High
CVSS: 7.8
Heap-based buffer overflow in Windows DWM allows an authorized attacker to elevate privileges locally.
Medium
CVSS: 4.7
Use after free in Connected Devices Platform Service (Cdpsvc) allows an authorized attacker to elevate privileges locally.
High
CVSS: 7.0
Concurrent execution using shared resource with improper synchronization ('race condition') in Windows Connected Devices Platform Service allows an authorized attacker to elevate privileges locally.
High
CVSS: 7.8
Use after free in Windows Connected Devices Platform Service allows an authorized attacker to elevate privileges locally.
High
CVSS: 7.8
No cwe for this issue in Microsoft Graphics Component allows an authorized attacker to elevate privileges locally.
Medium
CVSS: 6.8
Missing synchronization in Windows Hyper-V allows an authorized attacker to deny service over an adjacent network.
Medium
CVSS: 6.7
Improper restriction of communication channel to intended endpoints in Windows Hyper-V allows an authorized attacker to execute code locally.
High
CVSS: 7.8
Use after free in Windows Notification allows an authorized attacker to elevate privileges locally.
High
CVSS: 7.8
Use after free in Windows Notification allows an authorized attacker to elevate privileges locally.
High
CVSS: 8.6
Out-of-bounds read in Windows Hyper-V allows an unauthorized attacker to execute code locally.
High
CVSS: 7.5
Missing authentication for critical function in Windows Remote Desktop Licensing Service allows an unauthorized attacker to bypass a security feature over a network.
High
CVSS: 7.8
Improper link resolution before file access ('link following') in Windows Update Service allows an authorized attacker to elevate privileges locally.
High
CVSS: 7.8
Use after free in Windows Connected Devices Platform Service allows an authorized attacker to elevate privileges locally.
Medium
CVSS: 6.8
Missing synchronization in Windows Hyper-V allows an authorized attacker to deny service over an adjacent network.
High
CVSS: 7.8
Use after free in Microsoft Input Method Editor (IME) allows an authorized attacker to elevate privileges locally.
High
CVSS: 7.8
Improper input validation in Windows Storage VSP Driver allows an authorized attacker to elevate privileges locally.
Medium
CVSS: 5.5
Out-of-bounds read in Windows Storage Management Provider allows an authorized attacker to disclose information locally.
Medium
CVSS: 5.5
Out-of-bounds read in Windows Storage Management Provider allows an authorized attacker to disclose information locally.
High
CVSS: 7.8
Use after free in Windows Common Log File System Driver allows an authorized attacker to elevate privileges locally.
Medium
CVSS: 5.5
Exposure of sensitive information to an unauthorized actor in Windows Power Dependency Coordinator allows an authorized attacker to disclose information locally.