Exploitdb Exploits

14 exploits tracked across all sources.

Sort: Activity Stars
CVE-2023-34634 EXPLOITDB HIGH powershell
Greenshot < 1.2.10.6 - Remote Code Execution via Insecure .NET Deserialization
Greenshot 1.2.10 and below allows arbitrary code execution because .NET content is insecurely deserialized when a .greenshot file is opened.
by p4r4bellum
CVSS 7.8
CVE-2022-2841 EXPLOITDB LOW powershell
CrowdStrike Falcon <6.31.14505.0/6.42.15610/6.44.15806 - Auth Bypass
A vulnerability was found in CrowdStrike Falcon 6.31.14505.0/6.42.15610/6.44.15806. It has been classified as problematic. Affected is an unknown function of the component Uninstallation Handler. The manipulation leads to missing authorization. It is possible to launch the attack remotely. The exploit has been disclosed to the public and may be used. Upgrading to version 6.40.15409, 6.42.15611 and 6.44.15807 is able to address this issue. It is recommended to upgrade the affected component. The identifier of this vulnerability is VDB-206880.
by Fortunato Lodari
CVSS 2.7
EIP-2026-101434 EXPLOITDB powershell
Schneider Electric SpaceLogic C-Bus Home Controller (5200WHC2) - Remote Code Execution
by LiquidWorm
CVE-2021-43326 EXPLOITDB HIGH powershell
Automox Agent <32 - Privilege Escalation
Automox Agent before 32 on Windows incorrectly sets permissions on a temporary directory.
by Greg Foss
CVSS 7.8
CVE-2020-11107 EXPLOITDB HIGH powershell
XAMPP <7.2.29, <7.3.16, <7.4.4 - Command Injection
An issue was discovered in XAMPP before 7.2.29, 7.3.x before 7.3.16 , and 7.4.x before 7.4.4 on Windows. An unprivileged user can change a .exe configuration in xampp-contol.ini for all users (including admins) to enable arbitrary command execution.
by Salman Asad
CVSS 8.8
EIP-2026-118069 EXPLOITDB powershell
Visual Studio Code 1.47.1 - Denial of Service (PoC)
by H.H.A.Ravindu Priyankara
CVE-2018-16156 EXPLOITDB HIGH powershell VERIFIED
PaperStream IP (TWAIN) 1.42.0.5685 - Unauthenticated Local Privilege Escalation via Untrusted Search Path
In PaperStream IP (TWAIN) 1.42.0.5685 (Service Update 7), the FJTWSVIC service running with SYSTEM privilege processes unauthenticated messages received over the FjtwMkic_Fjicube_32 named pipe. One of these message processing functions attempts to dynamically load the UninOldIS.dll library and executes an exported function named ChangeUninstallString. The default install does not contain this library and therefore if any DLL with that name exists in any directory listed in the PATH variable, it can be used to escalate to SYSTEM level privilege.
by 1F98D
CVSS 7.8
CVE-2020-5752 EXPLOITDB HIGH powershell
Druva inSync inSyncCPHwnet64.exe RPC Type 5 Privilege Escalation
Relative path traversal in Druva inSync Windows Client 6.6.3 allows a local, unauthenticated attacker to execute arbitrary operating system commands with SYSTEM privileges.
by 1F98D
CVSS 7.8
EIP-2026-117961 EXPLOITDB powershell
Steam Windows Client - Local Privilege Escalation
by AbsoZed
CVE-2018-8474 EXPLOITDB HIGH powershell VERIFIED
Lync for Mac 2011 - Security Feature Bypass via Crafted Message
A security feature bypass vulnerability exists when Lync for Mac 2011 fails to properly sanitize specially crafted messages, aka "Lync for Mac 2011 Security Feature Bypass Vulnerability." This affects Microsoft Lync.
by nyxgeek
CVSS 7.5
CVE-2018-0880 EXPLOITDB HIGH powershell VERIFIED
Windows Desktop Bridge - Privilege Escalation
The Desktop Bridge in Windows 10 1607, 1703, and 1709, Windows Server 2016 and Windows Server, version 1709 allows an elevation of privilege vulnerability due to how the virtual registry is managed, aka "Windows Desktop Bridge Elevation of Privilege Vulnerability". This CVE is unique from CVE-2018-0882.
by Google Security Research
CVSS 7.0
CVE-2017-8550 EXPLOITDB MEDIUM powershell
Skype for Business >= Microsoft Office 2016 Click-to-Run (C2R) - Remote Code Execution
A remote code execution vulnerability exists in Skype for Business when the software fails to sanitize specially crafted content, aka "Skype for Business Remote Code Execution Vulnerability".
by nyxgeek
CVSS 5.4
CVE-2016-0099 EXPLOITDB HIGH powershell VERIFIED
MS16-032 Secondary Logon Handle Privilege Escalation
The Secondary Logon Service in Microsoft Windows Vista SP2, Windows Server 2008 SP2 and R2 SP1, Windows 7 SP1, Windows 8.1, Windows Server 2012 Gold and R2, Windows RT 8.1, and Windows 10 Gold and 1511 does not properly process request handles, which allows local users to gain privileges via a crafted application, aka "Secondary Logon Elevation of Privilege Vulnerability."
by b33f
CVSS 7.8
EIP-2026-116980 EXPLOITDB powershell
Comodo Anti-Virus - 'SHFolder.dll' Local Privilege Escalation
by Laughing_Mantis