writeups.xyz writeups.xyz / Local Privilege Escalation

Title Vulnerabilities Programs Authors
Poch, Poch, is this thing on? Bypass AMSI with Divide & Conquer
Executing Arbitrary Code & Executables in Read-Only FileSystems
Windows Installer arbitrary content manipulation Elevation of Privilege (CVE-2020-0911)
Technical Advisory – Nullsoft Scriptable Installer System (NSIS) – Insecure Temporary Directory Usage
CVE-2023-33298 - Perimeter81 Local Privilege Escalation
Multiple vulnerabilities in UCOPIA <= 6.0.7 (CVE-2022-44719 / CVE-2022-44720)
Pulling SYSTEM out of Windows GINA
Netskope Client Service Local Privilege Escalation
Leveraging Android Permissions: A Solver Approach
DLL Hijacking – Finding Vulnerabilities In pestudio 9.52
Hunting for Bitwarden master passwords stored in memory
KeePass Triggers Are Dead, Long Live KeePass Triggers!
MSSQL linked servers: abusing ADSI for password retrieval
CVE-2022-32902: Patch One Issue and Introduce Two
VSCode Remote Code Execution advisory
DLL Hijacking Strikes Back: Exploiting Windows on ARM RDP Client (CVE-2023-24905)
LOLBINed — Finding “LOLBINs” In AV Uninstallers
Avast Anti-Virus privileged arbitrary file create on virus restore (CVE-2023-1586)
CVE-2023-26818 - Bypass TCC with Telegram in macOS
Finding and reporting a Gatekeeper bypass exploit with help from Mac Monitor
Escaping Parallels Desktop with Plist Injection
Bullied by Bugcrowd over Kape CyberGhost disclosure
CVE-2023-25394 - VideoStream Local Privilege Escalation
Privilege Escalation in Microsoft Windows
Avast Anti-Virus privileged arbitrary file create on virus quarantine (CVE-2023-1585 and CVE-2023-1587)