Microsoft Windows CONTACT – Remote Code Execution
[+] Credits: John Page (aka hyp3rlinx)
local 相关类别内容索引。Exploit Database / Exploits for Penetration Testers, Researchers, and Ethical Hackers。聚合漏洞利用代码、PoC 与研究资料。
[+] Credits: John Page (aka hyp3rlinx)
Windows: XmlDocument Insecure Sharing Elevation of Privilege
[+] Credits: John Page (aka hyp3rlinx)
Windows: COM Desktop Broker Elevation of Privilege
Windows: Browser Broker Cross Session EoP
Windows: DSSVC MoveFileInheritSecurity Multiple Issues EoP
Windows: DSSVC CanonicalAndValidateFilePath Security Feature Bypass
Windows: DSSVC DSOpenSharedFile Arbitrary File Delete EoP
Windows: DSSVC DSOpenSharedFile Arbitrary File Open EoP
Windows: SSPI Network Authentication Session 0 EoP
Exploit Title - Dokany Stack-based Buffer Overflow Privilege Escalation
#!/bin/bash
#!/usr/bin/python
#!/usr/bin/python
Windows: DSSVC CheckFilePermission Arbitrary File Delete EoP
# Exploit Title : KioWare Server Version 4.9.6 - Weak Folder Permissions Privilege Escalation
Make sure to copy the file report.wer found in the folder PoC-Files in the same folder as the executable before runni...
# Exploit Title: Ayukov NFTP FTP Client 2.0 - Buffer Overflow
// A proof-of-concept local root exploit for CVE-2017-1000112.
// A proof-of-concept local root exploit for CVE-2017-7308.
# Exploit Title: Iperius Backup 5.8.1 - Buffer Overflow (SEH)
# Exploit Title: Terminal Services Manager 3.1 - Buffer Overflow (SEH)
# Exploit Title: MAGIX Music Editor 3.1 - Buffer Overflow (SEH)
Download: https://gitlab.com/exploit-database/exploitdb-bin-sploits/-/raw/main/bin-sploits/46051.zip
The bug is in “MsiAdvertiseProduct”
#!/usr/bin/env python
The bug is in “MsiAdvertiseProduct”
#!/usr/bin/env python
#!/usr/bin/env python
# Exploit Title: LanSpy 2.0.1.159 - Local Buffer Overflow (SEH) (Egghunter)
# Exploit Title: PDF Explorer SEH Local Exploit
#!/usr/bin/python
# Exploit Title: PassFab RAR Password Recovery SEH Local Exploit
# Exploit Title: Nsauditor Local SEH Buffer Overflow
#Exploit Title: Zortam MP3 Media Studio Version 24.15 Exploit (SEH)
McAfee True Key: Multiple Issues with McAfee.TrueKey.Service Implementation
When the mmap() syscall is invoked on a POSIX shared memory segment
# Exploit Title: AIX Xorg X11 Server - Local Privilege Escalation