CVE-2024-38234 – Windows Networking Denial of Service Vulnerability
https://notcve.org/view.php?id=CVE-2024-38234
10 Sep 2024 — Windows Networking Denial of Service Vulnerability • https://msrc.microsoft.com/update-guide/vulnerability/CVE-2024-38234 • CWE-20: Improper Input Validation •
CVE-2024-38217 – Microsoft Windows Mark of the Web (MOTW) Protection Mechanism Failure Vulnerability
https://notcve.org/view.php?id=CVE-2024-38217
10 Sep 2024 — Windows Mark of the Web Security Feature Bypass Vulnerability Microsoft Windows Mark of the Web (MOTW) contains a protection mechanism failure vulnerability that allows an attacker to bypass MOTW-based defenses. This can result in a limited loss of integrity and availability of security features such as Protected View in Microsoft Office, which rely on MOTW tagging. • https://msrc.microsoft.com/update-guide/vulnerability/CVE-2024-38217 • CWE-693: Protection Mechanism Failure •
CVE-2024-38046 – PowerShell Elevation of Privilege Vulnerability
https://notcve.org/view.php?id=CVE-2024-38046
10 Sep 2024 — PowerShell Elevation of Privilege Vulnerability • https://msrc.microsoft.com/update-guide/vulnerability/CVE-2024-38046 • CWE-20: Improper Input Validation •
CVE-2024-38014 – Microsoft Windows Installer Improper Privilege Management Vulnerability
https://notcve.org/view.php?id=CVE-2024-38014
10 Sep 2024 — Windows Installer Elevation of Privilege Vulnerability Microsoft Windows Installer contains an improper privilege management vulnerability that could allow an attacker to gain SYSTEM privileges. • https://msrc.microsoft.com/update-guide/vulnerability/CVE-2024-38014 • CWE-269: Improper Privilege Management •
CVE-2024-38256 – Windows Kernel-Mode Driver Information Disclosure Vulnerability
https://notcve.org/view.php?id=CVE-2024-38256
10 Sep 2024 — Windows Kernel-Mode Driver Information Disclosure Vulnerability • https://msrc.microsoft.com/update-guide/vulnerability/CVE-2024-38256 • CWE-908: Use of Uninitialized Resource •
CVE-2024-38254 – Windows Authentication Information Disclosure Vulnerability
https://notcve.org/view.php?id=CVE-2024-38254
10 Sep 2024 — Windows Authentication Information Disclosure Vulnerability • https://msrc.microsoft.com/update-guide/vulnerability/CVE-2024-38254 • CWE-908: Use of Uninitialized Resource •
CVE-2024-38250 – Windows Graphics Component Elevation of Privilege Vulnerability
https://notcve.org/view.php?id=CVE-2024-38250
10 Sep 2024 — Windows Graphics Component Elevation of Privilege Vulnerability • https://msrc.microsoft.com/update-guide/vulnerability/CVE-2024-38250 • CWE-126: Buffer Over-read •
CVE-2024-38249 – Windows Graphics Component Elevation of Privilege Vulnerability
https://notcve.org/view.php?id=CVE-2024-38249
10 Sep 2024 — Windows Graphics Component Elevation of Privilege Vulnerability This vulnerability allows local attackers to escalate privileges on affected installations of Microsoft Windows. An attacker must first obtain the ability to execute low-privileged code on the target system in order to exploit this vulnerability. The specific flaw exists within the win32kfull driver. The issue results from the lack of validating the existence of an object prior to performing operations on the object. An attacker can leverage th... • https://msrc.microsoft.com/update-guide/vulnerability/CVE-2024-38249 • CWE-416: Use After Free •
CVE-2024-38242 – Kernel Streaming Service Driver Elevation of Privilege Vulnerability
https://notcve.org/view.php?id=CVE-2024-38242
10 Sep 2024 — Kernel Streaming Service Driver Elevation of Privilege Vulnerability • https://msrc.microsoft.com/update-guide/vulnerability/CVE-2024-38242 • CWE-122: Heap-based Buffer Overflow •
CVE-2024-38241 – Kernel Streaming Service Driver Elevation of Privilege Vulnerability
https://notcve.org/view.php?id=CVE-2024-38241
10 Sep 2024 — Kernel Streaming Service Driver Elevation of Privilege Vulnerability • https://msrc.microsoft.com/update-guide/vulnerability/CVE-2024-38241 • CWE-20: Improper Input Validation •