Vulnerabilities
Vulnerable Software
CVE-2022-41049
Known exploited
Windows Mark of the Web Security Feature Bypass Vulnerability
CVSS Score
5.4
EPSS Score
0.658
Published
2022-11-09
CVE-2022-41033
Known exploited
Windows COM+ Event System Service Elevation of Privilege Vulnerability
CVSS Score
7.8
EPSS Score
0.37
Published
2022-10-11
CVE-2022-38028
Known exploited
Windows Print Spooler Elevation of Privilege Vulnerability
CVSS Score
7.8
EPSS Score
0.306
Published
2022-10-11
CVE-2022-37969
Known exploited
Windows Common Log File System Driver Elevation of Privilege Vulnerability
CVSS Score
7.8
EPSS Score
0.41
Published
2022-09-13
CVE-2022-34713
Known exploited
Microsoft Windows Support Diagnostic Tool (MSDT) Remote Code Execution Vulnerability
CVSS Score
7.8
EPSS Score
0.382
Published
2022-08-09
CVE-2022-22047
Known exploited
Windows Client Server Run-time Subsystem (CSRSS) Elevation of Privilege Vulnerability
CVSS Score
7.8
EPSS Score
0.031
Published
2022-07-12
CVE-2022-26923
Known exploited
Active Directory Domain Services Elevation of Privilege Vulnerability
CVSS Score
8.8
EPSS Score
0.9
Published
2022-05-10
A remote code execution vulnerability exists in the way that the Chakra scripting engine handles objects in memory in Microsoft Edge, aka 'Chakra Scripting Engine Memory Corruption Vulnerability'. This CVE ID is unique from CVE-2019-0806, CVE-2019-0812, CVE-2019-0829, CVE-2019-0860, CVE-2019-0861.
CVSS Score
7.5
EPSS Score
0.083
Published
2019-04-09
CVE-2018-8653
Known exploited
A remote code execution vulnerability exists in the way that the scripting engine handles objects in memory in Internet Explorer, aka "Scripting Engine Memory Corruption Vulnerability." This affects Internet Explorer 9, Internet Explorer 11, Internet Explorer 10. This CVE ID is unique from CVE-2018-8643.
CVSS Score
7.5
EPSS Score
0.188
Published
2018-12-20
CVE-2017-8464
Known exploited
Windows Shell in Microsoft Windows Server 2008 SP2 and R2 SP1, Windows 7 SP1, Windows 8, Windows 8.1, Windows Server 2012 Gold and R2, Windows RT 8.1, Windows 10 Gold, 1511, 1607, 1703, and Windows Server 2016 allows local users or remote attackers to execute arbitrary code via a crafted .LNK file, which is not properly handled during icon display in Windows Explorer or any other application that parses the icon of the shortcut. aka "LNK Remote Code Execution Vulnerability."
CVSS Score
8.8
EPSS Score
0.923
Published
2017-06-15


Contact Us

Shodan ® - All rights reserved