Page 22 of 271 results (0.002 seconds)

CVSS: 7.8EPSS: 3%CPEs: 23EXPL: 0

10 Jan 2023 — Windows Internet Key Exchange (IKE) Extension Denial of Service Vulnerability Vulnerabilidad de denegación de servicio de extensión de intercambio de claves de Internet (IKE) de Windows • https://msrc.microsoft.com/update-guide/vulnerability/CVE-2023-21677 • CWE-822: Untrusted Pointer Dereference •

CVSS: 7.8EPSS: 0%CPEs: 31EXPL: 0

10 Jan 2023 — Windows Print Spooler Elevation of Privilege Vulnerability Vulnerabilidad de elevación de privilegios en la cola de impresión de Windows • https://msrc.microsoft.com/update-guide/vulnerability/CVE-2023-21678 • CWE-59: Improper Link Resolution Before File Access ('Link Following') •

CVSS: 8.1EPSS: 0%CPEs: 31EXPL: 0

10 Jan 2023 — Windows Layer 2 Tunneling Protocol (L2TP) Remote Code Execution Vulnerability Vulnerabilidad de ejecución remota de código del protocolo de túnel de capa 2 de Windows (L2TP) • https://msrc.microsoft.com/update-guide/vulnerability/CVE-2023-21679 • CWE-362: Concurrent Execution using Shared Resource with Improper Synchronization ('Race Condition') CWE-416: Use After Free •

CVSS: 7.8EPSS: 0%CPEs: 31EXPL: 0

10 Jan 2023 — Windows Win32k Elevation of Privilege Vulnerability Vulnerabilidad de escalada de privilegios en Windows Win32k This vulnerability allows local attackers to escalate privileges on affected installations of Microsoft Windows. An attacker must first obtain the ability to execute low-privileged code on the target system in order to exploit this vulnerability. The specific flaw exists within the GreStartDocInternal function. By making crafted calls into this function, an attacker can overflow the reference coun... • https://msrc.microsoft.com/update-guide/vulnerability/CVE-2023-21680 • CWE-416: Use After Free •

CVSS: 10.0EPSS: 0%CPEs: 31EXPL: 0

10 Jan 2023 — Microsoft WDAC OLE DB provider for SQL Server Remote Code Execution Vulnerability Proveedor Microsoft WDAC OLE DB para la vulnerabilidad de ejecución remota de código de SQL Server • https://msrc.microsoft.com/update-guide/vulnerability/CVE-2023-21681 • CWE-191: Integer Underflow (Wrap or Wraparound) •

CVSS: 5.3EPSS: 2%CPEs: 31EXPL: 0

10 Jan 2023 — Windows Point-to-Point Protocol (PPP) Information Disclosure Vulnerability Vulnerabilidad de divulgación de información del protocolo punto a punto (PPP) de Windows • https://msrc.microsoft.com/update-guide/vulnerability/CVE-2023-21682 • CWE-125: Out-of-bounds Read •

CVSS: 7.8EPSS: 6%CPEs: 26EXPL: 0

10 Jan 2023 — Windows Internet Key Exchange (IKE) Extension Denial of Service Vulnerability Vulnerabilidad de denegación de servicio de extensión de intercambio de claves de Internet (IKE) de Windows • https://msrc.microsoft.com/update-guide/vulnerability/CVE-2023-21683 • CWE-476: NULL Pointer Dereference •

CVSS: 7.8EPSS: 0%CPEs: 14EXPL: 0

10 Jan 2023 — Microsoft DWM Core Library Elevation of Privilege Vulnerability Vulnerabilidad de elevación de privilegios de la librería principal de Microsoft DWM • https://msrc.microsoft.com/update-guide/vulnerability/CVE-2023-21724 • CWE-416: Use After Free •

CVSS: 7.8EPSS: 0%CPEs: 31EXPL: 0

10 Jan 2023 — Windows Netlogon Denial of Service Vulnerability Vulnerabilidad de denegación de servicio de Windows Netlogon • https://msrc.microsoft.com/update-guide/vulnerability/CVE-2023-21728 • CWE-400: Uncontrolled Resource Consumption •

CVSS: 7.8EPSS: 0%CPEs: 31EXPL: 0

10 Jan 2023 — Microsoft Cryptographic Services Elevation of Privilege Vulnerability Vulnerabilidad de elevación de privilegios de Microsoft Cryptographic Services • https://msrc.microsoft.com/update-guide/vulnerability/CVE-2023-21730 • CWE-190: Integer Overflow or Wraparound CWE-269: Improper Privilege Management •