Vulnerabilities
Vulnerable Software
Security Vulnerabilities
Improper link resolution before file access ('link following') in Host Process for Windows Tasks allows an authorized attacker to elevate privileges locally.
CVSS Score
7.8
EPSS Score
0.0
Published
2026-01-13
Untrusted search path in Microsoft Office allows an unauthorized attacker to execute code locally.
CVSS Score
7.0
EPSS Score
0.001
Published
2026-01-13
Out-of-bounds read in Microsoft Office Word allows an unauthorized attacker to execute code locally.
CVSS Score
8.4
EPSS Score
0.0
Published
2026-01-13
External control of file name or path in Windows Telephony Service allows an authorized attacker to elevate privileges over an adjacent network.
CVSS Score
8.0
EPSS Score
0.009
Published
2026-01-13
Exposure of sensitive information to an unauthorized actor in Windows File Explorer allows an authorized attacker to disclose information locally.
CVSS Score
5.5
EPSS Score
0.0
Published
2026-01-13
Concurrent execution using shared resource with improper synchronization ('race condition') in Windows SMB Server allows an authorized attacker to elevate privileges over a network.
CVSS Score
7.5
EPSS Score
0.001
Published
2026-01-13
Untrusted pointer dereference in Windows Virtualization-Based Security (VBS) Enclave allows an unauthorized attacker to disclose information locally.
CVSS Score
6.2
EPSS Score
0.0
Published
2026-01-13
Out-of-bounds read in Windows NDIS allows an authorized attacker to disclose information with a physical attack.
CVSS Score
4.3
EPSS Score
0.0
Published
2026-01-13
Exposure of sensitive information to an unauthorized actor in Windows File Explorer allows an authorized attacker to disclose information locally.
CVSS Score
5.5
EPSS Score
0.0
Published
2026-01-13
Untrusted pointer dereference in Windows Virtualization-Based Security (VBS) Enclave allows an authorized attacker to elevate privileges locally.
CVSS Score
7.8
EPSS Score
0.0
Published
2026-01-13


Contact Us

Shodan ® - All rights reserved