HackAndPwn
Security & Vulnerability Researcher / Professional Penetration Tester

Home

  • CVE-2024-0832

    In Telerik Reporting versions prior to 2024 R1, a privilege elevation vulnerability exists in the application installer component. In environments where Telerik Reporting is already installed, a lower-privileged user may manipulate the installation package to elevate privileges on the underlying operating system.


  • Windows 8.1 and Windows Server 2012 R2 ESU Analysis Changelog

    Update 2026-01-25

    • Added Windows 8.1 December 2025 OOB Cumulative Update KB5074978 (Thanks jay!).
    • Removed Windows 8.1 SSU, .NET 3.5 and .NET 4.8 updates to use the latest Windows Server 2012 R2 version of the updates.

  • CVE-2024-0213

    A buffer overflow vulnerability in Trellix Agent for Linux and macOS before 5.8.1 allows a local user to gain elevated permissions, cause denial of service, or disable event reporting to ePO by exploiting a memory corruption issue in the TA service running as root.


  • CVE-2023-46814

    VLC media player before 3.0.19 on Windows contains a binary hijacking vulnerability in the uninstaller that could allow local privilege escalation.


  • CVE-2023-31017

    NVIDIA Cloud Gaming guest driver for Windows contains a vulnerability addressed in the October 2023 NVIDIA GPU Display Driver security update.



     Page: 5 of 21     
buy me a coffee