2453 results (0.008 seconds)

CVSS: 7.1EPSS: 0%CPEs: 13EXPL: 3

Windows Backup Service Elevation of Privilege Vulnerability Vulnerabilidad de elevación de privilegios del servicio de copia de seguridad de Windows • https://www.exploit-db.com/exploits/51203 https://github.com/Wh04m1001/CVE-2023-21752 https://github.com/yosef0x01/CVE-2023-21752 https://msrc.microsoft.com/update-guide/vulnerability/CVE-2023-21752 • CWE-284: Improper Access Control •

CVSS: 7.1EPSS: 0%CPEs: 22EXPL: 0

Windows Print Spooler Elevation of Privilege Vulnerability Vulnerabilidad de elevación de privilegios en la cola de impresión de Windows • https://msrc.microsoft.com/update-guide/vulnerability/CVE-2023-21760 • CWE-59: Improper Link Resolution Before File Access ('Link Following') •

CVSS: 7.8EPSS: 0%CPEs: 21EXPL: 0

Windows NTLM Elevation of Privilege Vulnerability • https://msrc.microsoft.com/update-guide/vulnerability/CVE-2023-21746 •

CVSS: 7.8EPSS: 0%CPEs: 17EXPL: 0

Windows Error Reporting Service Elevation of Privilege Vulnerability Vulnerabilidad de elevación de privilegios del servicio de informes de errores de Windows • https://msrc.microsoft.com/update-guide/vulnerability/CVE-2023-21558 • CWE-20: Improper Input Validation •

CVSS: 7.5EPSS: 0%CPEs: 15EXPL: 0

Windows Internet Key Exchange (IKE) Extension Denial of Service Vulnerability Vulnerabilidad de denegación de servicio de extensión de intercambio de claves de Internet (IKE) de Windows This vulnerability allows remote attackers to create a denial-of-service condition on affected installations of Microsoft Windows. Authentication is not required to exploit this vulnerability. The specific flaw exists within the IKEEXT service, which listens on UDP ports 500 and 4500. A crafted Vendor ID payload can cause a null pointer dereference. An attacker can leverage this vulnerability to create a denial-of-service condition on the system. • https://msrc.microsoft.com/update-guide/vulnerability/CVE-2023-21758 • CWE-476: NULL Pointer Dereference •