High
CVSS: 7.8
Improper link resolution before file access ('link following') in Windows Health and Optimized Experiences Service allows an authorized attacker to elevate privileges locally.
High
CVSS: 7.4
Windows Resilient File System (ReFS) Deduplication Service Elevation of Privilege Vulnerability
High
CVSS: 7.4
Windows Resilient File System (ReFS) Deduplication Service Elevation of Privilege Vulnerability
High
CVSS: 7.4
Use after free in Microsoft Brokering File System allows an unauthorized attacker to elevate privileges locally.
High
CVSS: 7.7
Null pointer dereference in Windows DirectX allows an authorized attacker to deny service over a network.
High
CVSS: 7.8
Improper access control in Windows Error Reporting allows an authorized attacker to elevate privileges locally.
High
CVSS: 7.4
Use after free in Windows Kernel allows an unauthorized attacker to elevate privileges locally.
High
CVSS: 7.0
Use after free in Windows PrintWorkflowUserSvc allows an authorized attacker to elevate privileges locally.
High
CVSS: 7.0
Use after free in Windows PrintWorkflowUserSvc allows an authorized attacker to elevate privileges locally.
High
CVSS: 7.0
Use after free in Windows PrintWorkflowUserSvc allows an authorized attacker to elevate privileges locally.
High
CVSS: 7.0
Use after free in Windows PrintWorkflowUserSvc allows an authorized attacker to elevate privileges locally.
Medium
CVSS: 6.1
Improper enforcement of behavioral workflow in Windows BitLocker allows an unauthorized attacker to bypass a security feature with a physical attack.
High
CVSS: 7.8
Untrusted pointer dereference in Windows Device Association Broker service allows an authorized attacker to elevate privileges locally.
Medium
CVSS: 5.5
Generation of error message containing sensitive information in Windows USB Video Driver allows an authorized attacker to disclose information locally.
Medium
CVSS: 6.1
Improper enforcement of behavioral workflow in Windows BitLocker allows an unauthorized attacker to bypass a security feature with a physical attack.
High
CVSS: 7.0
Use after free in Windows Device Association Broker service allows an authorized attacker to elevate privileges locally.
High
CVSS: 7.0
Concurrent execution using shared resource with improper synchronization ('race condition') in Microsoft Graphics Component allows an authorized attacker to elevate privileges locally.
High
CVSS: 7.0
Use after free in Microsoft Graphics Component allows an authorized attacker to elevate privileges locally.
High
CVSS: 7.0
Concurrent execution using shared resource with improper synchronization ('race condition') in Capability Access Management Service (camsvc) allows an authorized attacker to elevate privileges locally.
High
CVSS: 7.0
Concurrent execution using shared resource with improper synchronization ('race condition') in Microsoft Brokering File System allows an authorized attacker to elevate privileges locally.