writeups.xyz writeups.xyz / Microsoft (Windows)

Title Vulnerabilities Programs Authors
Microsoft Windows MSI Installer - Repair to SYSTEM - A detailed journey
CVE-2024-38213: Copy2pwn Exploit Evades Windows Web Protections
Drop the Mic (CVE-2019-1166)
Windows Installer, Exploiting Custom Actions
CVE-2024-20693: Windows cached code signature manipulation
CreateRCE — Yet Another Vulnerability in CreateUri
Do not trust this Group Policy!
Privilege escalation using the XAML diagnostics API (CVE-2023-36003)
A QUIC Shutdown: DoS Vulnerability in Windows Servers Running SMB over QUIC
Getting SYSTEM on Windows in style
CVE-2023-38146: Arbitrary Code Execution via Windows Themes
SSD Advisory – File History Service (FHSVC.DLL) Elevation Of Privilege
Windows Installer arbitrary content manipulation Elevation of Privilege (CVE-2020-0911)
CVE-2023-24941: Microsoft Network File System Remote Code Execution
Exploring Three Remote Code Execution Vulnerabilities in RPC Runtime
DLL Hijacking Strikes Back: Exploiting Windows on ARM RDP Client (CVE-2023-24905)
The Art of Information Disclosure: A Deep Dive into CVE-2022-37985, a Unique Information Disclosure Vulnerability in Windows Graphics Component
CVE-2023-28231: RCE In The Microsoft Windows DHCPv6 Service
Privilege Escalation in Microsoft Windows
Escaping Adobe Sandbox: Exploiting an Integer Overflow in Microsoft Windows Crypto Provider
Windows Task Scheduler Application, Version 19044.1706 Advisory
Protected Users: you thought you were safe uh?
Windows Installer EOP (CVE-2023-21800)
Bypassing PPL in Userland (again)
AD Security Research: Breaking Trust Transitivity