CVE Database
Synced from NVD, cross-referenced against CISA KEV and EPSS · ordered by last update
| CVE ID | Score | Description |
|---|---|---|
| 2h ago | 5.5 | Missing authorization in Microsoft Windows Search Component allows an authorized attacker to perform tampering locally. |
| 2h ago | 6.7 | Heap-based buffer overflow in Windows BitLocker allows an authorized attacker to execute code locally. |
| 2h ago | 4.7 | Improper link resolution before file access ('link following') in Windows NTFS allows an authorized attacker to perform tampering locally. |
| 2h ago | 5.7 | Buffer over-read in Windows DHCP Server allows an authorized attacker to deny service over an adjacent network. |
| 2h ago | 6.8 | Missing authentication for critical function in Windows DHCP Server allows an authorized attacker to elevate privileges over a network. |
| 2h ago | 6.5 | Execution with unnecessary privileges in Microsoft Office SharePoint allows an authorized attacker to disclose information over a network. |
| 2h ago | 5.5 | Exposure of sensitive system information to an unauthorized control sphere in Windows Kernel allows an authorized attacker to disclose information locally. |
| 2h ago | 5.7 | Missing release of memory after effective lifetime in Windows DHCP Server allows an authorized attacker to deny service over an adjacent network. |
| 2h ago | 5.5 | Missing authorization in Windows SMB Server allows an authorized attacker to disclose information locally. |
| 2h ago | 6.5 | Use of externally-controlled format string in Active Directory Certificate Services (AD CS) allows an authorized attacker to disclose information over a network. |
| 2h ago | 5.7 | Out-of-bounds read in Windows Spaceport.sys allows an authorized attacker to disclose information over a network. |
| 2h ago | 5.5 | Out-of-bounds read in Windows Spaceport.sys allows an authorized attacker to disclose information locally. |
| 2h ago | 5.9 | Use of a broken or risky cryptographic algorithm in Microsoft Exchange Server allows an unauthorized attacker to disclose information over a network. |
| 2h ago | 4.6 | Out-of-bounds read in Windows Storage Port Driver allows an unauthorized attacker to disclose information with a physical attack. |
| 2h ago | 5.5 | Out-of-bounds read in Microsoft Standard XPS allows an authorized attacker to disclose information locally. |
| 2h ago | 6.5 | Authorization bypass through user-controlled key in Microsoft Exchange Server allows an authorized attacker to perform tampering over a network. |
| 2h ago | 6.5 | Allocation of resources without limits or throttling in Windows SMB Server allows an authorized attacker to deny service over a network. |
| 2h ago | 6.7 | Integer overflow or wraparound in Windows Overlay Filter allows an authorized attacker to elevate privileges locally. |
| 2h ago | 5.7 | Out-of-bounds read in Windows Network File System allows an authorized attacker to deny service over a network. |
| 2h ago | 5.5 | Out-of-bounds read in Windows DNS allows an authorized attacker to disclose information locally. |
| 2h ago | 5.5 | Out-of-bounds read in Microsoft Standard XPS allows an authorized attacker to disclose information locally. |
| 2h ago | 6.5 | Server-side request forgery (ssrf) in Microsoft Exchange Server allows an authorized attacker to perform spoofing over a network. |
| 2h ago | 5.5 | Out-of-bounds read in Windows Text Shaping allows an authorized attacker to disclose information locally. |
| 2h ago | 5.5 | Exposure of private personal information to an unauthorized actor in Windows Universal Plug and Play (UPnP) Device Host allows an authorized attacker to disclose information locally. |
| 2h ago | 6.7 | Heap-based buffer overflow in Windows Overlay Filter allows an authorized attacker to elevate privileges locally. |
| 2h ago | 5.7 | Use of uninitialized resource in Windows Management Instrumentation allows an authorized attacker to disclose information over a network. |
| 2h ago | 5.5 | Out-of-bounds read in Microsoft Standard XPS allows an authorized attacker to disclose information locally. |
| 2h ago | 5.5 | Out-of-bounds read in Windows Print Spooler Components allows an authorized attacker to disclose information locally. |
| 2h ago | 5.5 | Out-of-bounds read in Windows Overlay Filter allows an authorized attacker to disclose information locally. |
| 2h ago | 5.5 | Exposure of sensitive system information to an unauthorized control sphere in Windows MIDI Service Module allows an authorized attacker to disclose information locally. |