Windows Secure Channel
by Microsoft
CVEs (17)
| CVE | Vendor / Product | Sev | Risk | CVSS | EPSS | KEV | Published | Description |
|---|---|---|---|---|---|---|---|---|
| CVE-2022-30196 | Hig | 0.53 | 8.2 | 0.02 | Sep 13, 2022 | Windows Secure Channel Denial of Service Vulnerability | ||
| CVE-2023-21818 | Hig | 0.52 | 7.5 | 0.43 | Feb 14, 2023 | Windows Secure Channel Denial of Service Vulnerability | ||
| CVE-2024-38148 | Hig | 0.51 | 7.5 | 0.32 | Aug 13, 2024 | Windows Secure Channel Denial of Service Vulnerability | ||
| CVE-2023-21819 | Hig | 0.51 | 7.5 | 0.31 | Feb 14, 2023 | Windows Secure Channel Denial of Service Vulnerability | ||
| CVE-2023-28234 | Hig | 0.49 | 7.5 | 0.02 | Apr 11, 2023 | Windows Secure Channel Denial of Service Vulnerability | ||
| CVE-2023-28233 | Hig | 0.49 | 7.5 | 0.02 | Apr 11, 2023 | Windows Secure Channel Denial of Service Vulnerability | ||
| CVE-2023-24931 | Hig | 0.49 | 7.5 | 0.02 | Apr 11, 2023 | Windows Secure Channel Denial of Service Vulnerability | ||
| CVE-2023-21813 | Hig | 0.49 | 7.5 | 0.02 | Feb 14, 2023 | Windows Secure Channel Denial of Service Vulnerability | ||
| CVE-2022-38041 | Hig | 0.49 | 7.5 | 0.02 | Oct 11, 2022 | Windows Secure Channel Denial of Service Vulnerability | ||
| CVE-2022-35833 | Hig | 0.49 | 7.5 | 0.03 | Sep 13, 2022 | Windows Secure Channel Denial of Service Vulnerability | ||
| CVE-2022-26915 | Hig | 0.49 | 7.5 | 0.03 | Apr 15, 2022 | Windows Secure Channel Denial of Service Vulnerability | ||
| CVE-2024-43550 | Hig | 0.48 | 7.4 | 0.01 | Oct 8, 2024 | Windows Secure Channel Spoofing Vulnerability | ||
| CVE-2025-27492 | Hig | 0.46 | 7.0 | 0.00 | Apr 8, 2025 | Concurrent execution using shared resource with improper synchronization ('race condition') in Windows Secure Channel allows an authorized attacker to elevate privileges locally. | ||
| CVE-2025-26649 | Hig | 0.46 | 7.0 | 0.00 | Apr 8, 2025 | Concurrent execution using shared resource with improper synchronization ('race condition') in Windows Secure Channel allows an authorized attacker to elevate privileges locally. | ||
| CVE-2023-24862 | Med | 0.36 | 5.5 | 0.01 | Mar 14, 2023 | Windows Secure Channel Denial of Service Vulnerability | ||
| CVE-2009-0085 | 0.01 | — | 0.15 | Mar 10, 2009 | The Secure Channel (aka SChannel) authentication component in Microsoft Windows 2000 SP4, XP SP2 and SP3, Server 2003 SP1 and SP2, Vista Gold and SP1, and Server 2008, when certificate authentication is used, does not properly validate the client's key exchange data in Transport… | |||
| CVE-2007-2218 | 0.01 | — | 0.13 | Jun 12, 2007 | Unspecified vulnerability in the Windows Schannel Security Package for Microsoft Windows 2000 SP4, XP SP2, and Server 2003 SP1 and SP2, allows remote servers to execute arbitrary code or cause a denial of service via crafted digital signatures that are processed during an SSL… |
- risk 0.53cvss 8.2epss 0.02
Windows Secure Channel Denial of Service Vulnerability
- risk 0.52cvss 7.5epss 0.43
Windows Secure Channel Denial of Service Vulnerability
- risk 0.51cvss 7.5epss 0.32
Windows Secure Channel Denial of Service Vulnerability
- risk 0.51cvss 7.5epss 0.31
Windows Secure Channel Denial of Service Vulnerability
- risk 0.49cvss 7.5epss 0.02
Windows Secure Channel Denial of Service Vulnerability
- risk 0.49cvss 7.5epss 0.02
Windows Secure Channel Denial of Service Vulnerability
- risk 0.49cvss 7.5epss 0.02
Windows Secure Channel Denial of Service Vulnerability
- risk 0.49cvss 7.5epss 0.02
Windows Secure Channel Denial of Service Vulnerability
- risk 0.49cvss 7.5epss 0.02
Windows Secure Channel Denial of Service Vulnerability
- risk 0.49cvss 7.5epss 0.03
Windows Secure Channel Denial of Service Vulnerability
- risk 0.49cvss 7.5epss 0.03
Windows Secure Channel Denial of Service Vulnerability
- risk 0.48cvss 7.4epss 0.01
Windows Secure Channel Spoofing Vulnerability
- risk 0.46cvss 7.0epss 0.00
Concurrent execution using shared resource with improper synchronization ('race condition') in Windows Secure Channel allows an authorized attacker to elevate privileges locally.
- risk 0.46cvss 7.0epss 0.00
Concurrent execution using shared resource with improper synchronization ('race condition') in Windows Secure Channel allows an authorized attacker to elevate privileges locally.
- risk 0.36cvss 5.5epss 0.01
Windows Secure Channel Denial of Service Vulnerability
- CVE-2009-0085Mar 10, 2009risk 0.01cvss —epss 0.15
The Secure Channel (aka SChannel) authentication component in Microsoft Windows 2000 SP4, XP SP2 and SP3, Server 2003 SP1 and SP2, Vista Gold and SP1, and Server 2008, when certificate authentication is used, does not properly validate the client's key exchange data in Transport…
- CVE-2007-2218Jun 12, 2007risk 0.01cvss —epss 0.13
Unspecified vulnerability in the Windows Schannel Security Package for Microsoft Windows 2000 SP4, XP SP2, and Server 2003 SP1 and SP2, allows remote servers to execute arbitrary code or cause a denial of service via crafted digital signatures that are processed during an SSL…