#漏洞 How We Are Able To Hack Any Company By Sending Message - $20,000 Bounty [CVE-2021–34506]
https://cyberxplore.medium.com/how-we-are-able-to-hack-any-company-by-sending-message-including-facebook-google-microsoft-b7773626e447
https://cyberxplore.medium.com/how-we-are-able-to-hack-any-company-by-sending-message-including-facebook-google-microsoft-b7773626e447
Medium
How We Are Able To Hack Any Company By Sending Message - $20,000 Bounty [CVE-2021–34506]
Hello Folks , I hope everyone is doing well in this pandemic & making full use of it for learning new stuff in their daily life . so this a…
#漏洞 Analysis of a Heap Buffer-Overflow Vulnerability in Adobe Acrobat Reader DC
https://blog.exodusintel.com/2021/06/28/analysis-of-a-heap-buffer-overflow-vulnerability-in-adobe-acrobat-reader-dc/
https://blog.exodusintel.com/2021/06/28/analysis-of-a-heap-buffer-overflow-vulnerability-in-adobe-acrobat-reader-dc/
Exodus Intelligence
Analysis of a Heap Buffer-Overflow Vulnerability in Adobe Acrobat Reader DC - Exodus Intelligence
By Sergi Martinez This post analyzes and exploits CVE-2021-21017, a heap buffer overflow reported in Adobe Acrobat Reader DC prior to versions 2021.001.20135. This vulnerability was anonymously reported to Adobe and patched on February 9th, 2021. A publicly…
#漏洞 Adobe Experience Manager 身份验证绕过 0Day 漏洞
https://labs.detectify.com/2021/06/28/aem-crx-bypass-0day-control-over-some-enterprise-aem-crx-package-manager/
https://labs.detectify.com/2021/06/28/aem-crx-bypass-0day-control-over-some-enterprise-aem-crx-package-manager/
Labs Detectify
Undocumented authentication bypass issue in AEM Package Manager [Blog updated]
Detectify Crowdsource ethical hackers found an undocumented authentication bypass in Adobe Experience Manager. Comments from Adobe added.
#漏洞 PrintNightmare (CVE-2021-1675): Remote code execution in Windows Spooler Service
https://github.com/hhlxf/PrintNightmare
https://github.com/hhlxf/PrintNightmare
#漏洞 Analyzing CVE-2021-1665 – Remote Code Execution Vulnerability in Windows GDI+
https://www.mcafee.com/blogs/other-blogs/mcafee-labs/analyzing-cve-2021-1665-remote-code-execution-vulnerability-in-windows-gdi/
https://www.mcafee.com/blogs/other-blogs/mcafee-labs/analyzing-cve-2021-1665-remote-code-execution-vulnerability-in-windows-gdi/
McAfee Blog
Analyzing CVE-2021-1665 – Remote Code Execution Vulnerability in Windows GDI+ | McAfee Blog
Introduction Microsoft Windows Graphics Device Interface+, also known as GDI+, allows various applications to use different graphics functionality on
#漏洞 ForgeRock AM远程代码执行漏洞(CVE-2021-35464)
https://portswigger.net/research/pre-auth-rce-in-forgerock-openam-cve-2021-35464
https://portswigger.net/research/pre-auth-rce-in-forgerock-openam-cve-2021-35464
PortSwigger Research
Pre-auth RCE in ForgeRock OpenAM (CVE-2021-35464)
While participating in one private bug bounty program, I discovered a pre-auth RCE in ForgeRock OpenAM server - a popular access management solution for web applications. In this blog post, I'm going
#漏洞 CVE-2021-26892: AN AUTHORIZATION BYPASS ON THE MICROSOFT WINDOWS EFI SYSTEM PARTITION
https://www.zerodayinitiative.com/blog/2021/6/30/cve-2021-26892-an-authorization-bypass-on-the-microsoft-windows-efi-system-partition
https://www.zerodayinitiative.com/blog/2021/6/30/cve-2021-26892-an-authorization-bypass-on-the-microsoft-windows-efi-system-partition
Zero Day Initiative
Zero Day Initiative — CVE-2021-26892: An Authorization Bypass on the Microsoft Windows EFI System Partition
In October 2020, researcher Abdelhamid Naceri, also known as halov, submitted a unique vulnerability to the ZDI. This vulnerability in Windows 10 allows a low-privileged user to wipe out arbitrary files needed for UEFI boot. The attack can even be conducted…
#漏洞 Exploiting the Sudo Baron Samedit vulnerability (CVE-2021-3156) on VMWare vCenter Server 7.0
https://research.nccgroup.com/2021/07/06/exploiting-the-sudo-baron-samedit-vulnerability-cve-2021-3156-on-vmware-vcenter-server-7-0/
https://research.nccgroup.com/2021/07/06/exploiting-the-sudo-baron-samedit-vulnerability-cve-2021-3156-on-vmware-vcenter-server-7-0/
#漏洞 Technical Advisory – Arbitrary File Read in Dell Wyse Management Suite (CVE-2021-21586, CVE-2021-21587)
https://research.nccgroup.com/2021/07/06/technical-advisory-arbitrary-file-read-in-dell-wyse-management-suite-cve-2021-21586-cve-2021-21587/
https://research.nccgroup.com/2021/07/06/technical-advisory-arbitrary-file-read-in-dell-wyse-management-suite-cve-2021-21586-cve-2021-21587/
NCC Group Research Blog
Technical Advisory – Arbitrary File Read in Dell Wyse Management Suite (CVE-2021-21586, CVE-2021-21587)
Vendor: Dell Vendor URL: Versions affected: Prior to version 3.3 Systems Affected: Any Author: Stephen Tomkinson stephen.tomkinson@nccgroup.com Advisory URL / CVE Identifier: CVE-2021-21586, CVE-20…
#漏洞 PoC for SSRF in IBM QRadar SIEM (CVE-2020-4786)
https://twitter.com/ptswarm/status/1412775355530764291
https://twitter.com/ptswarm/status/1412775355530764291
Twitter
PT SWARM
✨PoC for SSRF in IBM QRadar SIEM (CVE-2020-4786)✨ GET /console/chartServer?output=image&data=http://127.0.0.1:8080
#漏洞 CVE-2021-31800 impacket smbserver 目录遍历漏洞
https://www.checkmarx.com/blog/cve-2021-31800-how-we-used-impacket-to-hack-itself/
https://www.checkmarx.com/blog/cve-2021-31800-how-we-used-impacket-to-hack-itself/
Checkmarx
CVE-2021-31800: How We Used Impacket to Hack Itself
After investigating Impacket, the Checkmarx Security Research Team discovered a Path Traversal vulnerability, which could allow an attacker to write malicious files to any path on the target and achieve Remote Code Execution (RCE).