Show filters
3,258 Total Results
Displaying 151-160 of 3,258
Sort by:
Attacker Value
Unknown

CVE-2021-43893

Disclosure Date: December 15, 2021 (last updated February 23, 2025)
Windows Encrypting File System (EFS) Elevation of Privilege Vulnerability
Attacker Value
Unknown

CVE-2013-3900

Disclosure Date: December 11, 2013 (last updated February 11, 2025)
Why is Microsoft republishing a CVE from 2013? We are republishing CVE-2013-3900 in the Security Update Guide to update the Security Updates table and to inform customers that the EnableCertPaddingCheck is available in all currently supported versions of Windows 10 and Windows 11. While the format is different from the original CVE published in 2013, except for clarifications about how to configure the EnableCertPaddingCheck registry value, the information herein remains unchanged from the original text published on December 10, 2013, Microsoft does not plan to enforce the stricter verification behavior as a default functionality on supported releases of Microsoft Windows. This behavior remains available as an opt-in feature via reg key setting, and is available on supported editions of Windows released since December 10, 2013. This includes all currently supported versions of Windows 10 and Windows 11. The supporting code for this reg key was incorporated at the time of release for W…
Attacker Value
Unknown

MS15-134 Microsoft Office COM Object DLL Planting with els.dll

Disclosure Date: December 09, 2015 (last updated October 05, 2023)
Microsoft Windows Vista SP2, Windows Server 2008 SP2 and R2 SP1, and Windows 7 SP1 mishandle library loading, which allows local users to gain privileges via a crafted application, aka "Windows Library Loading Remote Code Execution Vulnerability."
0
Attacker Value
Unknown

CVE-2017-0214

Disclosure Date: May 12, 2017 (last updated November 26, 2024)
Windows COM in Microsoft Windows Server 2008 SP2 and R2 SP1, Windows 7 SP1, Windows 8.1, Windows Server 2012 Gold and R2, Windows RT 8.1, Windows 10 Gold, 1511, 1607, and 1703, and Windows Server 2016 allows an elevation privilege vulnerability when Windows fails to properly validate input before loading type libraries, aka "Windows COM Elevation of Privilege Vulnerability". This CVE ID is unique from CVE-2017-0213.
1
Attacker Value
Unknown

CVE-2022-41128

Disclosure Date: November 09, 2022 (last updated February 24, 2025)
Windows Scripting Languages Remote Code Execution Vulnerability
Attacker Value
Unknown

Microsoft Tagged Image File Format Heap Overflow

Disclosure Date: November 06, 2013 (last updated July 25, 2024)
GDI+ in Microsoft Windows Vista SP2 and Server 2008 SP2; Office 2003 SP3, 2007 SP3, and 2010 SP1 and SP2; Office Compatibility Pack SP3; and Lync 2010, 2010 Attendee, 2013, and Basic 2013 allows remote attackers to execute arbitrary code via a crafted TIFF image, as demonstrated by an image in a Word document, and exploited in the wild in October and November 2013.
Attacker Value
Unknown

CVE-2025-21419

Disclosure Date: February 11, 2025 (last updated February 15, 2025)
Windows Setup Files Cleanup Elevation of Privilege Vulnerability
Attacker Value
Unknown

CVE-2025-21418

Disclosure Date: February 11, 2025 (last updated February 13, 2025)
Windows Ancillary Function Driver for WinSock Elevation of Privilege Vulnerability
Attacker Value
Unknown

CVE-2025-21410

Disclosure Date: February 11, 2025 (last updated February 15, 2025)
Windows Routing and Remote Access Service (RRAS) Remote Code Execution Vulnerability
Attacker Value
Unknown

CVE-2025-21407

Disclosure Date: February 11, 2025 (last updated February 15, 2025)
Windows Telephony Service Remote Code Execution Vulnerability