Latest microsoft windows server 2016 Vulnerabilities

Improper input validation in the SMM Supervisor may allow an attacker with a compromised SMI handler to gain Ring0 access potentially leading to arbitrary code execution.
Amd Ryzen 7 5700g Firmware<comboam4v2_1.2.0.b
Amd Ryzen 7 5700g
Amd Ryzen 7 5700ge Firmware<comboam4v2_1.2.0.b
Amd Ryzen 7 5700ge
Amd Ryzen 5 5600g Firmware<comboam4v2_1.2.0.b
Amd Ryzen 5 5600g
and 122 more
A race condition in System Management Mode (SMM) code may allow an attacker using a compromised user space to leverage CVE-2018-8897 potentially resulting in privilege escalation.
Microsoft Windows 10<comboam4v2_1.2.0.b
Microsoft Windows 10
Amd Ryzen 3 5300g Firmware<comboam4v2_1.2.0.b
Amd Ryzen 3 5300g
Amd Ryzen 3 5300ge Firmware<comboam4v2_1.2.0.b
Amd Ryzen 3 5300ge
and 136 more
Insufficient protections in System Management Mode (SMM) code may allow an attacker to potentially enable escalation of privilege via local access.
Microsoft Windows 10<comboam4v2_1.2.0.b
Microsoft Windows 10
Amd Ryzen 3 5300g Firmware<comboam4v2_1.2.0.b
Amd Ryzen 3 5300g
Amd Ryzen 3 5300ge Firmware<comboam4v2_1.2.0.b
Amd Ryzen 3 5300ge
and 136 more
Insufficient protections in System Management Mode (SMM) code may allow an attacker to potentially enable escalation of privilege via local access.
Microsoft Windows 10<comboam4v2_1.2.0.b
Microsoft Windows 10
Amd Ryzen 3 5300g Firmware<comboam4v2_1.2.0.b
Amd Ryzen 3 5300g
Amd Ryzen 3 5300ge Firmware<comboam4v2_1.2.0.b
Amd Ryzen 3 5300ge
and 136 more
Insufficient validation of SPI flash addresses in the ASP (AMD Secure Processor) bootloader may allow an attacker to read data in memory mapped beyond SPI flash resulting in a potential loss of availa...
Amd Ryzen 7 5700g Firmware<comboam4v2_pi_1.2.0.8
Amd Ryzen 7 5700g
Amd Ryzen 7 5700ge Firmware<comboam4v2_pi_1.2.0.8
Amd Ryzen 7 5700ge
Amd Ryzen 5 5600g Firmware<comboam4v2_pi_1.2.0.8
Amd Ryzen 5 5600g
and 116 more
Insufficient DRAM address validation in System Management Unit (SMU) may allow an attacker to read/write from/to an invalid DRAM address, potentially resulting in denial-of-service.
Amd Epyc 7232p Firmware<romepi_1.0.0.d
Amd Epyc 7232p
Amd Epyc 7252 Firmware<romepi_1.0.0.d
Amd Epyc 7252
Amd Epyc 7262 Firmware<romepi_1.0.0.d
Amd Epyc 7262
and 165 more
Insufficient DRAM address validation in System Management Unit (SMU) may allow an attacker to read/write from/to an invalid DRAM address, potentially resulting in denial-of-service.
Microsoft Windows 10<naplespi_1.0.0.k
Microsoft Windows Server 2012 R2
Amd Epyc 7251 Firmware<naplespi_1.0.0.k
Amd Epyc 7251
Microsoft Windows 11<naplespi_1.0.0.k
Microsoft Windows 11
and 268 more
Improper signature verification of RadeonTM RX Vega M Graphics driver for Windows may allow an attacker with admin privileges to launch RadeonInstaller.exe without validating the file signature potent...
Intel Radeon Rx Vega M Firmware<23.10.01.46
Intel Core I5-8305g
Intel Core I7-8705g
Intel Core I7-8706g
Intel Core I7-8709g
Intel Nuc 8 Enthusiast Nuc8i7hnkqc
and 118 more
Improper signature verification of RadeonTM RX Vega M Graphics driver for Windows may allow an attacker with admin privileges to launch AMDSoftwareInstaller.exe without validating the file signature p...
Intel Radeon Rx Vega M Firmware<23.10.01.46
Intel Core I5-8305g
Intel Core I7-8705g
Intel Core I7-8706g
Intel Core I7-8709g
Intel Nuc 8 Enthusiast Nuc8i7hnkqc
and 118 more
Insufficient bounds checking in the ASP (AMD Secure Processor) may allow an attacker to access memory outside the bounds of what is permissible to a TA (Trusted Application) resulting in a potential d...
Intel Radeon Rx Vega M Firmware<23.10.01.46
Intel Core I5-8305g
Intel Core I7-8705g
Intel Core I7-8706g
Intel Core I7-8709g
Intel Nuc 8 Enthusiast Nuc8i7hnkqc
and 118 more
.NET, .NET Framework, and Visual Studio Elevation of Privilege Vulnerability
Microsoft .NET Framework=4.8
Microsoft .NET Framework=4.8
Microsoft .NET Framework=3.5=4.6.2=4.7=4.7.1=4.7.2
Microsoft .NET Framework=3.5=4.8.1
Microsoft .NET Framework=4.8
Microsoft .NET Framework=2.0
and 73 more
Windows Common Log File System Driver Elevation of Privilege Vulnerability
Microsoft Windows Server 2008
Microsoft Windows Server 2008
Microsoft Windows 11=21H2
Microsoft Windows Server 2012
Microsoft Windows 11=23H2
Microsoft Windows 11=23H2
and 51 more
DHCP Server Service Denial of Service Vulnerability
Microsoft Windows Server 2016
Microsoft Windows Server 2012
Microsoft Windows Server 2012 R2
Microsoft Windows Server 2019
Microsoft Windows Server 2012
Microsoft Windows Server 2012 R2
and 10 more
Windows HMAC Key Derivation Elevation of Privilege Vulnerability
Microsoft Windows Server 2016
Microsoft Windows 11=23H2
Microsoft Windows 11=22H2
Microsoft Windows 11=21H2
Microsoft Windows Server 2022, 23H2 Edition
Microsoft Windows 11=23H2
and 42 more
ASP.NET Security Feature Bypass Vulnerability
Microsoft .NET Framework=3.5=4.8.1
Microsoft .NET Framework=3.5=4.8.1
Microsoft .NET Framework=3.5
Microsoft .NET Framework=3.5=4.8.1
Microsoft .NET Framework=4.6.2=4.7=4.7.1=4.7.2
Microsoft .NET Framework=3.5=4.8.1
and 56 more
Microsoft Remote Registry Service Remote Code Execution Vulnerability
Microsoft Windows Server 2008
Microsoft Windows Server 2019
Microsoft Windows Server 2016
Microsoft Windows 11=21H2
Microsoft Windows Server 2012 R2
Microsoft Windows Server 2012
and 51 more
Windows Authentication Elevation of Privilege Vulnerability
Microsoft Windows Server 2019
Microsoft Windows 11=23H2
Microsoft Windows 11=23H2
Microsoft Windows 11=22H2
Microsoft Windows Server 2019
Microsoft Windows 11=21H2
and 31 more
Microsoft Speech Application Programming Interface (SAPI) Elevation of Privilege Vulnerability
Microsoft Windows Server 2012
Microsoft Windows Server 2008
Microsoft Windows Server 2022, 23H2 Edition
Microsoft Windows Server 2016
Microsoft Windows 11=22H2
Microsoft Windows 11=21H2
and 50 more
Windows Kernel Elevation of Privilege Vulnerability
Microsoft Windows Server 2012 R2
Microsoft Windows Server 2008
Microsoft Windows Server 2008
Microsoft Windows Server 2022, 23H2 Edition
Microsoft Windows Server 2012
Microsoft Windows 11=23H2
and 50 more
Windows Deployment Services Denial of Service Vulnerability
Microsoft Windows Server 2012 R2
Microsoft Windows Server 2008
Microsoft Windows Server 2008
Microsoft Windows Server 2012
Microsoft Windows Server 2019
Microsoft Windows Server 2008
and 18 more
Windows Scripting Engine Memory Corruption Vulnerability
Microsoft Windows Server 2016
Microsoft Windows Server 2019
Microsoft Windows 11=21H2
Microsoft Windows Server 2012 R2
Microsoft Windows Server 2019
Microsoft Windows 11=22H2
and 51 more
Windows NTFS Information Disclosure Vulnerability
Microsoft Windows Server 2016
Microsoft Windows 11=23H2
Microsoft Windows Server 2012 R2
Microsoft Windows 11=23H2
Microsoft Windows Server 2012 R2
Microsoft Windows Server 2012
and 48 more
Microsoft WDAC OLE DB provider for SQL Server Remote Code Execution Vulnerability
Microsoft Windows Server 2012 R2
Microsoft Windows Server 2012 R2
Microsoft Windows Server 2008
Microsoft Windows Server 2008
Microsoft Windows Server 2012
Microsoft Windows Server 2019
and 56 more
Windows Hyper-V Elevation of Privilege Vulnerability
Microsoft Windows Server 2022, 23H2 Edition
Microsoft Windows Server 2019
Microsoft Windows 11=22H2
Microsoft Windows 11=23H2
Microsoft Windows Server 2016
Microsoft Windows Server 2016
and 22 more
Microsoft Protected Extensible Authentication Protocol (PEAP) Remote Code Execution Vulnerability
Microsoft Windows Server 2019
Microsoft Windows 11=21H2
Microsoft Windows 11=21H2
Microsoft Windows Server 2016
Microsoft Windows 11=23H2
Microsoft Windows 11=23H2
and 42 more
Windows Search Service Elevation of Privilege Vulnerability
Microsoft Windows Server 2016
Microsoft Windows Server 2016
Microsoft Windows Server 2019
Microsoft Windows 11=21H2
Microsoft Windows 11=21H2
Microsoft Windows Server 2019
and 33 more
Windows Hyper-V Elevation of Privilege Vulnerability
Microsoft Windows 11=23H2
Microsoft Windows 11=22H2
Microsoft Windows Server 2019
Microsoft Windows Server 2022, 23H2 Edition
Microsoft Windows 11=21H2
Microsoft Windows Server 2019
and 14 more
Windows Kernel Elevation of Privilege Vulnerability
Microsoft Windows 11=21H2
Microsoft Windows 11=21H2
Microsoft Windows 11=22H2
Microsoft Windows 11=22H2
Microsoft Windows 11=23H2
Microsoft Windows Server 2016
and 32 more
Microsoft Remote Registry Service Remote Code Execution Vulnerability
Microsoft Windows 11=21H2
Microsoft Windows Server 2019
Microsoft Windows Server 2012
Microsoft Windows Server 2016
Microsoft Windows Server 2008
Microsoft Windows Server 2012 R2
and 56 more
Windows Pragmatic General Multicast (PGM) Remote Code Execution Vulnerability
Microsoft Windows Server 2012
Microsoft Windows Server 2012 R2
Microsoft Windows Server 2016
Microsoft Windows Server 2008
Microsoft Windows 11=23H2
Microsoft Windows Server 2008
and 56 more
Windows Distributed File System (DFS) Remote Code Execution Vulnerability
Microsoft Windows Server 2022, 23H2 Edition
Microsoft Windows 11=21H2
Microsoft Windows 11=23H2
Microsoft Windows Server 2012
Microsoft Windows 11=23H2
Microsoft Windows Server 2008
and 51 more
Windows User Interface Application Core Remote Code Execution Vulnerability
Microsoft Windows 11=22H2
Microsoft Windows Server 2008
Microsoft Windows 11=23H2
Microsoft Windows Server 2012
Microsoft Windows Server 2012 R2
Microsoft Windows 11=21H2
and 56 more
Microsoft Local Security Authority Subsystem Service Information Disclosure Vulnerability
Microsoft Windows Server 2008
Microsoft Windows Server 2019
Microsoft Windows 11=21H2
Microsoft Windows Server 2012
Microsoft Windows Server 2016
Microsoft Windows Server 2012 R2
and 50 more
Windows Installer Elevation of Privilege Vulnerability
Microsoft Windows 11=21H2
Microsoft Windows 11=23H2
Microsoft Windows 11=21H2
Microsoft Windows Server 2012
Microsoft Windows Server 2012 R2
Microsoft Windows Server 2008
and 49 more
Windows Kernel Information Disclosure Vulnerability
Microsoft Windows 11=22H2
Microsoft Windows Server 2019
Microsoft Windows 11=21H2
Microsoft Windows 11=23H2
Microsoft Windows 11=21H2
Microsoft Windows Server 2016
and 32 more
Microsoft Windows Desktop Window Manager (DWM) Core Library Privilege Escalation Vulnerability
Microsoft Windows 11=23H2
Microsoft Windows Server 2019
Microsoft Windows 11=21H2
Microsoft Windows 11=22H2
Microsoft Windows 11=21H2
Microsoft Windows 11=22H2
and 33 more
Microsoft Windows Cloud Files Mini Filter Driver Privilege Escalation Vulnerability
Microsoft Windows Server 2012 R2
Microsoft Windows Server 2008
Microsoft Windows Server 2008
Microsoft Windows 11=23H2
Microsoft Windows Server 2019
Microsoft Windows Server 2012
and 57 more
Microsoft Windows SmartScreen Security Feature Bypass Vulnerability
Microsoft Windows Server 2012 R2
Microsoft Windows Server 2008
Microsoft Windows 11=21H2
Microsoft Windows Server 2019
Microsoft Windows Server 2012
Microsoft Windows Server 2012 R2
and 57 more
A stack buffer overflow vulnerability discovered in AsfSecureBootDxe in Insyde InsydeH2O with kernel 5.0 through 5.5 allows attackers to run arbitrary code execution during the DXE phase.
Insyde InsydeH2O=05.45.24.0039
Intel B760
Intel C262
Intel C266
Intel Core I3-1305u
Intel Core I3-13100
and 283 more
An improper privilege management in the AMD Radeon™ Graphics driver may allow an authenticated attacker to craft an IOCTL request to gain I/O control over arbitrary hardware ports or physical addre...
AMD Radeon Software<23.9.2
Amd Radeon Rx 5300
Amd Radeon Rx 5300 Xt
Amd Radeon Rx 5300m
Amd Radeon Rx 5500
Amd Radeon Rx 5500 Xt
and 102 more
Windows Named Pipe Filesystem Elevation of Privilege Vulnerability
Microsoft Windows Server 2022
Microsoft Windows 10=21H2
Microsoft Windows 11=21H2
Microsoft Windows 11=22H2
Microsoft Windows 10=22H2
Microsoft Windows 10=1809
and 18 more
Windows Media Foundation Core Remote Code Execution Vulnerability
Microsoft Windows 10=22H2
Microsoft Windows 10=1809
Microsoft Windows 10=21H2
Microsoft Windows 11=22H2
Microsoft Windows Server 2012 R2
Microsoft Windows 10=22H2
and 38 more
Layer 2 Tunneling Protocol Remote Code Execution Vulnerability
Microsoft Windows Server 2008 R2
Microsoft Windows Server 2008
Microsoft Windows 10=1809
Microsoft Windows Server 2008
Microsoft Windows Server 2022
Microsoft Windows Server 2012 R2
and 41 more
Microsoft Message Queuing Remote Code Execution Vulnerability
Microsoft Windows 11=22H2
Microsoft Windows 10=21H2
Microsoft Windows Server 2019
Microsoft Windows 10
Microsoft Windows 10=1607
Microsoft Windows Server 2022
and 41 more
Microsoft Message Queuing Remote Code Execution Vulnerability
Microsoft Windows 10=22H2
Microsoft Windows Server 2012 R2
Microsoft Windows Server 2008
Microsoft Windows 11=22H2
Microsoft Windows Server 2016
Microsoft Windows Server 2022
and 43 more
Microsoft Message Queuing Denial of Service Vulnerability
Microsoft Windows 10=21H2
Microsoft Windows Server 2008 R2
Microsoft Windows 10=22H2
Microsoft Windows 10=1809
Microsoft Windows Server 2008
Microsoft Windows 11=22H2
and 41 more
Microsoft Resilient File System (ReFS) Elevation of Privilege Vulnerability
Microsoft Windows 10=1809
Microsoft Windows 10=22H2
Microsoft Windows 11=21H2
Microsoft Windows 10=22H2
Microsoft Windows 10=21H2
Microsoft Windows Server 2012 R2
and 35 more
Microsoft Virtual Trusted Platform Module Remote Code Execution Vulnerability
Microsoft Windows 10
Microsoft Windows 10=1607
Microsoft Windows 10=21H2
Microsoft Windows 11=21H2
Microsoft Windows 11=21H2
Microsoft Windows 11=22H2
and 19 more
Windows Error Reporting Service Elevation of Privilege Vulnerability
Microsoft Windows 10=1809
Microsoft Windows 10=21H2
Microsoft Windows Server 2019
Microsoft Windows 10=21H2
Microsoft Windows 10=22H2
Microsoft Windows 10=1809
and 18 more
Microsoft Message Queuing Remote Code Execution Vulnerability
Microsoft Windows Server 2008 R2
Microsoft Windows 11=22H2
Microsoft Windows 10=21H2
Microsoft Windows 11=21H2
Microsoft Windows Server 2008
Microsoft Windows Server 2019
and 43 more

Contact

SecAlerts Pty Ltd.
132 Wickham Terrace
Fortitude Valley,
QLD 4006, Australia
info@secalerts.co
By using SecAlerts services, you agree to our services end-user license agreement. This website is safeguarded by reCAPTCHA and governed by the Google Privacy Policy and Terms of Service. All names, logos, and brands of products are owned by their respective owners, and any usage of these names, logos, and brands for identification purposes only does not imply endorsement. If you possess any content that requires removal, please get in touch with us.
© 2023 SecAlerts Pty Ltd.
ABN: 70 645 966 203, ACN: 645 966 203