11328 vulnerabilidades · Windows Orden: CVSS EPSS Año ID
CVE-2023-21675
Windows 10 Version 1809 Windows
7.8
HIGH
EPSS
1.0%
2023 CWE-843 1 PoC

Windows Kernel Elevation of Privilege Vulnerability

CVE-2020-1474
Windows 10 Version 2004 Windows
7.8
HIGH
EPSS
0.8%
2020 1 PoC

An information disclosure vulnerability exists when the Windows Image Acquisition (WIA) Service improperly discloses contents of its memory. An attacker who successfully exploited the vulnerability could obtain information to further compromise the user’s system. To exploit the vulnerability, an authenticated attacker could connect an imaging device (camera, scanner, cellular phone) to an affected system and run a specially crafted application to disclose information. The security update addresses the vulnerability by correcting how the WIA Service handles objects in memory.

CVE-2023-23422
Windows 10 Version 1809 Windows
7.8
HIGH
EPSS
1.1%
2023 1 PoC

Windows Kernel Elevation of Privilege Vulnerability

CVE-2023-5345
Kernel Windows
7.8
HIGH
EPSS
0.0%
2023 CWE-416 1 PoC

A use-after-free vulnerability in the Linux kernel's fs/smb/client component can be exploited to achieve local privilege escalation. In case of an error in smb3_fs_context_parse_param, ctx->password was freed but the field was not set to NULL which could lead to double free. We recommend upgrading past commit e6e43b8aa7cd3c3af686caf0c2e11819a886d705.

CVE-2020-7289
McAfee Active Response (MAR) for Windows Windows
7.8
HIGH
EPSS
0.0%
2020 CWE-274 1 PoC

Privilege Escalation vulnerability in McAfee Active Response (MAR) for Windows prior to 2.4.3 Hotfix 1 allows a malicious script or program to perform functions that the local executing user has not been granted access to.

CVE-2020-7311
MA for Windows Windows
7.8
HIGH
EPSS
0.0%
2020 CWE-269 1 PoC

Privilege Escalation vulnerability in the installer in McAfee Agent (MA) for Windows prior to 5.6.6 allows local users to assume SYSTEM rights during the installation of MA via manipulation of log files.

CVE-2025-57836
Software Genérico Windows
7.8
HIGH
EPSS
0.0%
2025 2 PoCs

An issue was discovered in Samsung Magician 6.3.0 through 8.3.2 on Windows. The installer creates a temporary folder with weak permissions during installation, allowing a non-admin user to perform DLL hijacking and escalate privileges.

CVE-2021-42954
Software Genérico Windows
7.8
HIGH
EPSS
0.0%
2021 1 PoC

Zoho Remote Access Plus Server Windows Desktop Binary fixed from 10.1.2121.1 is affected by incorrect access control. The installation directory is vulnerable to weak file permissions by allowing full control for Windows Everyone user group (non-admin or any guest users), thereby allowing privilege escalation, unauthorized password reset, stealing of sensitive data, access to credentials in plaintext, access to registry values, tampering with configuration files, etc.

CVE-2025-32709
🔥 KEV Windows 10 Version 1507 Windows
7.8
HIGH
EPSS
0.8%
2025 CWE-416 1 PoC

Null pointer dereference in Windows Ancillary Function Driver for WinSock allows an authorized attacker to elevate privileges locally.

CVE-2025-47987
Windows 10 Version 1507 Windows
7.8
HIGH
EPSS
5.5%
2025 CWE-122 1 PoC

Heap-based buffer overflow in Windows Cred SSProvider Protocol allows an authorized attacker to elevate privileges locally.

CVE-2004-0210
🔥 KEV Software Genérico Windows
7.8
HIGH
EPSS
6.8%
2004 1 PoC

The POSIX component of Microsoft Windows NT and Windows 2000 allows local users to execute arbitrary code via certain parameters, possibly by modifying message length values and causing a buffer overflow.

CVE-2021-38639
Windows 10 Version 1809 Windows
7.8
HIGH
EPSS
0.8%
2021 1 PoC

Win32k Elevation of Privilege Vulnerability

CVE-2023-29336
🔥 KEV Windows 10 Version 1507 Windows
7.8
HIGH
EPSS
79.5%
2023 CWE-416 2 PoCs

Win32k Elevation of Privilege Vulnerability

CVE-2023-28248
Windows 10 Version 1809 Windows
7.8
HIGH
EPSS
0.4%
2023 CWE-190 1 PoC

Windows Kernel Elevation of Privilege Vulnerability

CVE-2020-1337
Windows 10 Version 2004 Windows
7.8
HIGH
EPSS
55.3%
2020 8 PoCs

An elevation of privilege vulnerability exists when the Windows Print Spooler service improperly allows arbitrary writing to the file system. An attacker who successfully exploited this vulnerability could run arbitrary code with elevated system privileges. An attacker could then install programs; view, change, or delete data; or create new accounts with full user rights. To exploit this vulnerability, an attacker would have to log on to an affected system and run a specially crafted script or application. The update addresses the vulnerability by correcting how the Windows Print Spooler Compo

CVE-2019-1215
🔥 KEV Windows Windows
7.8
HIGH
EPSS
5.2%
2019 1 PoC

An elevation of privilege vulnerability exists in the way that ws2ifsl.sys (Winsock) handles objects in memory, aka 'Windows Elevation of Privilege Vulnerability'. This CVE ID is unique from CVE-2019-1253, CVE-2019-1278, CVE-2019-1303.

CVE-2020-1522
Windows 10 Version 1803 Windows
7.8
HIGH
EPSS
0.4%
2020 1 PoC

An elevation of privilege vulnerability exists when the Windows Speech Runtime improperly handles memory. To exploit this vulnerability, an attacker would first have to gain execution on the victim system. An attacker could then run a specially crafted application to elevate privileges. The security update addresses the vulnerability by correcting how the Windows Speech Runtime handles memory.

CVE-2024-50591
Elefant Software Updater Windows
7.8
HIGH
EPSS
0.4%
2024 CWE-77 2 PoCs

An attacker with local access the to medical office computer can escalate his Windows user privileges to "NT AUTHORITY\SYSTEM" by exploiting a command injection vulnerability in the Elefant Update Service. The command injection can be exploited by communicating with the Elefant Update Service which is running as "SYSTEM" via Windows Named Pipes.The Elefant Software Updater (ESU) consists of two components. An ESU service which runs as "NT AUTHORITY\SYSTEM" and an ESU tray client which communicates with the service to update or repair the installation and is running with user permission