4628 vulnerabilidades · Windows Orden: CVSS EPSS Año ID
CVE-2025-21224
Windows 10 Version 21H2 Windows
8.1
HIGH
EPSS
0.5%
2025 CWE-591 2 PoCs

Windows Line Printer Daemon (LPD) Service Remote Code Execution Vulnerability

CVE-2025-32710
Windows Server 2008 R2 Service Pack 1 Windows
8.1
HIGH
EPSS
0.7%
2025 CWE-416 1 PoC

Use after free in Windows Remote Desktop Services allows an unauthorized attacker to execute code over a network.

CVE-2020-36659
Software Genérico Web Windows
8.1
HIGH
EPSS
0.3%
2020 1 PoC

In Apache::Session::Browseable before 1.3.6, validity of the X.509 certificate is not checked by default when connecting to remote LDAP backends, because the default configuration of the Net::LDAPS module for Perl is used. NOTE: this can, for example, be fixed in conjunction with the CVE-2020-16093 fix.

CVE-2020-36658
Software Genérico Web Windows
8.1
HIGH
EPSS
0.2%
2020 1 PoC

In Apache::Session::LDAP before 0.5, validity of the X.509 certificate is not checked by default when connecting to remote LDAP backends, because the default configuration of the Net::LDAPS module for Perl is used. NOTE: this can, for example, be fixed in conjunction with the CVE-2020-16093 fix.

CVE-2020-0601
🔥 KEV Windows Web Windows
8.1
HIGH
EPSS
94.1%
2020 23 PoCs

A spoofing vulnerability exists in the way Windows CryptoAPI (Crypt32.dll) validates Elliptic Curve Cryptography (ECC) certificates.An attacker could exploit the vulnerability by using a spoofed code-signing certificate to sign a malicious executable, making it appear the file was from a trusted, legitimate source, aka 'Windows CryptoAPI Spoofing Vulnerability'.

CVE-2016-2123
samba Windows
8.1
HIGH
EPSS
0.9%
2016 CWE-122 1 PoC

A flaw was found in samba versions 4.0.0 to 4.5.2. The Samba routine ndr_pull_dnsp_name contains an integer wrap problem, leading to an attacker-controlled memory overwrite. ndr_pull_dnsp_name parses data from the Samba Active Directory ldb database. Any user who can write to the dnsRecord attribute over LDAP can trigger this memory corruption. By default, all authenticated LDAP users can write to the dnsRecord attribute on new DNS objects. This makes the defect a remote privilege escalation.

CVE-2011-0346
Software Genérico Windows
8.1
HIGH
EPSS
60.7%
2011 1 PoC

Use-after-free vulnerability in the ReleaseInterface function in MSHTML.DLL in Microsoft Internet Explorer 6, 7, and 8 allows remote attackers to execute arbitrary code or cause a denial of service (application crash) via vectors related to the DOM implementation and the BreakAASpecial and BreakCircularMemoryReferences functions, as demonstrated by cross_fuzz, aka "MSHTML Memory Corruption Vulnerability."

CVE-2022-3360
LearnPress – WordPress LMS Plugin Web Windows
8.1
HIGH
EPSS
16.5%
2022 CWE-502 1 PoC

The LearnPress WordPress plugin before 4.1.7.2 unserialises user input in a REST API endpoint available to unauthenticated users, which could lead to PHP Object Injection when a suitable gadget is present, leadint to remote code execution (RCE). To successfully exploit this vulnerability attackers must have knowledge of the site secrets, allowing them to generate a valid hash via the wp_hash() function.

CVE-2022-22029
Windows Server 2019 Windows
8.1
HIGH
EPSS
3.8%
2022 1 PoC

Windows Network File System Remote Code Execution Vulnerability

CVE-2022-3899
3dprint Web Windows
8.1
HIGH
EPSS
0.1%
2022 1 PoC

The 3dprint WordPress plugin before 3.5.6.9 does not protect against CSRF attacks in the modified version of Tiny File Manager included with the plugin, allowing an attacker to craft a malicious request that will delete any number of files or directories on the target server by tricking a logged in admin into submitting a form.

CVE-2022-3763
Booster for WooCommerce Web Windows
8.1
HIGH
EPSS
0.2%
2022 1 PoC

The Booster for WooCommerce WordPress plugin before 5.6.7, Booster Plus for WooCommerce WordPress plugin before 5.6.5, Booster Elite for WooCommerce WordPress plugin before 1.1.7 do not have CSRF check in place when deleting files uploaded at the checkout, allowing attackers to make a logged in shop manager or admin delete them via a CSRF attack

CVE-2022-47943
Software Genérico Windows
8.1
HIGH
EPSS
1.3%
2022 1 PoC

An issue was discovered in ksmbd in the Linux kernel 5.15 through 5.19 before 5.19.2. There is an out-of-bounds read and OOPS for SMB2_WRITE, when there is a large length in the zero DataOffset case.

CVE-2022-24545
Windows 10 Version 1809 Windows
8.1
HIGH
EPSS
4.1%
2022 1 PoC

Windows Kerberos Remote Code Execution Vulnerability

CVE-2022-21936
Software Genérico Windows
8.1
HIGH
EPSS
0.2%
2022 1 PoC

On Metasys ADX Server version 12.0 running MVE, an Active Directory user could execute validated actions without providing a valid password when using MVE SMP UI.

CVE-2022-23270
Windows 10 Version 1809 Windows
8.1
HIGH
EPSS
48.4%
2022 1 PoC

Windows Point-to-Point Tunneling Protocol Remote Code Execution Vulnerability

CVE-2022-2431
Download Manager Web Windows
8.1
HIGH
EPSS
17.1%
2022 CWE-73 1 PoC

The Download Manager plugin for WordPress is vulnerable to arbitrary file deletion in versions up to, and including 3.2.50. This is due to insufficient file type and path validation on the deleteFiles() function found in the ~/Admin/Menu/Packages.php file that triggers upon download post deletion. This makes it possible for contributor level users and above to supply an arbitrary file path via the 'file[files]' parameter when creating a download post and once the user deletes the post the supplied arbitrary file will be deleted. This can be used by attackers to delete the /wp-config.php file w

CVE-2022-39424
VM VirtualBox Database Windows
8.1
HIGH
EPSS
6.8%
2022 1 PoC

Vulnerability in the Oracle VM VirtualBox product of Oracle Virtualization (component: Core). Supported versions that are affected are Prior to 6.1.40. Difficult to exploit vulnerability allows unauthenticated attacker with network access via VRDP to compromise Oracle VM VirtualBox. Successful attacks of this vulnerability can result in takeover of Oracle VM VirtualBox. CVSS 3.1 Base Score 8.1 (Confidentiality, Integrity and Availability impacts). CVSS Vector: (CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:H/A:H).

CVE-2022-47940
Software Genérico Windows
8.1
HIGH
EPSS
1.1%
2022 1 PoC

An issue was discovered in ksmbd in the Linux kernel 5.15 through 5.18 before 5.18.18. fs/ksmbd/smb2pdu.c lacks length validation in the non-padding case in smb2_write.

CVE-2022-3999
DPD Baltic Shipping Web Windows
8.1
HIGH
EPSS
0.2%
2022 1 PoC

The DPD Baltic Shipping WordPress plugin before 1.2.57 does not have authorisation and CSRF in an AJAX action, which could allow any authenticated users, such as subscriber to delete arbitrary options from the blog, which could make the blog unavailable.