Out-of-bounds read in Windows Virtualization-Based Security (VBS) Enclave allows an authorized attacker to disclose information locally.
Microsoft Windows Search Component Information Disclosure Vulnerability
Out-of-bounds read in Windows Storage Port Driver allows an unauthorized attacker to disclose information with a physical attack.
Buffer over-read in Windows Storage allows an unauthorized attacker to disclose information with a physical attack.
Out-of-bounds read in Windows CD-ROM Driver allows an authorized attacker to disclose information locally.
Microsoft Windows SCSI Class System File Information Disclosure Vulnerability
Out-of-bounds read in Xbox allows an unauthorized attacker to disclose information with a physical attack.
Integer underflow (wrap or wraparound) in Microsoft Windows SCSI Class System File allows an unauthorized attacker to disclose information over a network.
Microsoft Windows SCSI Class System File Elevation of Privilege Vulnerability
Use after free in Windows Distributed File System (DFS) allows an authorized attacker to deny service over a network.
Missing authentication for critical function in Windows Autopilot allows an authorized attacker to perform tampering locally.
Exposure of private personal information to an unauthorized actor in Windows Biometric Service allows an authorized attacker to disclose information locally.
Out-of-bounds read in Windows USB Hub Driver allows an unauthorized attacker to elevate privileges with a physical attack.
Improper resolution of path equivalence in Windows URL Moniker allows an unauthorized attacker to bypass a security feature over a network.
Heap-based buffer overflow in Windows Volume Shadow Copy allows an unauthorized attacker to elevate privileges with a physical attack.
Out-of-bounds read in Windows Storage Spaces Controller allows an authorized attacker to disclose information locally.
Out-of-bounds read in Windows USB Mass Storage Class Driver allows an unauthorized attacker to elevate privileges with a physical attack.
Missing authorization in Windows Remote Access Connection Manager allows an authorized attacker to perform tampering locally.
Missing authentication for critical function in Windows Internet Connection Sharing (ICS) allows an authorized attacker to perform tampering locally.
Out-of-bounds read in Windows Spaceport.sys allows an unauthorized attacker to disclose information over a network.
Missing release of resource after effective lifetime in Windows Secure Socket Tunneling Protocol (SSTP) allows an authorized attacker to deny service locally.
Heap-based buffer overflow in Winsock allows an authorized attacker to elevate privileges locally.
Heap-based buffer overflow in Windows Spaceport.sys allows an unauthorized attacker to execute code with a physical attack.
Null pointer dereference in Windows Schannel allows an authorized attacker to deny service over a network.
Missing release of memory after effective lifetime in Windows DHCP Client allows an unauthorized attacker to deny service over an adjacent network.
Use of uninitialized resource in Windows Win32K allows an authorized attacker to disclose information locally.
Concurrent execution using shared resource with improper synchronization ('race condition') in Windows Win32K allows an authorized attacker to bypass a security feature locally.
Out-of-bounds read in Windows Spaceport.sys allows an authorized attacker to disclose information locally.
Dependency on vulnerable third-party component in Windows Secure Boot allows an authorized attacker to bypass a security feature locally.
Buffer over-read in Windows Encrypting File System (EFS) allows an authorized attacker to disclose information locally.