Vulnerabilities
Vulnerable Software
External control of file name or path in Windows Telephony Service allows an authorized attacker to elevate privileges over an adjacent network.
CVSS Score
8.0
EPSS Score
0.007
Published
2026-01-13
Use after free in Windows Management Services allows an authorized attacker to elevate privileges locally.
CVSS Score
7.8
EPSS Score
0.003
Published
2026-01-13
External control of file name or path in Windows NTLM allows an unauthorized attacker to perform spoofing over a network.
CVSS Score
6.5
EPSS Score
0.173
Published
2026-01-13
Concurrent execution using shared resource with improper synchronization ('race condition') in Windows SMB Server allows an authorized attacker to elevate privileges over a network.
CVSS Score
7.5
EPSS Score
0.008
Published
2026-01-13
Concurrent execution using shared resource with improper synchronization ('race condition') in Windows SMB Server allows an authorized attacker to deny service over a network.
CVSS Score
5.3
EPSS Score
0.009
Published
2026-01-13
Improper access control in Windows HTTP.sys allows an authorized attacker to elevate privileges over a network.
CVSS Score
7.5
EPSS Score
0.011
Published
2026-01-13
Concurrent execution using shared resource with improper synchronization ('race condition') in Windows SMB Server allows an authorized attacker to elevate privileges over a network.
CVSS Score
7.5
EPSS Score
0.008
Published
2026-01-13
Concurrent execution using shared resource with improper synchronization ('race condition') in Windows SMB Server allows an authorized attacker to elevate privileges over a network.
CVSS Score
7.5
EPSS Score
0.012
Published
2026-01-13
Heap-based buffer overflow in Windows NTFS allows an authorized attacker to execute code locally.
CVSS Score
7.8
EPSS Score
0.006
Published
2026-01-13
Use after free in Windows Management Services allows an authorized attacker to elevate privileges locally.
CVSS Score
7.8
EPSS Score
0.004
Published
2026-01-13


Contact Us

Shodan ® - All rights reserved