!-- Source: https://bugs.chromium.org/p/project-zero/issues/detail?id=948 In Chakra, function calls can sometimes take an extra internal argument, using the flag CallFlags_ExtraArg. The global eval function makes assumptions about the type of this ex
Throughout November, I plan to release details on vulnerabilities Ifound in web-browsers which I've not released before. This is thetwelfth entry in that series. Unfortunately I won't be able to publisheverything within one month at the current rate
/* Source: https://bugs.chromium.org/p/project-zero/issues/detail?id=916 Windows: VHDMP Arbitrary Physical Disk Cloning EoP Platform: Windows 10 10586. No idea about 14393, 7 or 8.1 versions. Class: Elevation of Privilege Summary: The VHDMP driver do
/* Source: https://bugs.chromium.org/p/project-zero/issues/detail?id=915 Windows: VHDMP ZwDeleteFile Arbitrary File Deletion EoP Platform: Windows 10 10586 and 14393. No idea about 7 or 8.1 versions. Class: Elevation of Privilege Summary: The VHDMP d
/* Source: https://bugs.chromium.org/p/project-zero/issues/detail?id=914 Windows: VHDMP Arbitrary File Creation EoP Platform: Windows 10 10586 and 14393. Unlikely to work on 7 or 8.1 as I think its new functionality Class: Elevation of Privilege Summ
!-- Source: http://blog.skylined.nl/20161115001.html Synopsis A specially crafted web-page can cause Microsoft Edge to free memory used for a CAttr object. The code continues to use the data in freed memory block immediately after freeing it. It does
#!/usr/bin/perl -w#phpWebAdmin Version 1.0 SQL Injection Proof Of Concept Exploit#===============================================================#Discovered by N_A , N_A[at]tutanota.com#========================================#Description#==========