| CVE |
Vendors |
Products |
Updated |
CVSS v3.1 |
| Windows Event Tracing Remote Code Execution Vulnerability |
| Windows NTFS Elevation of Privilege Vulnerability |
| Windows NTFS Elevation of Privilege Vulnerability |
| Windows NTFS Elevation of Privilege Vulnerability |
| SymCrypt Denial of Service Vulnerability |
| Storage Spaces Controller Information Disclosure Vulnerability |
| Bot Framework SDK Remote Code Execution Vulnerability |
| Windows Common Log File System Driver Information Disclosure Vulnerability |
| Windows Remote Access Connection Manager Elevation of Privilege Vulnerability |
| Microsoft Message Queuing Information Disclosure Vulnerability |
| DirectX Graphics Kernel File Denial of Service Vulnerability |
| Windows Encrypting File System (EFS) Remote Code Execution Vulnerability |
| Microsoft Local Security Authority (LSA) Server Information Disclosure Vulnerability |
| iSNS Server Memory Corruption Vulnerability Can Lead to Remote Code Execution |
| Web Media Extensions Remote Code Execution Vulnerability |
| Windows Common Log File System Driver Elevation of Privilege Vulnerability |
| Adobe Photoshop versions 23.0.2 and 22.5.4 (and earlier) are affected by an out-of-bounds write vulnerability that could result in arbitrary code execution in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious JPG file. |
| FlexiHub For Windows is affected by Integer Overflow. IOCTL Handler 0x22001B in the FlexiHub For Windows above 2.0.4340 below 5.3.14268 allow local attackers to execute arbitrary code in kernel mode or cause a denial of service (memory corruption and OS crash) via specially crafted I/O Request Packet. |
| FlexiHub For Windows is affected by Buffer Overflow. IOCTL Handler 0x22001B in the FlexiHub For Windows above 2.0.4340 below 5.3.14268 allows local attackers to execute arbitrary code in kernel mode or cause a denial of service (memory corruption and OS crash) via specially crafted I/O Request Packet. |
| Zoho Remote Access Plus Server Windows Desktop Binary fixed in 10.1.2132.6 is affected by a sensitive information disclosure vulnerability. Due to improper privilege management, the process launches as the logged in user, so memory dump can be done by non-admin also. Remotely, an attacker can dump all sensitive information including DB Connection string, entire IT infrastructure details, commands executed by IT admin including credentials, secrets, private keys and more. |