Windows 8.1
by Microsoft
CVEs (2,222)
| CVE | Vendor / Product | Sev | Risk | CVSS | EPSS | KEV | Published | Description |
|---|---|---|---|---|---|---|---|---|
| CVE-2022-26935 | Med | 0.42 | 6.5 | 0.01 | May 10, 2022 | Windows WLAN AutoConfig Service Information Disclosure Vulnerability | ||
| CVE-2022-26934 | Med | 0.42 | 6.5 | 0.03 | May 10, 2022 | Windows Graphics Component Information Disclosure Vulnerability | ||
| CVE-2022-22015 | Med | 0.42 | 6.5 | 0.02 | May 10, 2022 | Windows Remote Desktop Protocol (RDP) Information Disclosure Vulnerability | ||
| CVE-2022-24498 | Med | 0.42 | 6.5 | 0.02 | Apr 15, 2022 | Windows iSCSI Target Service Information Disclosure Vulnerability | ||
| CVE-2022-21963 | Med | 0.42 | 6.4 | 0.01 | Jan 11, 2022 | Windows Resilient File System (ReFS) Remote Code Execution Vulnerability | ||
| CVE-2022-21915 | Med | 0.42 | 6.5 | 0.03 | Jan 11, 2022 | Windows GDI+ Information Disclosure Vulnerability | ||
| CVE-2021-41332 | Med | 0.42 | 6.5 | 0.03 | Oct 13, 2021 | Windows Print Spooler Information Disclosure Vulnerability | ||
| CVE-2021-40460 | Med | 0.42 | 6.5 | 0.02 | Oct 13, 2021 | Windows Remote Procedure Call Runtime Security Feature Bypass Vulnerability | ||
| CVE-2021-38629 | Med | 0.42 | 6.5 | 0.03 | Sep 15, 2021 | Windows Ancillary Function Driver for WinSock Information Disclosure Vulnerability | ||
| CVE-2021-34507 | Med | 0.42 | 6.5 | 0.03 | Jul 14, 2021 | Windows Remote Assistance Information Disclosure Vulnerability | ||
| CVE-2021-33783 | Med | 0.42 | 6.5 | 0.03 | Jul 14, 2021 | Windows SMB Information Disclosure Vulnerability | ||
| CVE-2021-31959 | Med | 0.42 | 6.4 | 0.09 | Jun 8, 2021 | Scripting Engine Memory Corruption Vulnerability | ||
| CVE-2021-28328 | Med | 0.42 | 6.5 | 0.02 | Apr 13, 2021 | Windows DNS Information Disclosure Vulnerability | ||
| CVE-2021-24080 | Med | 0.42 | 6.5 | 0.03 | Feb 25, 2021 | Windows Trust Verification API Denial of Service Vulnerability | ||
| CVE-2020-17040 | Med | 0.42 | 6.5 | 0.03 | Nov 11, 2020 | Windows Hyper-V Security Feature Bypass Vulnerability | ||
| CVE-2020-15706 | Med | 0.42 | 6.4 | 0.01 | Jul 29, 2020 | GRUB2 contains a race condition in grub_script_function_create() leading to a use-after-free vulnerability which can be triggered by redefining a function whilst the same function is already executing, leading to arbitrary code execution and secure boot restriction bypass. This… | ||
| CVE-2020-15705 | Med | 0.42 | 6.4 | 0.01 | Jul 29, 2020 | GRUB2 fails to validate kernel signature when booted directly without shim, allowing secure boot to be bypassed. This only affects systems where the kernel signing certificate has been imported directly into the secure boot database and the GRUB image is booted directly without… | ||
| CVE-2019-1043 | Med | 0.42 | 6.4 | 0.03 | Jun 12, 2019 | A remote code execution vulnerability exists in the way that comctl32.dll handles objects in memory. The vulnerability could corrupt memory in such a way that an attacker could execute arbitrary code in the context of the current user. An attacker who successfully exploited the… | ||
| CVE-2017-0174 | Med | 0.42 | 6.5 | 0.03 | Aug 8, 2017 | Windows NetBIOS in Windows Server 2008 SP2 and R2 SP1, Windows 7 SP1, Windows 8.1, Windows Server 2012 Gold and R2, Windows RT 8.1, Windows 10 Gold, 1511, 1607, 1703, and Windows Server 2016 allows a denial of service vulnerability when it improperly handles NetBIOS packets, aka… | ||
| CVE-2016-3371 | Med | 0.42 | 5.5 | 0.40 | Sep 14, 2016 | The kernel API in Microsoft Windows Vista SP2, Windows Server 2008 SP2 and R2 SP1, Windows 7 SP1, Windows 8.1, Windows Server 2012 Gold and R2, Windows RT 8.1, and Windows 10 Gold, 1511, and 1607 does not properly enforce permissions, which allows local users to obtain sensitive… |
- risk 0.42cvss 6.5epss 0.01
Windows WLAN AutoConfig Service Information Disclosure Vulnerability
- risk 0.42cvss 6.5epss 0.03
Windows Graphics Component Information Disclosure Vulnerability
- risk 0.42cvss 6.5epss 0.02
Windows Remote Desktop Protocol (RDP) Information Disclosure Vulnerability
- risk 0.42cvss 6.5epss 0.02
Windows iSCSI Target Service Information Disclosure Vulnerability
- risk 0.42cvss 6.4epss 0.01
Windows Resilient File System (ReFS) Remote Code Execution Vulnerability
- risk 0.42cvss 6.5epss 0.03
Windows GDI+ Information Disclosure Vulnerability
- risk 0.42cvss 6.5epss 0.03
Windows Print Spooler Information Disclosure Vulnerability
- risk 0.42cvss 6.5epss 0.02
Windows Remote Procedure Call Runtime Security Feature Bypass Vulnerability
- risk 0.42cvss 6.5epss 0.03
Windows Ancillary Function Driver for WinSock Information Disclosure Vulnerability
- risk 0.42cvss 6.5epss 0.03
Windows Remote Assistance Information Disclosure Vulnerability
- risk 0.42cvss 6.5epss 0.03
Windows SMB Information Disclosure Vulnerability
- risk 0.42cvss 6.4epss 0.09
Scripting Engine Memory Corruption Vulnerability
- risk 0.42cvss 6.5epss 0.02
Windows DNS Information Disclosure Vulnerability
- risk 0.42cvss 6.5epss 0.03
Windows Trust Verification API Denial of Service Vulnerability
- risk 0.42cvss 6.5epss 0.03
Windows Hyper-V Security Feature Bypass Vulnerability
- risk 0.42cvss 6.4epss 0.01
GRUB2 contains a race condition in grub_script_function_create() leading to a use-after-free vulnerability which can be triggered by redefining a function whilst the same function is already executing, leading to arbitrary code execution and secure boot restriction bypass. This…
- risk 0.42cvss 6.4epss 0.01
GRUB2 fails to validate kernel signature when booted directly without shim, allowing secure boot to be bypassed. This only affects systems where the kernel signing certificate has been imported directly into the secure boot database and the GRUB image is booted directly without…
- risk 0.42cvss 6.4epss 0.03
A remote code execution vulnerability exists in the way that comctl32.dll handles objects in memory. The vulnerability could corrupt memory in such a way that an attacker could execute arbitrary code in the context of the current user. An attacker who successfully exploited the…
- risk 0.42cvss 6.5epss 0.03
Windows NetBIOS in Windows Server 2008 SP2 and R2 SP1, Windows 7 SP1, Windows 8.1, Windows Server 2012 Gold and R2, Windows RT 8.1, Windows 10 Gold, 1511, 1607, 1703, and Windows Server 2016 allows a denial of service vulnerability when it improperly handles NetBIOS packets, aka…
- risk 0.42cvss 5.5epss 0.40
The kernel API in Microsoft Windows Vista SP2, Windows Server 2008 SP2 and R2 SP1, Windows 7 SP1, Windows 8.1, Windows Server 2012 Gold and R2, Windows RT 8.1, and Windows 10 Gold, 1511, and 1607 does not properly enforce permissions, which allows local users to obtain sensitive…
Page 79 of 112