0day/00-CVE_EXP
2022-03-04 16:23:59 +08:00
..
2022-01-13 17:57:04 +08:00
2022-01-13 17:57:04 +08:00
2022-01-13 17:57:04 +08:00
2022-01-13 17:57:04 +08:00
2022-03-01 16:58:42 +08:00
2022-03-01 16:58:42 +08:00
2022-03-01 16:58:42 +08:00
2022-01-20 14:43:11 +08:00
2022-03-01 16:58:42 +08:00
2022-03-01 16:58:42 +08:00
2022-03-01 16:58:42 +08:00
2022-01-20 14:43:11 +08:00
2022-02-24 17:36:58 +08:00
2022-01-13 17:57:04 +08:00
2022-03-01 16:58:13 +08:00
2022-03-01 16:58:13 +08:00
2022-03-01 16:58:13 +08:00
2022-03-01 16:58:13 +08:00
2022-03-01 16:58:13 +08:00
2022-03-01 16:58:13 +08:00
2022-03-01 16:58:13 +08:00
2022-03-01 16:58:13 +08:00
2022-03-01 16:58:13 +08:00
2022-03-01 16:58:13 +08:00
2022-03-01 16:58:13 +08:00
2022-01-20 14:43:11 +08:00
2022-01-13 17:57:04 +08:00
2022-01-13 17:57:04 +08:00
2022-03-01 16:58:13 +08:00
2022-03-01 16:58:13 +08:00
2022-01-13 17:57:04 +08:00
2022-03-01 16:56:58 +08:00
2022-01-20 14:43:11 +08:00
2022-01-13 17:57:04 +08:00
2022-01-20 14:43:11 +08:00
2022-03-01 16:56:58 +08:00
2022-03-01 16:56:58 +08:00
2022-03-01 16:56:58 +08:00
2022-03-01 16:56:58 +08:00
2022-03-01 16:56:58 +08:00
2022-03-01 16:56:58 +08:00
2022-03-01 16:56:58 +08:00
2022-03-01 16:56:58 +08:00
2022-02-10 12:02:50 +08:00
2022-03-04 16:23:59 +08:00
2022-03-03 15:15:40 +08:00
2022-01-13 17:57:04 +08:00
2022-01-13 17:57:04 +08:00
2022-01-13 17:57:04 +08:00
2022-01-13 17:57:04 +08:00

CVE Exploit PoC's

PoC exploits for multiple software vulnerabilities.

Current exploits

  • CVE-2019-18634 (LPE): Stack-based buffer overflow in sudo tgetpass.c when pwfeedback module is enabled
  • CVE-2021-3156 (LPE): Heap-based buffer overflow in sudo sudoers.c when an argv ends with backslash character.
  • CVE-2020-28018 (RCE): Exim Use-After-Free (UAF) in tls-openssl.c leading to Remote Code Execution
  • CVE-2020-9273 (RCE): ProFTPd Use-After-Free (UAF) leading to Post-Auth Remote Code Execution
  • jad OOB write (CE): JAD out-of-bounds write leading to code execution (No CVE given yet)