Blog RSSExploits RSSFacebook

LOCAL

Date D   Description Plat. Author
2017-04-20   Oracle VM VirtualBox 5.1.14 r112924 - Unprivileged Host User to Host Kernel Privilege Escalation via 0 LOCAL Google Security Research
2017-04-20   Oracle VM VirtualBox - Guest-to-Host Privilege Escalation via Broken Length Handling in slirp Copy 0 LOCAL Google Security Research
2017-04-20   Microsoft Windows 10 - Runtime Broker ClipboardBroker Privilege Escalation 0 LOCAL Google Security Research
2017-04-20   Microsoft Windows 10 (Build 10586) - 'IEETWCollector' Arbitrary Directory/File Deletion Privilege Es 0 LOCAL Google Security Research
2017-04-14   VirusChaser 8.0 - Local Buffer Overflow (SEH) 0 LOCAL 0x41Li
2017-04-15   Linux Kernel 4.8.0 UDEV < 232 - Local Privilege Escalation 0 LOCAL Nassim Asrir
2017-04-13   Adobe Creative Cloud Desktop Application < 4.0.0.185 - Local Privilege Escalation 0 LOCAL hyp3rlinx
2017-04-02   Linux Kernel (PonyOS 4.0) - 'fluttershy' LD_LIBRARY_PATH Local Privilege Escalation 0 LOCAL Hacker Fantastic
2017-04-13   GNS3 Mac OS-X 1.5.2 - 'ubridge' Local Privilege Escalation 0 LOCAL Hacker Fantastic
2017-04-12   Solaris 7 < 11 (SPARC/x86) - 'EXTREMEPARR' dtappgather Privilege Escalation 0 LOCAL Hacker Fantastic
2017-04-11   Xen - Broken Check in 'memory_exchange()' Permits PV Guest Breakout 0 LOCAL Google Security Research
2017-04-11   Proxifier for Mac 2.17/2.18 - Privesc Escalation 0 LOCAL Mark Wadham
2017-04-11   Proxifier for Mac 2.18 - Multiple Vulnerabilities 0 LOCAL Securify
2017-04-04   Apple macOS/iOS Kernel 10.12.3 (16D32) - Double-Free Due to Bad Locking in fsevents Device 0 LOCAL Google Security Research
2017-04-03   Bluecoat ASG 6.6/CAS 1.3 - Local Privilege Escalation (Metasploit) 0 LOCAL Chris Hebert
2017-03-29   Sync Breeze Enterprise 9.5.16 - 'Import Command' Local Buffer Overflow 0 LOCAL Daniel Teixeira
2017-03-29   DiskBoss Enterprise 7.8.16 - 'Import Command' Local Buffer Overflow 0 LOCAL Daniel Teixeira
2017-03-29   Disk Sorter Enterprise 9.5.12 - 'Import Command' Local Buffer Overflow 0 LOCAL Daniel Teixeira
2011-01-17   Linux Kernel 2.6.32 (Ubuntu 10.04) - '/proc' Handling SUID Privilege Escalation 0 LOCAL halfdog
2012-10-19   Vm86 - Syscall Task Switch Kernel Panic Denial of Service / Privilege Escalation 0 LOCAL halfdog
2015-03-12   Ubuntu 15.04 (Development) - 'Upstart' Logrotation Privilege Escalation 0 LOCAL halfdog
2016-01-21   NTP - Local Privilege Escalation 0 LOCAL halfdog
2016-11-22   Ubuntu 15.10 - 'USERNS ' Overlayfs Over Fuse Privilege Escalation 0 LOCAL halfdog
2016-11-22   Ubuntu 14.04/15.10 - User Namespace Overlayfs Xattr SetGID Privilege Escalation 0 LOCAL halfdog
2016-02-19   AUFS (Ubuntu 15.10) - 'allow_userns' Fuse/Xattr User Namespaces Privilege Escalation 0 LOCAL halfdog
2016-02-22   Ubuntu < 15.10 - PT Chown Arbitrary PTs Access Via User Namespace Privilege Escalation 0 LOCAL halfdog
2017-03-28   Intermec PM43 Industrial Printer - Local Privilege Escalation 0 LOCAL Jean-Marie Bourbon
2017-03-27   QNAP QTS < 4.2.4 - Domain Privilege Escalation 0 LOCAL Pasquale Fiorillo
2017-03-25   Fortinet FortiClient 5.2.3 (Windows 10 x64 Post-Anniversary) - Local Privilege Escalation 0 LOCAL sickness
2017-03-25   Fortinet FortiClient 5.2.3 (Windows 10 x64 Pre-Anniversary) - Local Privilege Escalation 0 LOCAL sickness
2013-02-02   CADA 3S CoDeSys Gateway Server - Directory Traversal (Metasploit) 0 LOCAL Metasploit
2016-08-06   VMware Host Guest Client Redirector - DLL Side Loading (Metasploit) 0 LOCAL Metasploit
2012-08-29   HP Intelligent Management Center < 5.0 E0102 - UAM Buffer Overflow (Metasploit) 0 LOCAL Metasploit
2013-01-31   Firebird - Relational Database CNCT Group Number Buffer Overflow (Metasploit) 0 LOCAL Metasploit
2015-04-12   Lenovo System Update - Local Privilege Escalation (Metasploit) 0 LOCAL Metasploit
2011-07-25   CA Arcserve D2D - GWT RPC Credential Information Disclosure (Metasploit) 0 LOCAL Metasploit
2015-12-08   Microsoft Office - OLE Multiple DLL Side Loading Vulnerabilities (MS15-132/MS16-014/MS16-025/MS16-04 0 LOCAL Metasploit
2017-03-11   Fortinet FortiClient 5.2.3 (Windows 10 x86) - Local Privilege Escalation 0 LOCAL sickness
2011-02-27   EMC Replication Manager < 5.3 - Command Execution (Metasploit) 0 LOCAL Metasploit
2013-03-12   Microsoft Silverlight - ScriptObject Unsafe Memory Access (MS13-022/MS13-087) (Metasploit) 0 LOCAL Metasploit
2014-12-16   Malwarebytes Anti-Malware < 2.0.3 / Anti-Exploit < 1.03.1.1220 - Update Code Execution (Metasploit) 0 LOCAL Metasploit
2010-04-09   Sun Java Web Start Plugin - Command Line Argument Injection (Metasploit) 0 LOCAL Metasploit
2013-01-08   Mozilla Firefox < 17.0.1 - Flash Privileged Code Injection (Metasploit) 0 LOCAL Metasploit
2012-12-21   Google Android 4.2 Browser and WebView - 'addJavascriptInterface' Code Execution (Metasploit) 0 LOCAL Metasploit
2017-03-16   Microsoft Windows DVD Maker 6.1.7 - XML External Entity Injection 0 LOCAL hyp3rlinx
2017-03-15   Microsoft Windows - COM Session Moniker Privilege Escalation (MS17-012) 0 LOCAL Google Security Research
2017-03-15   PCAUSA Rawether (ASUS PCE-AC56 WLAN Card Utilities Windows 10 x64) - Local Privilege Escalation 0 LOCAL ReWolf
2017-03-13   Oracle VM VirtualBox - Cooperating VMs can Escape from Shared Folder 0 LOCAL Google Security Research
2017-03-07   USBPcap 1.1.0.0 (WireShark 2.2.5) - Local Privilege Escalation 0 LOCAL Parvez Anwar
2017-03-06   CyberGhost 6.0.4.2205 - Local Privilege Escalation 0 LOCAL Kacper Szurek
2017-02-28   Cisco AnyConnect Secure Mobility Client 4.3.04027 - Local Privilege Escalation 0 LOCAL Pcchillin
2017-02-26   Linux Kernel 4.4.0 (Ubuntu) - DCCP Double-Free Privilege Escalation 0 LOCAL Andrey Konovalov
2016-12-26   Shutter 0.93.1 - Code Execution 0 LOCAL Prajith
2017-02-14   ntfs-3g - Unsanitized modprobe Environment Privilege Escalation 0 LOCAL Google Security Research
2017-02-14   ShadeYouVPN Client 2.0.1.11 - Local Privilege Escalation 0 LOCAL Kacper Szurek
2017-02-12   Cimetrics BACnet Explorer 4.0 - XML External Entity Injection 0 LOCAL LiquidWorm
2017-02-12   Cimetrics BACstac 6.2f - Local Privilege Escalation 0 LOCAL LiquidWorm
2017-02-06   IVPN Client 2.6.1 - Local Privilege Escalation 0 LOCAL Kacper Szurek
2017-02-03   ntfs-3g (Debian 9) - Local Privilege Escalation 0 LOCAL Kristian Erik Hermansen
2017-02-02   Ghostscript 9.20 - 'Filename' Command Execution 0 LOCAL hyp3rlinx
2017-02-01   Google Android - RKP EL1 Code Loading Bypass 0 LOCAL Google Security Research
2017-01-31   Viscosity 1.6.7 - Local Privilege Escalation 0 LOCAL Kacper Szurek
2017-01-27   Oracle VM VirtualBox < 5.0.32 / < 5.1.14 - Local Privilege Escalation 0 LOCAL Wolfgang Hotwagner
2017-01-26   Palo Alto Networks Terminal Services Agent 7.0.3-13 - Integer Overflow 0 LOCAL Parvez Anwar
2017-01-26   OpenSSH 6.8 < 6.9 - 'PTY' Local Privilege Escalation 0 LOCAL Federico Bento
2017-01-24   Systemd 228 (SUSE 12 SP2 / Ubuntu Touch 15.04) - Local Privilege Escalation 0 LOCAL Sebastian Krahmer
2015-12-02   Man-db 2.6.7.1 - Local Privilege Escalation 0 LOCAL halfdog
2017-01-25   GNU Screen 4.5.0 - Local Privilege Escalation 0 LOCAL Xiphos Research Ltd
2017-01-24   GNU Screen 4.5.0 - Local Privilege Escalation (PoC) 0 LOCAL Donald Buczek
2017-01-23   Microsoft Remote Desktop Client for Mac 8.0.36 - Code Execution 0 LOCAL Filippo Cavallarin
2017-01-21   Microsoft Power Point 2016 - Java Code Execution 0 LOCAL Fady Mohammed Osman
2017-01-19   Google Android TSP sysfs - 'cmd_store' Multiple Overflows 0 LOCAL Google Security Research
2017-01-18   SentryHD 02.01.12e - Local Privilege Escalation 0 LOCAL Kacper Szurek
2017-01-16   iSelect v1.4 - Local Buffer Overflow 0 LOCAL Juan Sacco
2017-01-12   aSc Timetables 2017 - Local Buffer Overflow 0 LOCAL Peter Baris
2017-01-09   Firejail - Local Privilege Escalation 0 LOCAL Daniel Hodson
2017-01-09   Cemu 1.6.4b - Information Leak / Buffer Overflow (Emulator Breakout) 0 LOCAL Wack0
2017-01-03   Microsoft Windows 8.1 (x64) - 'RGNOBJ' Integer Overflow (MS16-098) 0 LOCAL Saif
2017-01-08   Microsoft Windows Kernel - 'win32k.sys NtSetWindowLongPtr' Local Privilege Escalation (MS16-135) (2) 0 LOCAL Rick Larabee
2017-01-08   Advanced Desktop Locker 6.0.0 - Lock Screen Bypass 0 LOCAL Squnity
2017-01-04   Kaspersky 17.0.0 - Local CA Root Incorrectly Protected 0 LOCAL Google Security Research
2016-12-29   Google Android - get_user/put_user (Metasploit) 0 LOCAL Metasploit
2016-12-29   Google Android - get_user/put_user (Metasploit) 0 LOCAL Metasploit
2016-12-26   Wampserver 3.0.6 - Insecure File Permissions Privilege Escalation 0 LOCAL Heliand Dema
2016-12-23   OpenSSH < 7.4 - 'UsePrivilegeSeparation Disabled' Forwarded Unix Domain Sockets Privilege Escalation 0 LOCAL Google Security Research
2016-12-22   Apple macOS < 10.12.2 / iOS < 10.2 - Broken Kernel Mach Port Name uref Handling Privileged Port Name 0 LOCAL Google Security Research
2016-12-22   Apple macOS < 10.12.2 / iOS < 10.2 - '_kernelrpc_mach_port_insert_right_trap' Kernel Reference Count 0 LOCAL Google Security Research
2016-12-22   Apple macOS < 10.12.2 / iOS < 10.2 - '_kernelrpc_mach_port_insert_right_trap' Kernel Reference Count 0 LOCAL Google Security Research
2016-12-22   Vesta Control Panel 0.9.8-16 - Local Privilege Escalation 0 LOCAL Jaka Hudoklin
2016-12-22   IBM AIX 6.1/7.1/7.2 - 'Bellmail' Local Privilege Escalation 0 LOCAL Hector X. Monsegur
2016-12-13   Google Chrome (Fedora 25 / Ubuntu 16.04) - 'tracker-extract' / 'gnome-video-thumbnailer' + 'totem' D 0 LOCAL Chris Evans
2016-12-18   RedStar 3.0 Server - 'Shellshock' 'BEAM' / 'RSSMON' Command Injection 0 LOCAL Hacker Fantastic
2016-12-14   Apport 2.x (Ubuntu Desktop 12.10 < 16.04) - Local Code Execution 0 LOCAL Donncha OCearbhaill
2016-12-18   Naenara Browser 3.5 (RedStar 3.0 Desktop) - 'JACKRABBIT' Client-Side Command Execution 0 LOCAL Hacker Fantastic
2016-12-16   Apple macOS 10.12 16A323 XNU Kernel / iOS 10.1.1 - 'set_dp_control_port' Lack of Locking Use-After-F 0 LOCAL Google Security Research
2016-12-15   Nagios < 4.2.4 - Local Privilege Escalation 0 LOCAL Dawid Golunski
2016-12-15   Nidesoft MP3 Converter 2.6.18 - Local Buffer Overflow (SEH) 0 LOCAL malwrforensics
2016-12-10   10-Strike Network File Search Pro 2.3 - Local Buffer Overflow (SEH) 0 LOCAL malwrforensics
2016-12-11   EasyPHP Devserver 16.1.1 - Insecure File Permissions Privilege Escalation 0 LOCAL Ashiyane Digital Security Team
2016-12-06   Microsoft PowerShell - XML External Entity Injection 0 LOCAL hyp3rlinx
2016-12-06   Linux Kernel 4.4.0 (Ubuntu 14.04/16.04 x86-64) - 'AF_PACKET' Race Condition Privilege Escalation 0 LOCAL rebel
2016-12-05   Apache CouchDB 2.0.0 - Local Privilege Escalation 0 LOCAL hyp3rlinx
2016-12-05   Microsoft MSINFO32.EXE 6.1.7601 - '.NFO' XML External Entity Injection 0 LOCAL hyp3rlinx
2016-12-05   Microsoft Event Viewer 1.0 - XML External Entity Injection 0 LOCAL hyp3rlinx
2016-12-04   Microsoft Windows Media Center 6.1.7600 - 'ehshell.exe' XML External Entity Injection 0 LOCAL hyp3rlinx
2016-12-04   Microsoft Excel Starter 2010 - XML External Entity Injection 0 LOCAL hyp3rlinx
2016-12-04   Microsoft Authorization Manager 6.1.7601 - 'azman' XML External Entity Injection 0 LOCAL hyp3rlinx
2016-11-29   WinPower 4.9.0.4 - Local Privilege Escalation 0 LOCAL Kacper Szurek
2016-11-27   Linux Kernel 2.6.22 < 3.9 - 'Dirty COW /proc/self/mem' Race Condition Privilege Escalation (/etc/pas 0 LOCAL Gabriele Bonacini
2016-11-28   Linux Kernel 2.6.22 < 3.9 - 'Dirty COW' 'PTRACE_POKEDATA' Race Condition Privilege Escalation (/etc/ 0 LOCAL FireFart
2016-10-26   Linux Kernel 2.6.22 < 3.9 - 'Dirty COW PTRACE_POKEDATA' Race Condition (Write Access Method) 0 LOCAL Phil Oester
2016-11-24   Microsoft Windows Kernel - 'win32k.sys NtSetWindowLongPtr' Local Privilege Escalation (MS16-135) (1) 0 LOCAL IOactive
2013-12-16   Linux Kernel 2.6.10 < 2.6.31.5 - 'pipe.c' Local Privilege Escalation 0 LOCAL spender
2009-10-04   Linux Kernel 2.6.32-rc1 (x86-64) - Register Leak 0 LOCAL spender
2010-02-08   Linux Kernel 2.6.18 - 'move_pages()' Information Leak 0 LOCAL spender
2016-11-22   Huawei UTPS - Unquoted Service Path Privilege Escalation 0 LOCAL Dhruv Shah
2016-11-18   Palo Alto Networks PanOS - 'root_reboot' Local Privilege Escalation 0 LOCAL Google Security Research
2016-11-18   Palo Alto Networks PanOS - 'root_trace' Local Privilege Escalation 0 LOCAL Google Security Research
2016-11-18   Nagios 4.2.2 - Local Privilege Escalation 0 LOCAL Vincent Malguy
2016-11-16   Nginx (Debian Based Distros + Gentoo) - 'logrotate' Local Privilege Escalation 0 LOCAL Dawid Golunski
2016-11-15   Microsoft Windows - VHDMP Arbitrary Physical Disk Cloning Privilege Escalation (MS16-138) 0 LOCAL Google Security Research
2016-11-15   Microsoft Windows - VHDMP ZwDeleteFile Arbitrary File Deletion Privilege Escalation (MS16-138) 0 LOCAL Google Security Research
2016-11-15   Microsoft Windows - VHDMP Arbitrary File Creation Privilege Escalation (MS16-138) 0 LOCAL Google Security Research
2016-11-14   Linux Kernel 4.4 (Ubuntu 16.04) - 'BPF' Local Privilege Escalation (Metasploit) 0 LOCAL Metasploit
2016-11-08   Avira Antivirus 15.0.21.86 - '.zip' Directory Traversal / Command Execution 0 LOCAL R-73eN