Page 42 of 610 results (0.017 seconds)

CVSS: 6.8EPSS: 0%CPEs: 11EXPL: 0

11 Jun 2024 — Windows Container Manager Service Elevation of Privilege Vulnerability Vulnerabilidad de elevación de privilegios del servicio Windows Container Manager • https://msrc.microsoft.com/update-guide/vulnerability/CVE-2024-30076 • CWE-59: Improper Link Resolution Before File Access ('Link Following') •

CVSS: 7.8EPSS: 0%CPEs: 4EXPL: 0

11 Jun 2024 — DHCP Server Service Denial of Service Vulnerability Vulnerabilidad de denegación de servicio del servicio del servidor DHCP • https://msrc.microsoft.com/update-guide/vulnerability/CVE-2024-30070 • CWE-191: Integer Underflow (Wrap or Wraparound) •

CVSS: 4.7EPSS: 0%CPEs: 12EXPL: 0

11 Jun 2024 — Windows Remote Access Connection Manager Information Disclosure Vulnerability Vulnerabilidad de divulgación de información del Administrador de conexión de acceso remoto de Windows • https://msrc.microsoft.com/update-guide/vulnerability/CVE-2024-30069 • CWE-125: Out-of-bounds Read CWE-126: Buffer Over-read •

CVSS: 7.8EPSS: 0%CPEs: 12EXPL: 2

14 May 2024 — Windows DWM Core Library Elevation of Privilege Vulnerability Vulnerabilidad de elevación de privilegios de la librería principal DWM de Windows Microsoft DWM Core Library contains a privilege escalation vulnerability that allows an attacker to gain SYSTEM privileges. • https://packetstorm.news/files/id/181402 • CWE-122: Heap-based Buffer Overflow CWE-787: Out-of-bounds Write •

CVSS: 7.8EPSS: 0%CPEs: 25EXPL: 0

14 May 2024 — Windows Win32 Kernel Subsystem Elevation of Privilege Vulnerability Vulnerabilidad de elevación de privilegios del subsistema kernel de Windows Win32 • https://msrc.microsoft.com/update-guide/vulnerability/CVE-2024-30049 • CWE-416: Use After Free •

CVSS: 10.0EPSS: 0%CPEs: 13EXPL: 0

14 May 2024 — Windows MSHTML Platform Security Feature Bypass Vulnerability Vulnerabilidad de omisión de la característica de seguridad de la plataforma MSHTML de Windows Microsoft Windows MSHTML Platform contains an unspecified vulnerability that allows for a security feature bypass. • https://msrc.microsoft.com/update-guide/vulnerability/CVE-2024-30040 • CWE-20: Improper Input Validation •

CVSS: 10.0EPSS: 0%CPEs: 25EXPL: 0

14 May 2024 — Windows Remote Access Connection Manager Information Disclosure Vulnerability Vulnerabilidad de divulgación de información del Administrador de conexión de acceso remoto de Windows • https://msrc.microsoft.com/update-guide/vulnerability/CVE-2024-30039 • CWE-126: Buffer Over-read •

CVSS: 10.0EPSS: 0%CPEs: 20EXPL: 1

14 May 2024 — Win32k Elevation of Privilege Vulnerability Vulnerabilidad de elevación de privilegios en Win32k CVE-2024-30088 is a Windows kernel elevation of privilege vulnerability which affects many recent versions of Windows 10, Windows 11 and Windows Server 2022. The vulnerability exists inside the function called AuthzBasepCopyoutInternalSecurityAttributes specifically when the kernel copies the _AUTHZBASEP_SECURITY_ATTRIBUTES_INFORMATION of the current token object to user mode. When the kernel performs the copy o... • https://packetstorm.news/files/id/181593 • CWE-122: Heap-based Buffer Overflow •

CVSS: 8.8EPSS: 0%CPEs: 25EXPL: 0

14 May 2024 — Windows Common Log File System Driver Elevation of Privilege Vulnerability Vulnerabilidad de elevación de privilegios del controlador del sistema de archivos de registro común de Windows This vulnerability allows local attackers to escalate privileges on affected installations of Microsoft Windows. An attacker must first obtain the ability to execute low-privileged code on the target system in order to exploit this vulnerability. The specific flaw exists within the Common Log File System (CLFS). The issue r... • https://msrc.microsoft.com/update-guide/vulnerability/CVE-2024-30037 • CWE-125: Out-of-bounds Read •

CVSS: 6.8EPSS: 0%CPEs: 14EXPL: 0

14 May 2024 — Windows Deployment Services Information Disclosure Vulnerability Vulnerabilidad de divulgación de información de los servicios de implementación de Windows • https://msrc.microsoft.com/update-guide/vulnerability/CVE-2024-30036 • CWE-41: Improper Resolution of Path Equivalence •