VYPR

Windows CryptoAPI

by Microsoft

CVEs (7)

  • CVE-2020-0601HigKEVJan 14, 2020
    risk 0.68cvss 8.1epss 0.89

    A spoofing vulnerability exists in the way Windows CryptoAPI (Crypt32.dll) validates Elliptic Curve Cryptography (ECC) certificates.An attacker could exploit the vulnerability by using a spoofed code-signing certificate to sign a malicious executable, making it appear the file…

  • CVE-2022-34689HigOct 11, 2022
    risk 0.52cvss 7.5epss 0.38

    Windows CryptoAPI Spoofing Vulnerability

  • CVE-2023-35339HigJul 11, 2023
    risk 0.49cvss 7.5epss 0.02

    Windows CryptoAPI Denial of Service Vulnerability

  • CVE-2021-1679MedJan 12, 2021
    risk 0.43cvss 6.5epss 0.03

    Windows CryptoAPI Denial of Service Vulnerability

  • CVE-2023-24937MedJun 14, 2023
    risk 0.42cvss 6.5epss 0.02

    Windows CryptoAPI Denial of Service Vulnerability

  • CVE-2023-24938MedJun 14, 2023
    risk 0.42cvss 6.5epss 0.02

    Windows CryptoAPI Denial of Service Vulnerability

  • CVE-2009-2511Oct 14, 2009
    risk 0.04cvss epss 0.13

    Integer overflow in the CryptoAPI component in Microsoft Windows 2000 SP4, Windows XP SP2 and SP3, Windows Server 2003 SP2, Windows Vista Gold, SP1, and SP2, Windows Server 2008 Gold, SP2, and R2, and Windows 7 allows man-in-the-middle attackers to spoof arbitrary SSL servers…