CVE-2022-40733
- EPSS 0.41%
- Veröffentlicht 18.12.2024 23:15:07
- Zuletzt bearbeitet 26.08.2025 16:09:46
An access violation vulnerability exists in the DirectComposition functionality win32kbase.sys driver version 10.0.22000.593 as part of Windows 11 version 22000.593 and version 10.0.20348.643 as part of Windows Server 2022 version 20348.643. A specia...
CVE-2022-40732
- EPSS 0.41%
- Veröffentlicht 18.12.2024 23:15:07
- Zuletzt bearbeitet 26.08.2025 16:11:12
An access violation vulnerability exists in the DirectComposition functionality win32kbase.sys driver version 10.0.22000.593 as part of Windows 11 version 22000.593 and version 10.0.20348.643 as part of Windows Server 2022 version 20348.643. A specia...
CVE-2024-30164
- EPSS 0.05%
- Veröffentlicht 28.05.2024 17:15:10
- Zuletzt bearbeitet 21.11.2024 09:11:20
Amazon AWS Client VPN has a buffer overflow that could potentially allow a local actor to execute arbitrary commands with elevated permissions. This is resolved in 3.11.1 on Windows, 3.9.1 on macOS, and 3.12.1 on Linux. NOTE: although the macOS resol...
- EPSS 0.1%
- Veröffentlicht 27.03.2024 00:15:07
- Zuletzt bearbeitet 21.11.2024 03:22:50
Some Microsoft technologies as used in Windows 8 through 11 allow a temporary client-side performance degradation during processing of multiple Unicode combining characters, aka a "Zalgo text" attack. NOTE: third parties dispute whether the computati...
- EPSS 0.19%
- Veröffentlicht 10.03.2022 23:15:08
- Zuletzt bearbeitet 21.11.2024 06:38:17
A race condition vulnerability exists in the QuickClean feature of McAfee Total Protection for Windows prior to 16.0.43 that allows a local user to gain privilege elevation and perform an arbitrary file delete. This could lead to sensitive files bein...
CVE-2021-36958
- EPSS 4.71%
- Veröffentlicht 12.08.2021 18:15:10
- Zuletzt bearbeitet 24.02.2026 18:20:47
<p>A remote code execution vulnerability exists when the Windows Print Spooler service improperly performs privileged file operations. An attacker who successfully exploited this vulnerability could run arbitrary code with SYSTEM privileges. An attac...
CVE-2018-0599
- EPSS 2.94%
- Veröffentlicht 26.06.2018 14:29:01
- Zuletzt bearbeitet 21.11.2024 03:38:33
Untrusted search path vulnerability in the installer of Visual C++ Redistributable allows an attacker to gain privileges via a Trojan horse DLL in an unspecified directory.
CVE-2018-0598
- EPSS 13.88%
- Veröffentlicht 26.06.2018 14:29:01
- Zuletzt bearbeitet 21.11.2024 03:38:33
Untrusted search path vulnerability in Self-extracting archive files created by IExpress bundled with Microsoft Windows allows an attacker to gain privileges via a Trojan horse DLL in an unspecified directory.
CVE-2016-4158
- EPSS 1.64%
- Veröffentlicht 16.06.2016 14:59:40
- Zuletzt bearbeitet 12.04.2025 10:46:40
Unquoted Windows search path vulnerability in Adobe Creative Cloud Desktop Application before 3.7.0.272 on Windows allows local users to gain privileges via a Trojan horse executable file in the %SYSTEMDRIVE% directory.
- EPSS 2.41%
- Veröffentlicht 05.05.2016 18:59:12
- Zuletzt bearbeitet 12.04.2025 10:46:40
The McAfee VirusScan Console (mcconsol.exe) in McAfee VirusScan Enterprise 8.8.0 before Hotfix 1123565 (8.8.0.1546) on Windows allows local administrators to bypass intended self-protection rules and unlock the console window by closing registry hand...