Microsoft Windows Search Component Information Disclosure Vulnerability
Out-of-bounds read in Windows Storage Port Driver allows an unauthorized attacker to disclose information with a physical attack.
Buffer over-read in Windows Storage allows an unauthorized attacker to disclose information with a physical attack.
Out-of-bounds read in Windows CD-ROM Driver allows an authorized attacker to disclose information locally.
Out-of-bounds read in Xbox allows an unauthorized attacker to disclose information with a physical attack.
Microsoft Windows SCSI Class System File Information Disclosure Vulnerability
Integer underflow (wrap or wraparound) in Microsoft Windows SCSI Class System File allows an unauthorized attacker to disclose information over a network.
Microsoft Windows SCSI Class System File Elevation of Privilege Vulnerability
Use after free in Windows Distributed File System (DFS) allows an authorized attacker to deny service over a network.
Exposure of private personal information to an unauthorized actor in Windows Biometric Service allows an authorized attacker to disclose information locally.
Out-of-bounds read in Windows USB Hub Driver allows an unauthorized attacker to elevate privileges with a physical attack.
Improper resolution of path equivalence in Windows URL Moniker allows an unauthorized attacker to bypass a security feature over a network.
Heap-based buffer overflow in Windows Volume Shadow Copy allows an unauthorized attacker to elevate privileges with a physical attack.
Out-of-bounds read in Windows Storage Spaces Controller allows an authorized attacker to disclose information locally.
Out-of-bounds read in Windows USB Mass Storage Class Driver allows an unauthorized attacker to elevate privileges with a physical attack.
Active Directory Certificate Services (AD CS) Information Disclosure Vulnerability
Missing authorization in Windows Remote Access Connection Manager allows an authorized attacker to perform tampering locally.
Missing authentication for critical function in Windows Internet Connection Sharing (ICS) allows an authorized attacker to perform tampering locally.
Out-of-bounds read in Windows Spaceport.sys allows an unauthorized attacker to disclose information over a network.
Missing release of resource after effective lifetime in Windows Secure Socket Tunneling Protocol (SSTP) allows an authorized attacker to deny service locally.
Heap-based buffer overflow in Winsock allows an authorized attacker to elevate privileges locally.
Heap-based buffer overflow in Windows Spaceport.sys allows an unauthorized attacker to execute code with a physical attack.
Heap-based buffer overflow in Windows DHCP Server allows an authorized attacker to execute code locally.
Use of uninitialized resource in Windows Win32K allows an authorized attacker to disclose information locally.
Concurrent execution using shared resource with improper synchronization ('race condition') in Windows Win32K allows an authorized attacker to bypass a security feature locally.
Use of uninitialized resource in Windows DNS allows an authorized attacker to disclose information locally.
Out-of-bounds read in Windows Spaceport.sys allows an authorized attacker to disclose information locally.
Dependency on vulnerable third-party component in Windows Secure Boot allows an authorized attacker to bypass a security feature locally.
Buffer over-read in Windows Encrypting File System (EFS) allows an authorized attacker to disclose information locally.
Missing authentication for critical function in Windows Modern Device Management (MDM) allows an authorized attacker to bypass a security feature locally.