
CVE-2023-36905 – Windows Wireless Wide Area Network Service (WwanSvc) Information Disclosure Vulnerability
https://notcve.org/view.php?id=CVE-2023-36905
08 Aug 2023 — Windows Wireless Wide Area Network Service (WwanSvc) Information Disclosure Vulnerability • https://msrc.microsoft.com/update-guide/vulnerability/CVE-2023-36905 • CWE-125: Out-of-bounds Read •

CVE-2023-36903 – Windows System Assessment Tool Elevation of Privilege Vulnerability
https://notcve.org/view.php?id=CVE-2023-36903
08 Aug 2023 — Windows System Assessment Tool Elevation of Privilege Vulnerability • https://msrc.microsoft.com/update-guide/vulnerability/CVE-2023-36903 • CWE-59: Improper Link Resolution Before File Access ('Link Following') •

CVE-2023-36900 – Windows Common Log File System Driver Elevation of Privilege Vulnerability
https://notcve.org/view.php?id=CVE-2023-36900
08 Aug 2023 — Windows Common Log File System Driver Elevation of Privilege Vulnerability This vulnerability allows local attackers to escalate privileges on affected installations of Microsoft Windows. An attacker must first obtain the ability to execute low-privileged code on the target system in order to exploit this vulnerability. The specific flaw exists within the clfs.sys driver. A crafted BLF file can trigger an incorrect integer calculation before allocating a buffer. An attacker can leverage this vulnerability t... • https://github.com/RomanRybachek/CVE-2023-36900 • CWE-190: Integer Overflow or Wraparound •

CVE-2023-21712 – Windows Point-to-Point Tunneling Protocol Remote Code Execution Vulnerability
https://notcve.org/view.php?id=CVE-2023-21712
27 Apr 2023 — Windows Point-to-Point Tunneling Protocol Remote Code Execution Vulnerability • https://msrc.microsoft.com/update-guide/vulnerability/CVE-2023-21712 • CWE-362: Concurrent Execution using Shared Resource with Improper Synchronization ('Race Condition') •

CVE-2023-24859 – Windows Internet Key Exchange (IKE) Extension Denial of Service Vulnerability
https://notcve.org/view.php?id=CVE-2023-24859
14 Mar 2023 — Windows Internet Key Exchange (IKE) Extension Denial of Service Vulnerability • https://msrc.microsoft.com/update-guide/vulnerability/CVE-2023-24859 • CWE-476: NULL Pointer Dereference •

CVE-2023-24858 – Microsoft PostScript and PCL6 Class Printer Driver Information Disclosure Vulnerability
https://notcve.org/view.php?id=CVE-2023-24858
14 Mar 2023 — Microsoft PostScript and PCL6 Class Printer Driver Information Disclosure Vulnerability • https://msrc.microsoft.com/update-guide/vulnerability/CVE-2023-24858 • CWE-126: Buffer Over-read •

CVE-2023-24857 – Microsoft PostScript and PCL6 Class Printer Driver Information Disclosure Vulnerability
https://notcve.org/view.php?id=CVE-2023-24857
14 Mar 2023 — Microsoft PostScript and PCL6 Class Printer Driver Information Disclosure Vulnerability • https://msrc.microsoft.com/update-guide/vulnerability/CVE-2023-24857 • CWE-126: Buffer Over-read •

CVE-2023-23423 – Windows Kernel Elevation of Privilege Vulnerability
https://notcve.org/view.php?id=CVE-2023-23423
14 Mar 2023 — Windows Kernel Elevation of Privilege Vulnerability The Microsoft Windows Kernel suffers from multiple issues in the prepare/commit phase of a transactional registry key rename. • https://packetstorm.news/files/id/171866 •

CVE-2023-23422 – Windows Kernel Elevation of Privilege Vulnerability
https://notcve.org/view.php?id=CVE-2023-23422
14 Mar 2023 — Windows Kernel Elevation of Privilege Vulnerability The Microsoft Windows Kernel suffers from multiple issues in the prepare/commit phase of a transactional registry key rename. • https://packetstorm.news/files/id/171866 •

CVE-2023-23421 – Windows Kernel Elevation of Privilege Vulnerability
https://notcve.org/view.php?id=CVE-2023-23421
14 Mar 2023 — Windows Kernel Elevation of Privilege Vulnerability The Microsoft Windows Kernel suffers from multiple issues in the prepare/commit phase of a transactional registry key rename. • https://packetstorm.news/files/id/171866 • CWE-416: Use After Free •