High
CVSS: 7.8
Heap-based buffer overflow in Windows DWM Core Library allows an authorized attacker to elevate privileges locally.
High
CVSS: 7.8
Heap-based buffer overflow in Windows DWM Core Library allows an authorized attacker to elevate privileges locally.
Medium
CVSS: 5.5
Insertion of sensitive information into log file in Windows License Manager allows an authorized attacker to disclose information locally.
Medium
CVSS: 5.5
Insertion of sensitive information into log file in Windows License Manager allows an authorized attacker to disclose information locally.
High
CVSS: 8.8
Heap-based buffer overflow in Internet Explorer allows an unauthorized attacker to execute code over a network.
Low
CVSS: 2.1
Exposure of sensitive information to an unauthorized actor in Windows Taskbar Live allows an unauthorized attacker to disclose information with a physical attack.
High
CVSS: 7.0
Concurrent execution using shared resource with improper synchronization ('race condition') in Inbox COM Objects allows an unauthorized attacker to execute code locally.
Low
CVSS: 3.1
Improper authentication in Windows SMB Client allows an unauthorized attacker to perform tampering over a network.
High
CVSS: 7.8
Improper validation of specified type of input in Windows Authentication Methods allows an authorized attacker to elevate privileges locally.
High
CVSS: 7.8
Improper validation of specified type of input in Windows Authentication Methods allows an authorized attacker to elevate privileges locally.
High
CVSS: 7.8
Improper validation of specified type of input in Windows Authentication Methods allows an authorized attacker to elevate privileges locally.
Medium
CVSS: 6.5
Improper validation of specified type of input in Windows Local Session Manager (LSM) allows an authorized attacker to deny service over a network.
High
CVSS: 7.8
Heap-based buffer overflow in Windows DWM Core Library allows an authorized attacker to elevate privileges locally.
Medium
CVSS: 5.5
Improper access control in Microsoft Windows Search Component allows an authorized attacker to deny service locally.
Medium
CVSS: 6.5
External control of file name or path in Windows Core Shell allows an unauthorized attacker to perform spoofing over a network.
High
CVSS: 7.8
Heap-based buffer overflow in Windows Ancillary Function Driver for WinSock allows an authorized attacker to elevate privileges locally.
High
KEV CVSS: 7.8
Improper access control in Windows Remote Access Connection Manager allows an authorized attacker to elevate privileges locally.
Medium
CVSS: 6.5
Exposure of sensitive information to an unauthorized actor in Windows File Explorer allows an unauthorized attacker to perform spoofing over a network.
Medium
CVSS: 5.5
Exposure of sensitive information to an unauthorized actor in Windows Push Notification Core allows an authorized attacker to disclose information locally.
Medium
CVSS: 5.5
Exposure of sensitive information to an unauthorized actor in Windows Push Notification Core allows an authorized attacker to disclose information locally.