VYPR

Windows

by Microsoft

CVEs (2,653)

  • CVE-2016-3342HigNov 10, 2016
    risk 0.52cvss 7.8epss 0.13

    The Common Log File System (CLFS) driver in Microsoft Windows Vista SP2, Windows Server 2008 SP2 and R2 SP1, Windows 7 SP1, Windows 8.1, Windows Server 2012 Gold and R2, Windows RT 8.1, Windows 10 Gold, 1511, and 1607, and Windows Server 2016 allows local users to gain…

  • CVE-2016-3340HigNov 10, 2016
    risk 0.52cvss 7.8epss 0.13

    The Common Log File System (CLFS) driver in Microsoft Windows Vista SP2, Windows Server 2008 SP2 and R2 SP1, Windows 7 SP1, Windows 8.1, Windows Server 2012 Gold and R2, Windows RT 8.1, Windows 10 Gold, 1511, and 1607, and Windows Server 2016 allows local users to gain…

  • CVE-2016-0142HigOct 14, 2016
    risk 0.52cvss 7.8epss 0.20

    Video Control in Microsoft Windows Vista SP2, Windows 7 SP1, Windows 8.1, Windows RT 8.1, and Windows 10 Gold, 1511, and 1607 allows remote attackers to execute arbitrary code via a crafted web page, aka "Microsoft Video Control Remote Code Execution Vulnerability."

  • CVE-2016-3348HigSep 14, 2016
    risk 0.52cvss 7.8epss 0.13

    The kernel-mode drivers in Microsoft Windows Vista SP2, Windows Server 2008 SP2 and R2 SP1, Windows 7 SP1, Windows 8.1, Windows Server 2012 Gold and R2, Windows RT 8.1, and Windows 10 Gold, 1511, and 1607 allow local users to gain privileges via a crafted application, aka…

  • CVE-2016-0182HigMay 11, 2016
    risk 0.52cvss 7.8epss 0.20

    Windows Journal in Microsoft Windows Vista SP2, Windows 7 SP1, Windows 8.1, Windows RT 8.1, and Windows 10 Gold and 1511 allows remote attackers to execute arbitrary code via a crafted Journal (aka .jnt) file, aka "Windows Journal Memory Corruption Vulnerability."

  • CVE-2016-0153HigApr 12, 2016
    risk 0.52cvss 7.8epss 0.21

    OLE in Microsoft Windows Vista SP2, Windows Server 2008 SP2 and R2 SP1, Windows 7 SP1, Windows 8.1, Windows Server 2012 Gold and R2, and Windows RT 8.1 allows remote attackers to execute arbitrary code via a crafted file, aka "Windows OLE Remote Code Execution Vulnerability."

  • CVE-2016-0038HigFeb 10, 2016
    risk 0.52cvss 7.8epss 0.18

    Windows Journal in Microsoft Windows Vista SP2, Windows Server 2008 SP2 and R2 SP1, Windows 7 SP1, Windows 8.1, Windows Server 2012 Gold and R2, and Windows 10 Gold and 1511 allows remote attackers to execute arbitrary code via a crafted Journal file, aka "Windows Journal Memory…

  • CVE-2012-2897HigSep 26, 2012
    risk 0.52cvss 7.8epss 0.22

    The kernel-mode drivers in Microsoft Windows XP SP2 and SP3, Windows Server 2003 SP2, Windows Vista SP2, Windows Server 2008 SP2, R2, and R2 SP1, Windows 7 Gold and SP1, Windows 8, Windows Server 2012, and Windows RT, as used by Google Chrome before 22.0.1229.79 and other…

  • CVE-2026-65775HigAug 11, 2026
    risk 0.51cvss 7.8epss 0.03

    Use after free in Windows Win32K allows an authorized attacker to elevate privileges locally.

  • CVE-2026-62779HigAug 11, 2026
    risk 0.51cvss 7.8epss 0.00

    Use after free in Windows Schannel allows an authorized attacker to elevate privileges locally.

  • CVE-2026-62711HigAug 11, 2026
    risk 0.51cvss 7.8epss 0.00

    Use after free in Windows Win32K allows an authorized attacker to elevate privileges locally.

  • CVE-2026-42976HigAug 11, 2026
    risk 0.51cvss 7.8epss 0.00

    Missing authentication for critical function in Windows RPC API allows an authorized attacker to elevate privileges locally.

  • CVE-2026-45656HigJun 9, 2026
    risk 0.51cvss 7.8epss 0.00

    Protection mechanism failure in Windows UEFI allows an authorized attacker to bypass a security feature locally.

  • CVE-2026-34330HigMay 12, 2026
    risk 0.51cvss 7.8epss 0.00

    Concurrent execution using shared resource with improper synchronization ('race condition') in Windows Win32K - GRFX allows an authorized attacker to elevate privileges locally.

  • CVE-2026-33834HigMay 12, 2026
    risk 0.51cvss 7.8epss 0.00

    Improper access control in Windows Event Logging Service allows an authorized attacker to elevate privileges locally.

  • CVE-2026-32165HigApr 14, 2026
    risk 0.51cvss 7.8epss 0.00

    Use after free in Windows User Interface Core allows an authorized attacker to elevate privileges locally.

  • CVE-2026-26183HigApr 14, 2026
    risk 0.51cvss 7.8epss 0.00

    Improper access control in Windows RPC API allows an authorized attacker to elevate privileges locally.

  • CVE-2026-21238HigFeb 10, 2026
    risk 0.51cvss 7.8epss 0.03

    Improper access control in Windows Ancillary Function Driver for WinSock allows an authorized attacker to elevate privileges locally.

  • CVE-2026-20832HigJan 13, 2026
    risk 0.51cvss 7.8epss 0.00

    Windows Remote Procedure Call Interface Definition Language (IDL) Elevation of Privilege Vulnerability

  • CVE-2025-62474HigDec 9, 2025
    risk 0.51cvss 7.8epss 0.00

    Improper access control in Windows Remote Access Connection Manager allows an authorized attacker to elevate privileges locally.

Page 25 of 133