4628 vulnerabilidades · Windows Orden: CVSS EPSS Año ID
CVE-2023-21747
Windows 10 Version 1809 Windows
7.8
HIGH
EPSS
0.4%
2023 CWE-416 1 PoC

Windows Kernel Elevation of Privilege Vulnerability

CVE-2023-24068
Software Genérico Windows
7.8
HIGH
EPSS
0.1%
2023 1 PoC

Signal Desktop before 6.2.0 on Windows, Linux, and macOS allows an attacker to modify conversation attachments within the attachments.noindex directory. Client mechanisms fail to validate modifications of existing cached files, resulting in an attacker's ability to insert malicious code into pre-existing attachments or replace them completely. A threat actor can forward the existing attachment in the corresponding conversation to external groups, and the name and size of the file will not change, allowing the malware to masquerade as another file. NOTE: the vendor disputes the relevance of thi

CVE-2023-7016
SafeNet Authentication Client Windows
7.8
HIGH
EPSS
0.1%
2023 CWE-269 1 PoC

A flaw in Thales SafeNet Authentication Client prior to 10.8 R10 on Windows allows an attacker to execute code at a SYSTEM level via local access.

CVE-2023-41772
Windows 10 Version 1809 Windows
7.8
HIGH
EPSS
19.5%
2023 CWE-284 1 PoC

Win32k Elevation of Privilege Vulnerability

CVE-2023-36407
Windows Server 2022 Windows
7.8
HIGH
EPSS
15.2%
2023 CWE-20 2 PoCs

Windows Hyper-V Elevation of Privilege Vulnerability

CVE-2023-3514
Razer Central Windows
7.8
HIGH
EPSS
0.1%
2023 CWE-269 1 PoC

Improper Privilege Control in RazerCentralSerivce Named Pipe in Razer RazerCentral <=7.11.0.558 on Windows allows a malicious actor with local access to gain SYSTEM privilege via communicating with the named pipe as a low-privilege user and calling "AddModule" or "UninstallModules" command to execute arbitrary executable file.

CVE-2023-35358
Windows 10 Version 1809 Windows
7.8
HIGH
EPSS
0.2%
2023 CWE-125 1 PoC

Windows Kernel Elevation of Privilege Vulnerability

CVE-2023-31017
NVIDIA GPU Display driver, vGPU driver, and Cloud gaming driver Cloud Windows
7.8
HIGH
EPSS
0.0%
2023 CWE-552 1 PoC

NVIDIA GPU Display Driver for Windows contains a vulnerability where an attacker may be able to write arbitrary data to privileged locations by using reparse points. A successful exploit of this vulnerability may lead to code execution, denial of service, escalation of privileges, information disclosure, or data tampering.

CVE-2023-21749
Windows 10 Version 1809 Windows
7.8
HIGH
EPSS
1.5%
2023 CWE-20 1 PoC

Windows Kernel Elevation of Privilege Vulnerability

CVE-2023-38139
Windows 10 Version 1809 Windows
7.8
HIGH
EPSS
0.5%
2023 CWE-416 1 PoC

Windows Kernel Elevation of Privilege Vulnerability

CVE-2023-28248
Windows 10 Version 1809 Windows
7.8
HIGH
EPSS
0.4%
2023 CWE-190 1 PoC

Windows Kernel Elevation of Privilege Vulnerability

CVE-2023-29336
🔥 KEV Windows 10 Version 1507 Windows
7.8
HIGH
EPSS
79.5%
2023 CWE-416 2 PoCs

Win32k Elevation of Privilege Vulnerability

CVE-2023-5345
Kernel Windows
7.8
HIGH
EPSS
0.0%
2023 CWE-416 1 PoC

A use-after-free vulnerability in the Linux kernel's fs/smb/client component can be exploited to achieve local privilege escalation. In case of an error in smb3_fs_context_parse_param, ctx->password was freed but the field was not set to NULL which could lead to double free. We recommend upgrading past commit e6e43b8aa7cd3c3af686caf0c2e11819a886d705.

CVE-2023-23422
Windows 10 Version 1809 Windows
7.8
HIGH
EPSS
1.1%
2023 1 PoC

Windows Kernel Elevation of Privilege Vulnerability

CVE-2023-21675
Windows 10 Version 1809 Windows
7.8
HIGH
EPSS
1.0%
2023 CWE-843 1 PoC

Windows Kernel Elevation of Privilege Vulnerability

CVE-2023-30237
Software Genérico Networking Windows
7.8
HIGH
EPSS
0.0%
2023 2 PoCs

CyberGhostVPN Windows Client before v8.3.10.10015 was discovered to contain a DLL injection vulnerability via the component Dashboard.exe.

CVE-2023-36424
🔥 KEV Windows 11 version 22H3 Windows
7.8
HIGH
EPSS
8.0%
2023 CWE-125 2 PoCs

Windows Common Log File System Driver Elevation of Privilege Vulnerability

CVE-2023-33240
Software Genérico Windows
7.8
HIGH
EPSS
0.1%
2023 1 PoC

Foxit PDF Reader (12.1.1.15289 and earlier) and Foxit PDF Editor (12.1.1.15289 and all previous 12.x versions, 11.2.5.53785 and all previous 11.x versions, and 10.1.11.37866 and earlier) on Windows allows Local Privilege Escalation when installed to a non-default directory because unprivileged users have access to an executable file of a system service. This is fixed in 12.1.2.

CVE-2023-35382
Windows 10 Version 1809 Windows
7.8
HIGH
EPSS
2.0%
2023 CWE-416 1 PoC

Windows Kernel Elevation of Privilege Vulnerability