No results found for ""
Try different keywords or check spelling
Search in CVE database, posts & pages • Press ESC to close
Heap-based buffer overflow in Windows Cloud Files Mini Filter Driver allows an authorized attacker to elevate privileges locally....
Published: Jan 13, 2026
CVSS
Out-of-bounds read in Windows NDIS allows an authorized attacker to disclose information with a physical attack....
Published: Jan 13, 2026
CVSS
External control of file name or path in Windows Telephony Service allows an authorized attacker to elevate privileges over an adjacent network....
Published: Jan 13, 2026
CVSS
Improper access control in Windows HTTP.sys allows an authorized attacker to elevate privileges over a network....
Published: Jan 13, 2026
CVSS
Concurrent execution using shared resource with improper synchronization ('race condition') in Windows SMB Server allows an authorized attacker to deny service over a network....
Published: Jan 13, 2026
CVSS
External control of file name or path in Windows NTLM allows an unauthorized attacker to perform spoofing over a network....
Published: Jan 13, 2026
CVSS
Heap-based buffer overflow in Windows NTFS allows an authorized attacker to execute code locally....
Published: Jan 13, 2026
CVSS
Concurrent execution using shared resource with improper synchronization ('race condition') in Windows SMB Server allows an authorized attacker to elevate privileges over a network....
Published: Jan 13, 2026
CVSS
Null pointer dereference in Windows Local Security Authority Subsystem Service (LSASS) allows an unauthorized attacker to deny service over a network....
Published: Jan 13, 2026
CVSS
External control of file name or path in Windows NTLM allows an unauthorized attacker to perform spoofing over a network....
Published: Jan 13, 2026
CVSS
Concurrent execution using shared resource with improper synchronization ('race condition') in Windows Local Session Manager (LSM) allows an authorized attacker to elevate privileges locally....
Published: Jan 13, 2026
CVSS
Heap-based buffer overflow in Windows Routing and Remote Access Service (RRAS) allows an unauthorized attacker to execute code over a network....
Published: Jan 13, 2026
CVSS
Access of resource using incompatible type ('type confusion') in Windows Ancillary Function Driver for WinSock allows an authorized attacker to elevate privileges locally....
Published: Jan 13, 2026
CVSS
Reliance on untrusted inputs in a security decision in Windows Kerberos allows an authorized attacker to elevate privileges over a network....
Published: Jan 13, 2026
CVSS
Exposure of sensitive information to an unauthorized actor in Windows Shell allows an authorized attacker to perform spoofing over a network....
Published: Jan 13, 2026
CVSS
Improper access control in Windows Routing and Remote Access Service (RRAS) allows an authorized attacker to elevate privileges locally....
Published: Jan 13, 2026
CVSS
Heap-based buffer overflow in Windows NTFS allows an authorized attacker to execute code locally....
Published: Jan 13, 2026
CVSS
Improper access control in Windows Client-Side Caching (CSC) Service allows an authorized attacker to disclose information locally....
Published: Jan 13, 2026
CVSS
Absolute path traversal in Windows Shell allows an unauthorized attacker to perform spoofing with a physical attack....
Published: Jan 13, 2026
CVSS
Use of a broken or risky cryptographic algorithm in Windows Kerberos allows an authorized attacker to disclose information locally....
Published: Jan 13, 2026
CVSS
Time-of-check time-of-use (toctou) race condition in Windows Ancillary Function Driver for WinSock allows an authorized attacker to elevate privileges locally....
Published: Jan 13, 2026
CVSS
Out-of-bounds read in Windows Internet Connection Sharing (ICS) allows an unauthorized attacker to disclose information with a physical attack....
Published: Jan 13, 2026
CVSS
Exposure of sensitive information to an unauthorized actor in Windows Remote Procedure Call allows an unauthorized attacker to disclose information locally....
Published: Jan 13, 2026
CVSS
Heap-based buffer overflow in Windows Common Log File System Driver allows an authorized attacker to elevate privileges locally....
Published: Jan 13, 2026
CVSS
Time-of-check time-of-use (toctou) race condition in Windows Installer allows an authorized attacker to elevate privileges locally....
Published: Jan 13, 2026
CVSS
Improper access control in Windows Deployment Services allows an unauthorized attacker to execute code over an adjacent network....
Published: Jan 13, 2026
CVSS
Heap-based buffer overflow in Windows Routing and Remote Access Service (RRAS) allows an unauthorized attacker to execute code over a network....
Published: Dec 9, 2025
CVSS
Improper input validation in Windows Installer allows an authorized attacker to elevate privileges locally....
Published: Dec 9, 2025
CVSS
Untrusted pointer dereference in Windows Routing and Remote Access Service (RRAS) allows an unauthorized attacker to execute code over a network....
Published: Dec 9, 2025
CVSS
Improper access control in Windows Remote Access Connection Manager allows an authorized attacker to elevate privileges locally....
Published: Dec 9, 2025
CVSS
Buffer over-read in Windows Routing and Remote Access Service (RRAS) allows an unauthorized attacker to disclose information over a network....
Published: Dec 9, 2025
CVSS
Use of uninitialized resource in Windows Remote Access Connection Manager allows an authorized attacker to elevate privileges locally....
Published: Dec 9, 2025
CVSS
Heap-based buffer overflow in Windows Common Log File System Driver allows an authorized attacker to elevate privileges locally....
Published: Dec 9, 2025
CVSS
Null pointer dereference in Windows Client-Side Caching (CSC) Service allows an authorized attacker to elevate privileges locally....
Published: Dec 9, 2025
CVSS
Heap-based buffer overflow in Windows Win32K - GRFX allows an authorized attacker to elevate privileges locally....
Published: Dec 9, 2025
CVSS
Improper input validation in Windows Message Queuing allows an authorized attacker to elevate privileges locally....
Published: Dec 9, 2025
CVSS
Improper neutralization of special elements used in a command ('command injection') in Windows PowerShell allows an unauthorized attacker to execute code locally....
Published: Dec 9, 2025
CVSS
Heap-based buffer overflow in Windows Routing and Remote Access Service (RRAS) allows an authorized attacker to execute code over a network....
Published: Nov 11, 2025
CVSS
Concurrent execution using shared resource with improper synchronization ('race condition') in Windows Ancillary Function Driver for WinSock allows an authorized attacker to elevate privileges locally...
Published: Nov 11, 2025
CVSS
Use after free in Windows Ancillary Function Driver for WinSock allows an authorized attacker to elevate privileges locally....
Published: Nov 11, 2025
CVSS
Heap-based buffer overflow in Microsoft Graphics Component allows an unauthorized attacker to execute code over a network....
Published: Nov 11, 2025
CVSS
Buffer over-read in Windows TDX.sys allows an authorized attacker to elevate privileges locally....
Published: Nov 11, 2025
CVSS
Untrusted pointer dereference in Windows Ancillary Function Driver for WinSock allows an authorized attacker to elevate privileges locally....
Published: Nov 11, 2025
CVSS
Heap-based buffer overflow in Windows Routing and Remote Access Service (RRAS) allows an authorized attacker to execute code over a network....
Published: Nov 11, 2025
CVSS
Heap-based buffer overflow in Windows OLE allows an unauthorized attacker to execute code locally....
Published: Nov 11, 2025
CVSS
Out-of-bounds read in Windows Common Log File System Driver allows an authorized attacker to elevate privileges locally....
Published: Nov 11, 2025
CVSS
Improper access control in Windows Client-Side Caching (CSC) Service allows an authorized attacker to elevate privileges locally....
Published: Nov 11, 2025
CVSS
Missing cryptographic step in Windows Kerberos allows an unauthorized attacker to elevate privileges over a network....
Published: Nov 11, 2025
CVSS
Untrusted pointer dereference in Windows Remote Desktop allows an authorized attacker to elevate privileges locally....
Published: Nov 11, 2025
CVSS
Improper privilege management in Microsoft Streaming Service allows an authorized attacker to elevate privileges locally....
Published: Nov 11, 2025
CVSS