Page 7 of 609 results (0.005 seconds)

CVSS: 5.5EPSS: 0%CPEs: 14EXPL: 0

11 Jun 2024 — Windows Themes Denial of Service Vulnerability Vulnerabilidad de denegación de servicio en temas de Windows • https://msrc.microsoft.com/update-guide/vulnerability/CVE-2024-30065 • CWE-59: Improper Link Resolution Before File Access ('Link Following') •

CVSS: 8.8EPSS: 0%CPEs: 17EXPL: 6

11 Jun 2024 — Windows Kernel-Mode Driver Elevation of Privilege Vulnerability Vulnerabilidad de elevación de privilegios del controlador en modo kernel de Windows This vulnerability allows local attackers to escalate privileges on affected installations of Microsoft Windows. An attacker must first obtain the ability to execute low-privileged code on the target system in order to exploit this vulnerability. The specific flaw exists within the UnserializePropertySet function. The issue results from improper handling of pri... • https://packetstorm.news/files/id/182984 • CWE-119: Improper Restriction of Operations within the Bounds of a Memory Buffer CWE-822: Untrusted Pointer Dereference •

CVSS: 8.8EPSS: 0%CPEs: 17EXPL: 0

11 Jun 2024 — Win32k Elevation of Privilege Vulnerability Vulnerabilidad de elevación de privilegios en Win32k This vulnerability allows local attackers to escalate privileges on affected installations of Microsoft Windows. An attacker must first obtain the ability to execute low-privileged code on the target system in order to exploit this vulnerability. The specific flaw exists within the win32kfull driver. The issue results from the lack of validating the existence of an object prior to performing operations on the ob... • https://msrc.microsoft.com/update-guide/vulnerability/CVE-2024-30082 • CWE-416: Use After Free •

CVSS: 10.0EPSS: 0%CPEs: 16EXPL: 0

11 Jun 2024 — Microsoft Message Queuing (MSMQ) Remote Code Execution Vulnerability Vulnerabilidad de ejecución remota de código de Microsoft Message Queuing (MSMQ) • https://msrc.microsoft.com/update-guide/vulnerability/CVE-2024-30080 • CWE-416: Use After Free •

CVSS: 8.8EPSS: 0%CPEs: 17EXPL: 4

11 Jun 2024 — Windows Wi-Fi Driver Remote Code Execution Vulnerability Vulnerabilidad de ejecución remota de código del controlador Wi-Fi de Windows • https://github.com/lvyitian/CVE-2024-30078- • CWE-20: Improper Input Validation •

CVSS: 9.0EPSS: 0%CPEs: 17EXPL: 0

11 Jun 2024 — Windows OLE Remote Code Execution Vulnerability Vulnerabilidad de ejecución remota de código OLE de Windows • https://msrc.microsoft.com/update-guide/vulnerability/CVE-2024-30077 • CWE-122: Heap-based Buffer Overflow •

CVSS: 6.8EPSS: 0%CPEs: 11EXPL: 0

11 Jun 2024 — Windows Container Manager Service Elevation of Privilege Vulnerability Vulnerabilidad de elevación de privilegios del servicio Windows Container Manager • https://msrc.microsoft.com/update-guide/vulnerability/CVE-2024-30076 • CWE-59: Improper Link Resolution Before File Access ('Link Following') •

CVSS: 4.7EPSS: 0%CPEs: 12EXPL: 0

11 Jun 2024 — Windows Remote Access Connection Manager Information Disclosure Vulnerability Vulnerabilidad de divulgación de información del Administrador de conexión de acceso remoto de Windows • https://msrc.microsoft.com/update-guide/vulnerability/CVE-2024-30069 • CWE-125: Out-of-bounds Read CWE-126: Buffer Over-read •

CVSS: 7.8EPSS: 0%CPEs: 12EXPL: 2

14 May 2024 — Windows DWM Core Library Elevation of Privilege Vulnerability Vulnerabilidad de elevación de privilegios de la librería principal DWM de Windows Microsoft DWM Core Library contains a privilege escalation vulnerability that allows an attacker to gain SYSTEM privileges. • https://packetstorm.news/files/id/181402 • CWE-122: Heap-based Buffer Overflow CWE-787: Out-of-bounds Write •

CVSS: 10.0EPSS: 0%CPEs: 13EXPL: 0

14 May 2024 — Windows MSHTML Platform Security Feature Bypass Vulnerability Vulnerabilidad de omisión de la característica de seguridad de la plataforma MSHTML de Windows Microsoft Windows MSHTML Platform contains an unspecified vulnerability that allows for a security feature bypass. • https://msrc.microsoft.com/update-guide/vulnerability/CVE-2024-30040 • CWE-20: Improper Input Validation CWE-203: Observable Discrepancy •