Page 52 of 543 results (0.007 seconds)

CVSS: 10.0EPSS: 0%CPEs: 28EXPL: 0

14 Feb 2023 — Microsoft WDAC OLE DB provider for SQL Server Remote Code Execution Vulnerability • https://msrc.microsoft.com/update-guide/vulnerability/CVE-2023-21799 • CWE-122: Heap-based Buffer Overflow •

CVSS: 10.0EPSS: 0%CPEs: 28EXPL: 0

14 Feb 2023 — Microsoft ODBC Driver Remote Code Execution Vulnerability Vulnerabilidad de Ejecución de Código Remota de Microsoft ODBC Driver • https://msrc.microsoft.com/update-guide/vulnerability/CVE-2023-21798 • CWE-125: Out-of-bounds Read •

CVSS: 10.0EPSS: 0%CPEs: 28EXPL: 0

14 Feb 2023 — Microsoft ODBC Driver Remote Code Execution Vulnerability Vulnerabilidad de Ejecución de Código Remota de Microsoft ODBC Driver • https://msrc.microsoft.com/update-guide/vulnerability/CVE-2023-21797 • CWE-190: Integer Overflow or Wraparound •

CVSS: 9.0EPSS: 0%CPEs: 28EXPL: 0

14 Feb 2023 — Microsoft PostScript and PCL6 Class Printer Driver Remote Code Execution Vulnerability • https://msrc.microsoft.com/update-guide/vulnerability/CVE-2023-21684 • CWE-191: Integer Underflow (Wrap or Wraparound) •

CVSS: 7.0EPSS: 0%CPEs: 17EXPL: 1

10 Jan 2023 — Windows Bluetooth Driver Elevation of Privilege Vulnerability Vulnerabilidad de elevación de privilegios del controlador Bluetooth de Windows • https://github.com/gmh5225/CVE-2023-21739 • CWE-591: Sensitive Data Storage in Improperly Locked Memory •

CVSS: 8.8EPSS: 0%CPEs: 13EXPL: 1

10 Jan 2023 — Windows Advanced Local Procedure Call (ALPC) Elevation of Privilege Vulnerability Vulnerabilidad de elevación de privilegios de llamada a procedimiento local avanzado (ALPC) de Windows. Microsoft Windows Advanced Local Procedure Call (ALPC) contains an unspecified vulnerability that allows for privilege escalation. • https://github.com/hd3s5aa/CVE-2023-21674 • CWE-416: Use After Free •

CVSS: 6.4EPSS: 0%CPEs: 10EXPL: 0

13 Dec 2022 — Windows SmartScreen Security Feature Bypass Vulnerability Vulnerabilidad de omisión de la función de seguridad SmartScreen de Windows Microsoft Defender SmartScreen contains a security feature bypass vulnerability that could allow an attacker to evade Mark of the Web (MOTW) defenses via a specially crafted malicious file. • https://msrc.microsoft.com/update-guide/vulnerability/CVE-2022-44698 • CWE-755: Improper Handling of Exceptional Conditions •

CVSS: 7.8EPSS: 0%CPEs: 25EXPL: 1

08 Dec 2022 — Windows Kerberos Elevation of Privilege Vulnerability The HTTP server implemented in HTTP.SYS on Windows handles authentication in a system thread which bypasses PAC verification leading to escalation of privilege. • https://packetstorm.news/files/id/170128 •

CVSS: 6.4EPSS: 1%CPEs: 12EXPL: 0

09 Nov 2022 — Windows Mark of the Web Security Feature Bypass Vulnerability Vulnerabilidad de omisión de la característica de seguridad web de Windows Mark Microsoft Windows Mark of the Web (MOTW) contains a security feature bypass vulnerability resulting in a limited loss of integrity and availability of security features. • https://msrc.microsoft.com/update-guide/vulnerability/CVE-2022-41091 • CWE-863: Incorrect Authorization •

CVSS: 10.0EPSS: 5%CPEs: 18EXPL: 0

09 Nov 2022 — Windows Scripting Languages Remote Code Execution Vulnerability Vulnerabilidad de ejecución remota de código en Windows Scripting Languages Microsoft Windows contains an unspecified vulnerability in the JScript9 scripting language which allows for remote code execution. • https://msrc.microsoft.com/update-guide/vulnerability/CVE-2022-41128 • CWE-787: Out-of-bounds Write •