CVE-2025-33053: WebDAV Working-Directory Hijack Vulnerability
A critical vulnerability (CVSS 8.8) in Windows WebDAV that allows attackers to hijack the working directory of signed binaries, leading to remote…
A critical vulnerability (CVSS 8.8) in Windows WebDAV that allows attackers to hijack the working directory of signed binaries, leading to remote…
A file-handling flaw in MSHTML that could be exploited for bypassing security controls, used in smaller test sets by the operator.
A vulnerability that leaks NTLM credentials, included in the operator's test sets for phishing delivery.
CVE-2023-4863 is a heap buffer overflow vulnerability in the WebP image format library, which can be exploited for browser-based attacks. It was…
A command injection vulnerability in Hikvision cameras, included in Evooo1Bot's exploit arsenal.
Another command injection vulnerability in Microsoft Semantic Kernel related to insecure shell command handling.
A vulnerability in Microsoft's Semantic Kernel agent framework where model output reaching a shell can lead to command injection. Patched by Microsoft.