Security Vulnerabilities
- CVEs Published In September 2022
Microsoft ODBC Driver Remote Code Execution Vulnerability
Windows Common Log File System Driver Elevation of Privilege Vulnerability
Windows Photo Import API Elevation of Privilege Vulnerability
.NET Framework Remote Code Execution Vulnerability
Windows Credential Roaming Service Elevation of Privilege Vulnerability
Windows Secure Channel Denial of Service Vulnerability
Windows Lightweight Directory Access Protocol (LDAP) Remote Code Execution Vulnerability
Windows Kerberos Elevation of Privilege Vulnerability
Windows Kerberos Elevation of Privilege Vulnerability
A vulnerability was discovered in the Crestron AirMedia Windows Application, version 4.3.1.39, in which a low-privileged user can gain a SYSTEM level command prompt by pre-staging a file structure prior to the installation of a trusted service executable and change permissions on that file structure during a repair operation.