Vulnerabilities (CVE)

Filtered by CWE-362
Total 1495 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2022-34725 1 Microsoft 10 Windows 10, Windows 11, Windows 7 and 7 more 2023-04-11 N/A 7.0 HIGH
Windows ALPC Elevation of Privilege Vulnerability
CVE-2022-26928 1 Microsoft 5 Windows 10, Windows 11, Windows Server 2016 and 2 more 2023-04-11 N/A 7.0 HIGH
Windows Photo Import API Elevation of Privilege Vulnerability
CVE-2022-48221 1 Gbgplc 1 Acuant Acufill Sdk 2023-04-11 N/A 7.5 HIGH
An issue was discovered in Acuant AcuFill SDK before 10.22.02.03. Multiple MSI's get executed out of a standard-user writable directory. Through a race condition and OpLock manipulation, these files can be overwritten by a standard user. They then get executed by the elevated installer. This gives a standard user full SYSTEM code execution (elevation of privileges).
CVE-2019-3744 1 Dell 1 Digital Delivery 2023-03-29 7.2 HIGH 7.8 HIGH
Dell/Alienware Digital Delivery versions prior to 4.0.41 contain a privilege escalation vulnerability. A local non-privileged malicious user could exploit a Universal Windows Platform application by manipulating the install software package feature with a race condition and a path traversal exploit in order to run a malicious executable with elevated privileges.
CVE-2023-28144 1 Kdab 1 Hotspot 2023-03-20 N/A 7.0 HIGH
KDAB Hotspot 1.3.x and 1.4.x through 1.4.1, in a non-default configuration, allows privilege escalation because of race conditions involving symlinks and elevate_perf_privileges.sh chown calls.
CVE-2022-48366 1 Ibexa 7 Commerce, Digital Experience Platform, Ez Platform and 4 more 2023-03-16 N/A 3.7 LOW
An issue was discovered in eZ Platform Ibexa Kernel before 1.3.19. It allows determining account existence via a timing attack.
CVE-2020-19824 1 Mpv 1 Mpv 2023-03-12 N/A 7.0 HIGH
An issue in MPV v.0.29.1 fixed in v0.30 allows attackers to execute arbitrary code and crash program via the ao_c parameter.
CVE-2022-44676 1 Microsoft 10 Windows 10, Windows 11, Windows 7 and 7 more 2023-03-10 N/A 8.1 HIGH
Windows Secure Socket Tunneling Protocol (SSTP) Remote Code Execution Vulnerability
CVE-2022-44669 1 Microsoft 4 Windows 10, Windows 11, Windows Server 2019 and 1 more 2023-03-10 N/A 7.0 HIGH
Windows Error Reporting Elevation of Privilege Vulnerability
CVE-2022-41118 1 Microsoft 9 Windows 10, Windows 11, Windows 7 and 6 more 2023-03-10 N/A 7.5 HIGH
Windows Scripting Languages Remote Code Execution Vulnerability
CVE-2022-41116 1 Microsoft 2 Windows 7, Windows Server 2008 2023-03-10 N/A 5.9 MEDIUM
Windows Point-to-Point Tunneling Protocol Denial of Service Vulnerability
CVE-2022-41114 1 Microsoft 3 Windows 10, Windows 11, Windows Server 2022 2023-03-10 N/A 7.0 HIGH
Windows Bind Filter Driver Elevation of Privilege Vulnerability
CVE-2022-41100 1 Microsoft 7 Windows 10, Windows 11, Windows 8.1 and 4 more 2023-03-10 N/A 7.8 HIGH
Windows Advanced Local Procedure Call (ALPC) Elevation of Privilege Vulnerability
CVE-2022-41093 1 Microsoft 7 Windows 10, Windows 11, Windows 8.1 and 4 more 2023-03-10 N/A 7.8 HIGH
Windows Advanced Local Procedure Call (ALPC) Elevation of Privilege Vulnerability
CVE-2022-41090 1 Microsoft 9 Windows 10, Windows 11, Windows 7 and 6 more 2023-03-10 N/A 5.9 MEDIUM
Windows Point-to-Point Tunneling Protocol Denial of Service Vulnerability
CVE-2022-41088 1 Microsoft 7 Windows 10, Windows 11, Windows 8.1 and 4 more 2023-03-10 N/A 8.1 HIGH
Windows Point-to-Point Tunneling Protocol Remote Code Execution Vulnerability
CVE-2022-41086 1 Microsoft 9 Windows 10, Windows 11, Windows 7 and 6 more 2023-03-10 N/A 6.4 MEDIUM
Windows Group Policy Elevation of Privilege Vulnerability
CVE-2022-41045 1 Microsoft 10 Windows 10, Windows 11, Windows 7 and 7 more 2023-03-10 N/A 7.8 HIGH
Windows Advanced Local Procedure Call (ALPC) Elevation of Privilege Vulnerability
CVE-2022-41044 1 Microsoft 2 Windows 7, Windows Server 2008 2023-03-10 N/A 8.1 HIGH
Windows Point-to-Point Tunneling Protocol Remote Code Execution Vulnerability
CVE-2022-41039 1 Microsoft 10 Windows 10, Windows 11, Windows 7 and 7 more 2023-03-10 N/A 8.1 HIGH
Windows Point-to-Point Tunneling Protocol Remote Code Execution Vulnerability