execution via path traversal
Windows: LUAFV PostLuafvPostReadWrite SECTION_OBJECT_POINTERS Race Condition EoP
Windows: LUAFV Delayed Virtualization Cache Manager Poisoning EoP
Windows: LUAFV NtSetCachedSigningLevel Device Guard Bypass
Windows: LUAFV LuafvCopyShortName Arbitrary Short Name EoP
Windows: LUAFV Delayed Virtualization Cross Process Handle Duplication EoP
Windows: LUAFV Delayed Virtualization MAXIMUM_ACCESS DesiredAccess EoP
Windows: CSRSS SxSSrv Cached Manifest EoP
# Exploit Title: Zoho ManageEngine ADManager Plus 6.6 (Build < 6659) Privilege Escalation
[+] Credits: John Page (aka hyp3rlinx)
# Exploit Title: CyberArk Endpoint bypass
#!/usr/bin/python
#!/usr/bin/python
This vulnerability allows low privileged users to hijack file that are owned by NT AUTHORITY\SYSTEM by overwriting pe...