Windows Image Acquisition Logger
by Microsoft
CVEs (8)
| CVE | Vendor / Product | Sev | Risk | CVSS | EPSS | KEV | Published | Description |
|---|---|---|---|---|---|---|---|---|
| CVE-2023-35342 | Hig | 0.51 | 7.8 | 0.00 | Jul 11, 2023 | Windows Image Acquisition Elevation of Privilege Vulnerability | ||
| CVE-2026-69613 | Hig | 0.46 | 7.0 | 0.00 | Sep 8, 2026 | Use after free in Windows Image Acquisition allows an authorized attacker to elevate privileges locally. | ||
| CVE-2026-69500 | Hig | 0.46 | 7.0 | 0.00 | Sep 8, 2026 | Use after free in Windows Image Acquisition allows an authorized attacker to elevate privileges locally. | ||
| CVE-2026-69341 | Hig | 0.46 | 7.0 | 0.00 | Sep 8, 2026 | Use after free in Windows Image Acquisition allows an authorized attacker to elevate privileges locally. | ||
| CVE-2024-38022 | Hig | 0.46 | 7.0 | 0.01 | Jul 9, 2024 | Windows Image Acquisition Elevation of Privilege Vulnerability | ||
| CVE-2026-69483 | Med | 0.31 | 4.7 | 0.00 | Sep 8, 2026 | Out-of-bounds read in Windows Image Acquisition allows an authorized attacker to disclose information locally. | ||
| CVE-2008-3957 | 0.04 | — | 0.18 | Sep 11, 2008 | The Microsoft Windows Image Acquisition Logger ActiveX control allows remote attackers to force the download of arbitrary files onto a client system via a URL in the first argument to the Open method, in conjunction with a full destination pathname in the first argument to the… | |||
| CVE-2026-50315 | Hig | 0.00 | 7.8 | 0.00 | Jul 14, 2026 | Null pointer dereference in Windows Image Acquisition allows an authorized attacker to elevate privileges locally. |
- risk 0.51cvss 7.8epss 0.00
Windows Image Acquisition Elevation of Privilege Vulnerability
- risk 0.46cvss 7.0epss 0.00
Use after free in Windows Image Acquisition allows an authorized attacker to elevate privileges locally.
- risk 0.46cvss 7.0epss 0.00
Use after free in Windows Image Acquisition allows an authorized attacker to elevate privileges locally.
- risk 0.46cvss 7.0epss 0.00
Use after free in Windows Image Acquisition allows an authorized attacker to elevate privileges locally.
- risk 0.46cvss 7.0epss 0.01
Windows Image Acquisition Elevation of Privilege Vulnerability
- risk 0.31cvss 4.7epss 0.00
Out-of-bounds read in Windows Image Acquisition allows an authorized attacker to disclose information locally.
- CVE-2008-3957Sep 11, 2008risk 0.04cvss —epss 0.18
The Microsoft Windows Image Acquisition Logger ActiveX control allows remote attackers to force the download of arbitrary files onto a client system via a URL in the first argument to the Open method, in conjunction with a full destination pathname in the first argument to the…
- risk 0.00cvss 7.8epss 0.00
Null pointer dereference in Windows Image Acquisition allows an authorized attacker to elevate privileges locally.