CVE |
Vendors |
Products |
Updated |
CVSS v3.1 |
Improper access control in Windows Hyper-V allows an authorized attacker to elevate privileges locally. |
Improper resolution of path equivalence in Windows MapUrlToZone allows an unauthorized attacker to bypass a security feature over a network. |
Access of resource using incompatible type ('type confusion') in Windows Defender Firewall Service allows an authorized attacker to elevate privileges locally. |
Use after free in Windows Connected Devices Platform Service allows an authorized attacker to elevate privileges locally. |
Improper authentication in Windows NTLM allows an authorized attacker to elevate privileges over a network. |
Protection mechanism failure in Windows MapUrlToZone allows an unauthorized attacker to bypass a security feature over a network. |
Stack-based buffer overflow in Windows NTFS allows an authorized attacker to execute code locally. |
Access of resource using incompatible type ('type confusion') in Windows Defender Firewall Service allows an authorized attacker to elevate privileges locally. |
Concurrent execution using shared resource with improper synchronization ('race condition') in Windows UI XAML Maps MapControlSettings allows an authorized attacker to elevate privileges locally. |
Use after free in Windows BitLocker allows an authorized attacker to elevate privileges locally. |
Access of resource using incompatible type ('type confusion') in Windows Defender Firewall Service allows an authorized attacker to elevate privileges locally. |
Use after free in Microsoft Virtual Hard Drive allows an authorized attacker to elevate privileges locally. |
Use after free in Windows UI XAML Phone DatePickerFlyout allows an authorized attacker to elevate privileges locally. |
Integer overflow or wraparound in Windows Kernel allows an authorized attacker to elevate privileges locally. |
Untrusted pointer dereference in Windows MBT Transport driver allows an authorized attacker to elevate privileges locally. |
Improper verification of cryptographic signature in Windows Certificates allows an unauthorized attacker to perform spoofing over a network. |
Heap-based buffer overflow in Kernel Streaming WOW Thunk Service Driver allows an authorized attacker to elevate privileges locally. |
Heap-based buffer overflow in Windows SPNEGO Extended Negotiation allows an unauthorized attacker to execute code over a network. |
Improper link resolution before file access ('link following') in Windows Update Service allows an authorized attacker to elevate privileges locally. |
Exposure of sensitive information to an unauthorized actor in Windows File Explorer allows an unauthorized attacker to perform spoofing over a network. |