NetBSD – ‘mail.local(8)’ Local Privilege Escalation
// Source: http://akat1.pl/?id=2
local 相关类别内容索引。Exploit Database / Exploits for Penetration Testers, Researchers, and Ethical Hackers。聚合漏洞利用代码、PoC 与研究资料。
// Source: http://akat1.pl/?id=2
Wowza Streaming Engine 4.5.0 Local Privilege Escalation
Title: InstantHMI - EoP: User to ADMIN
Title: Hide.Me VPN Client - EoP: User to SYSTEM
# Exploit Title: GE Proficy HMI/SCADA CIMPLICITY 8.2 Local Privilege Escalation Exploit(0 day)
EDB Note: Download ~ https://gitlab.com/exploit-database/exploitdb-bin-sploits/-/raw/main/bin-sploits/44300.zip
-----BEGIN PGP SIGNED MESSAGE-----
Exploit-DB Mirror: https://gitlab.com/exploit-database/exploitdb-bin-sploits/-/raw/main/bin-sploits/40053.zip
Source: https://github.com/Cr4sh/ThinkPwn
# Exploit Title: Elevation of privilege on Windows 7 SP1 x86
# Exploit developed using Exploit Pack v5.4
# Exploit developed using Exploit Pack v5.4
# Exploit Title: Panda Security Privilege Escalation
#!/usr/bin/env python
#!/usr/bin/python
Source: https://github.com/theori-io/cve-2016-0189
Source: https://bugs.chromium.org/p/project-zero/issues/detail?id=836
ACROS Security 0patch (0PatchServicex64.exe) Unquoted Service Path Privilege Escalation
Product: Solarwinds Virtualization Manager
----------------------------------------------------------------------------------------------------------
#!/bin/ruby
# Exploit Title: Easy RM to MP3 Converter 2.7.3.700 (.m3u) File BoF Exploit with Universal DEP+ASLR bypass
------------------------------------------------------------------------------------
# Exploit Title: Matrix42 Remote Control Host - Unquoted Path Privilege Escalation
# Exploit Title: League of Legends Screensaver Insecure File Permissions
# Exploit Title: League of Legends Screensaver Unquoted Service Paths
# Exploit Title: Valve Steam 3.42.16.13 Local Privilege Escalation
Operation Technology ETAP 14.1.0 Local Privilege Escalation
Full title: VirIT Explorer Lite & Pro v.8.1.68 Local Privilege Escalation (System)/Arbitrary Code Execution
-----------------------------------------------------------------------------------------------------------------
-----------------------------------------------------------------------------------------------------------------
# Title : runAV mod_security Remote Command Execution
# Exploit developed using Exploit Pack v5.4
+ Credits: Maxim Tomashevich from Thegrideon Software
-----------------------------------
# Exploit Title: WebDAV Elevation of Privilege Vulnerability (MS16)-2
Certec EDV atvise SCADA server 2.5.9 Privilege Escalation Vulnerability
Source: https://bugs.chromium.org/p/project-zero/issues/detail?id=808
Source: https://bugs.chromium.org/p/project-zero/issues/detail?id=807
CVE-2016-4338: Zabbix Agent 3.0.1 mysql.size shell command injection
# Exploit developed using Exploit Pack v5.4
Code written based on info available here http://cturt.github.io/dlclose-overflow.html