Windows Image Acquisition Logger
by Microsoft
CVEs (4)
| CVE | Vendor / Product | Sev | Risk | CVSS | EPSS | KEV | Published | Description |
|---|---|---|---|---|---|---|---|---|
| CVE-2023-35342 | Hig | 0.51 | 7.8 | 0.00 | Jul 11, 2023 | Windows Image Acquisition Elevation of Privilege Vulnerability | ||
| CVE-2024-38022 | Hig | 0.46 | 7.0 | 0.01 | Jul 9, 2024 | Windows Image Acquisition Elevation of Privilege Vulnerability | ||
| CVE-2008-3957 | 0.04 | — | 0.18 | Sep 11, 2008 | The Microsoft Windows Image Acquisition Logger ActiveX control allows remote attackers to force the download of arbitrary files onto a client system via a URL in the first argument to the Open method, in conjunction with a full destination pathname in the first argument to the… | |||
| CVE-2026-50315 | Hig | 0.00 | 7.8 | 0.00 | Jul 14, 2026 | Null pointer dereference in Windows Image Acquisition allows an authorized attacker to elevate privileges locally. |
- risk 0.51cvss 7.8epss 0.00
Windows Image Acquisition Elevation of Privilege Vulnerability
- risk 0.46cvss 7.0epss 0.01
Windows Image Acquisition Elevation of Privilege Vulnerability
- CVE-2008-3957Sep 11, 2008risk 0.04cvss —epss 0.18
The Microsoft Windows Image Acquisition Logger ActiveX control allows remote attackers to force the download of arbitrary files onto a client system via a URL in the first argument to the Open method, in conjunction with a full destination pathname in the first argument to the…
- risk 0.00cvss 7.8epss 0.00
Null pointer dereference in Windows Image Acquisition allows an authorized attacker to elevate privileges locally.