11328 vulnerabilidades · Windows Orden: CVSS EPSS Año ID
CVE-2023-5097
Workforce Access Windows
7.0
HIGH
EPSS
0.1%
2023 CWE-22 1 PoC

Improper Input Validation vulnerability in HYPR Workforce Access on Windows allows Path Traversal.This issue affects Workforce Access: before 8.7.

CVE-2010-5159
Software Genérico Windows
7.0
HIGH
EPSS
0.1%
2010 3 PoCs

Race condition in Dr.Web Security Space Pro 6.0.0.03100 on Windows XP allows local users to bypass kernel-mode hook handlers, and execute dangerous code that would otherwise be blocked by a handler but not blocked by signature-based malware detection, via certain user-space memory changes during hook-handler execution, aka an argument-switch attack or a KHOBE attack. NOTE: this issue is disputed by some third parties because it is a flaw in a protection mechanism for situations where a crafted program has already begun to execute

CVE-2025-9491
Windows Windows
7.0
HIGH
EPSS
0.4%
2025 CWE-451 1 PoC

Microsoft Windows LNK File UI Misrepresentation Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected installations of Microsoft Windows. User interaction is required to exploit this vulnerability in that the target must visit a malicious page or open a malicious file. The specific flaw exists within the handling of .LNK files. Crafted data in an .LNK file can cause hazardous content in the file to be invisible to a user who inspects the file via the Windows-provided user interface. An attacker can leverage this vulnerability to

CVE-2023-36403
Windows 10 Version 1809 Windows
7.0
HIGH
EPSS
0.2%
2023 CWE-591 1 PoC

Windows Kernel Elevation of Privilege Vulnerability

CVE-2024-50592
Elefant Software Updater Windows
7.0
HIGH
EPSS
0.1%
2024 CWE-367 2 PoCs

An attacker with local access the to medical office computer can escalate his Windows user privileges to "NT AUTHORITY\SYSTEM" by exploiting a race condition in the Elefant Update Service during the repair or update process. When using the repair function, the service queries the server for a list of files and their hashes. In addition, instructions to execute binaries to finalize the repair process are included. The executables are executed as "NT AUTHORITY\SYSTEM" after they are copied over to the user writable installation folder (C:\Elefant1). This means that a user can overwrite ei

CVE-2024-30090
Windows 10 Version 1809 Windows
7.0
HIGH
EPSS
20.9%
2024 CWE-822 1 PoC

Microsoft Streaming Service Elevation of Privilege Vulnerability

CVE-2018-8120
🔥 KEV Windows Server 2008 Windows
7.0
HIGH
EPSS
94.1%
2018 14 PoCs

An elevation of privilege vulnerability exists in Windows when the Win32k component fails to properly handle objects in memory, aka "Win32k Elevation of Privilege Vulnerability." This affects Windows Server 2008, Windows 7, Windows Server 2008 R2. This CVE ID is unique from CVE-2018-8124, CVE-2018-8164, CVE-2018-8166.

CVE-2019-16784
PyInstaller Windows
7.0
HIGH
EPSS
3.2%
2019 CWE-250 1 PoC

In PyInstaller before version 3.6, only on Windows, a local privilege escalation vulnerability is present in this particular case: If a software using PyInstaller in "onefile" mode is launched by a privileged user (at least more than the current one) which have his "TempPath" resolving to a world writable directory. This is the case for example if the software is launched as a service or as a scheduled task using a system account (TempPath will be C:\Windows\Temp). In order to be exploitable the software has to be (re)started after the attacker launch the exploit program, so for a service laun

CVE-2021-26863
Windows 10 Version 1803 Windows
7.0
HIGH
EPSS
0.2%
2021 1 PoC

Windows Win32k Elevation of Privilege Vulnerability

CVE-2025-59105
Access Manager 92xx-k5 Networking Database Windows
7.0
HIGH
EPSS
0.0%
2025 CWE-312 2 PoCs

With physical access to the device and enough time an attacker can desolder the flash memory, modify it and then reinstall it because of missing encryption. Thus, essential files, such as "/etc/passwd", as well as stored certificates, cryptographic keys, stored PINs and so on can be modified and read, in order to gain SSH root access on the Linux-based K7 model. On the Windows CE based K5 model, the password for the Access Manager can additionally be read in plain text from the stored SQLite database.

CVE-2023-28218
Windows 10 Version 1809 Windows
7.0
HIGH
EPSS
30.4%
2023 CWE-122 1 PoC

Windows Ancillary Function Driver for WinSock Elevation of Privilege Vulnerability

CVE-2023-36427
Windows 10 Version 1809 Windows
7.0
HIGH
EPSS
9.9%
2023 1 PoC

Windows Hyper-V Elevation of Privilege Vulnerability

CVE-2025-9267
Toolkit Windows
7.0
HIGH
EPSS
0.0%
2025 CWE-427 1 PoC

In Seagate Toolkit on Windows a vulnerability exists in the Toolkit Installer prior to versions 2.35.0.6 where it attempts to load DLLs from the current working directory without validating their origin or integrity. This behavior can be exploited by placing a malicious DLL in the same directory as the installer executable, leading to arbitrary code execution with the privileges of the user running the installer. The issue stems from the use of insecure DLL loading practices, such as relying on relative paths or failing to specify fully qualified paths when invoking system libraries.

CVE-2023-21739
Windows 10 Version 1809 Windows
7.0
HIGH
EPSS
0.4%
2023 CWE-591 1 PoC

Windows Bluetooth Driver Elevation of Privilege Vulnerability

CVE-2019-3585
McAfee VirusScan Enterprise (VSE) Windows
7.0
HIGH
EPSS
0.0%
2019 CWE-269 1 PoC

Privilege Escalation vulnerability in Microsoft Windows client (McTray.exe) in McAfee VirusScan Enterprise (VSE) 8.8 prior to Patch 14 may allow local users to interact with the On-Access Scan Messages - Threat Alert Window with elevated privileges via running McAfee Tray with elevated privileges.

CVE-2022-41114
Windows 10 Version 21H1 Windows
7.0
HIGH
EPSS
0.6%
2022 1 PoC

Windows Bind Filter Driver Elevation of Privilege Vulnerability

CVE-2025-54115
Windows 10 Version 1809 Windows
7.0
HIGH
EPSS
0.1%
2025 CWE-362 2 PoCs

Concurrent execution using shared resource with improper synchronization ('race condition') in Windows Hyper-V allows an authorized attacker to elevate privileges locally.

CVE-2019-1041
Windows 10 Version 1803 Windows
7.0
HIGH
EPSS
0.2%
2019 1 PoC

An elevation of privilege vulnerability exists when the Windows kernel fails to properly handle objects in memory. An attacker who successfully exploited this vulnerability could run arbitrary code in kernel mode. An attacker could then install programs; view, change, or delete data; or create new accounts with full user rights. To exploit this vulnerability, an attacker would first have to log on to the system. An attacker could then run a specially crafted application to take control of an affected system. The update addresses the vulnerability by correcting how the Windows kernel handles ob

CVE-2025-34501
Deck Mate 2 Web Networking Windows
7.0
HIGH
EPSS
0.0%
2025 CWE-798 1 PoC

Deck Mate 2 is distributed with static, hard-coded credentials for the root shell and web user interface, while multiple management services (SSH, HTTP, Telnet, SMB, X11) are enabled by default. If an attacker can reach these interfaces - most often through local or near-local access such as connecting to the USB or Ethernet ports beneath the table - the built-in credentials permit administrative login and full control of the system. Once authenticated, an attacker can access firmware utilities, modify controller software, and establish persistent compromise. Remote attack paths via network, c