1238 vulnerabilidades · Windows Orden: CVSS EPSS Año ID
CVE-2023-21774
Windows 10 Version 1809 Windows
7.8
HIGH
EPSS
2.0%
2023 CWE-416 1 PoC

Windows Kernel Elevation of Privilege Vulnerability

CVE-2023-35382
Windows 10 Version 1809 Windows
7.8
HIGH
EPSS
2.0%
2023 CWE-416 1 PoC

Windows Kernel Elevation of Privilege Vulnerability

CVE-2023-32046
🔥 KEV Windows 10 Version 1809 Windows
7.8
HIGH
EPSS
42.7%
2023 1 PoC

Windows MSHTML Platform Elevation of Privilege Vulnerability

CVE-2023-21823
🔥 KEV Microsoft Office for Android Windows
7.8
HIGH
EPSS
5.0%
2023 CWE-190 1 PoC

Windows Graphics Component Remote Code Execution Vulnerability

CVE-2023-36407
Windows Server 2022 Windows
7.8
HIGH
EPSS
15.2%
2023 CWE-20 2 PoCs

Windows Hyper-V Elevation of Privilege Vulnerability

CVE-2023-30237
Software Genérico Networking Windows
7.8
HIGH
EPSS
0.0%
2023 2 PoCs

CyberGhostVPN Windows Client before v8.3.10.10015 was discovered to contain a DLL injection vulnerability via the component Dashboard.exe.

CVE-2023-38154
Windows 10 Version 1809 Windows
7.8
HIGH
EPSS
0.2%
2023 CWE-122 1 PoC

Windows Kernel Elevation of Privilege Vulnerability

CVE-2023-21772
Windows 10 Version 1809 Windows
7.8
HIGH
EPSS
2.0%
2023 CWE-125 1 PoC

Windows Kernel Elevation of Privilege Vulnerability

CVE-2023-23421
Windows 10 Version 1809 Windows
7.8
HIGH
EPSS
1.0%
2023 CWE-416 1 PoC

Windows Kernel Elevation of Privilege Vulnerability

CVE-2023-21537
Windows 10 Version 1809 Windows
7.8
HIGH
EPSS
0.4%
2023 CWE-367 1 PoC

Microsoft Message Queuing (MSMQ) Elevation of Privilege Vulnerability

CVE-2023-21675
Windows 10 Version 1809 Windows
7.8
HIGH
EPSS
1.0%
2023 CWE-843 1 PoC

Windows Kernel Elevation of Privilege Vulnerability

CVE-2023-5345
Kernel Windows
7.8
HIGH
EPSS
0.0%
2023 CWE-416 1 PoC

A use-after-free vulnerability in the Linux kernel's fs/smb/client component can be exploited to achieve local privilege escalation. In case of an error in smb3_fs_context_parse_param, ctx->password was freed but the field was not set to NULL which could lead to double free. We recommend upgrading past commit e6e43b8aa7cd3c3af686caf0c2e11819a886d705.

CVE-2023-36424
🔥 KEV Windows 11 version 22H3 Windows
7.8
HIGH
EPSS
8.0%
2023 CWE-125 2 PoCs

Windows Common Log File System Driver Elevation of Privilege Vulnerability

CVE-2023-24068
Software Genérico Windows
7.8
HIGH
EPSS
0.1%
2023 1 PoC

Signal Desktop before 6.2.0 on Windows, Linux, and macOS allows an attacker to modify conversation attachments within the attachments.noindex directory. Client mechanisms fail to validate modifications of existing cached files, resulting in an attacker's ability to insert malicious code into pre-existing attachments or replace them completely. A threat actor can forward the existing attachment in the corresponding conversation to external groups, and the name and size of the file will not change, allowing the malware to masquerade as another file. NOTE: the vendor disputes the relevance of thi

CVE-2023-31017
NVIDIA GPU Display driver, vGPU driver, and Cloud gaming driver Cloud Windows
7.8
HIGH
EPSS
0.0%
2023 CWE-552 1 PoC

NVIDIA GPU Display Driver for Windows contains a vulnerability where an attacker may be able to write arbitrary data to privileged locations by using reparse points. A successful exploit of this vulnerability may lead to code execution, denial of service, escalation of privileges, information disclosure, or data tampering.

CVE-2023-41772
Windows 10 Version 1809 Windows
7.8
HIGH
EPSS
19.5%
2023 CWE-284 1 PoC

Win32k Elevation of Privilege Vulnerability

CVE-2023-7016
SafeNet Authentication Client Windows
7.8
HIGH
EPSS
0.1%
2023 CWE-269 1 PoC

A flaw in Thales SafeNet Authentication Client prior to 10.8 R10 on Windows allows an attacker to execute code at a SYSTEM level via local access.