Medium
CVSS: 6.7
Improper access control in Microsoft Configuration Manager allows an authorized attacker to elevate privileges locally.
Medium
CVSS: 4.8
Authentication bypass by spoofing in Microsoft Configuration Manager allows an authorized attacker to perform spoofing over an adjacent network.
High
CVSS: 8.8
Improper neutralization of special elements used in an sql command ('sql injection') in Microsoft Configuration Manager allows an unauthorized attacker to elevate privileges over an adjacent network.
Medium
CVSS: 6.8
Improper neutralization of special elements used in an sql command ('sql injection') in Microsoft Configuration Manager allows an authorized attacker to elevate privileges over an adjacent network.