Powershell
by Microsoft
CVEs (69)
| CVE | Vendor / Product | Sev | Risk | CVSS | EPSS | KEV | Published | Description |
|---|---|---|---|---|---|---|---|---|
| CVE-2023-29331 | Hig | 0.49 | 7.5 | 0.03 | Jun 14, 2023 | .NET, .NET Framework, and Visual Studio Denial of Service Vulnerability | ||
| CVE-2023-24936 | Hig | 0.49 | 7.5 | 0.02 | Jun 14, 2023 | .NET, .NET Framework, and Visual Studio Elevation of Privilege Vulnerability | ||
| CVE-2023-21538 | Hig | 0.49 | 7.5 | 0.03 | Jan 10, 2023 | .NET Denial of Service Vulnerability | ||
| CVE-2024-38033 | Hig | 0.48 | 7.3 | 0.01 | Jul 9, 2024 | PowerShell Elevation of Privilege Vulnerability | ||
| CVE-2024-21409 | Hig | 0.48 | 7.3 | 0.03 | Apr 9, 2024 | .NET, .NET Framework, and Visual Studio Remote Code Execution Vulnerability | ||
| CVE-2023-33128 | Hig | 0.48 | 7.3 | 0.01 | Jun 14, 2023 | .NET and Visual Studio Remote Code Execution Vulnerability | ||
| CVE-2023-33126 | Hig | 0.48 | 7.3 | 0.01 | Jun 14, 2023 | .NET and Visual Studio Remote Code Execution Vulnerability | ||
| CVE-2026-59119 | Hig | 0.47 | 7.3 | 0.00 | Aug 11, 2026 | Incorrect default permissions in Microsoft PowerShell allows an authorized attacker to elevate privileges locally. | ||
| CVE-2025-25004 | Hig | 0.47 | 7.3 | 0.00 | Oct 14, 2025 | Improper access control in Microsoft PowerShell allows an authorized attacker to elevate privileges locally. | ||
| CVE-2023-38171 | Hig | 0.47 | 7.5 | 0.69 | Oct 10, 2023 | Microsoft QUIC Denial of Service Vulnerability | ||
| CVE-2025-49734 | Hig | 0.46 | 7.0 | 0.00 | Sep 9, 2025 | Improper restriction of communication channel to intended endpoints in Windows PowerShell allows an authorized attacker to elevate privileges locally. | ||
| CVE-2022-41089 | Hig | 0.44 | 7.8 | 0.01 | Dec 13, 2022 | .NET Framework Remote Code Execution Vulnerability | ||
| CVE-2020-0951 | Med | 0.44 | 6.7 | 0.07 | Sep 11, 2020 | A security feature bypass vulnerability exists in Windows Defender Application Control (WDAC) which could allow an attacker to bypass WDAC enforcement. An attacker who successfully exploited this vulnerability could execute PowerShell commands that would be blocked by… | ||
| CVE-2023-36799 | Med | 0.43 | 6.5 | 0.05 | Sep 12, 2023 | .NET Core and Visual Studio Denial of Service Vulnerability | ||
| CVE-2026-26171 | Hig | 0.42 | 7.5 | 0.02 | Apr 14, 2026 | Uncontrolled resource consumption in .NET allows an unauthorized attacker to deny service over a network. | ||
| CVE-2024-21392 | Hig | 0.42 | 7.5 | 0.03 | Mar 12, 2024 | .NET and Visual Studio Denial of Service Vulnerability | ||
| CVE-2023-36013 | Med | 0.42 | 6.5 | 0.01 | Nov 20, 2023 | PowerShell Information Disclosure Vulnerability | ||
| CVE-2023-36435 | Hig | 0.42 | 7.5 | 0.05 | Oct 10, 2023 | Microsoft QUIC Denial of Service Vulnerability | ||
| CVE-2023-32032 | Med | 0.42 | 6.5 | 0.01 | Jun 14, 2023 | .NET and Visual Studio Elevation of Privilege Vulnerability | ||
| CVE-2022-23267 | Hig | 0.42 | 7.5 | 0.05 | May 10, 2022 | .NET and Visual Studio Denial of Service Vulnerability |
- risk 0.49cvss 7.5epss 0.03
.NET, .NET Framework, and Visual Studio Denial of Service Vulnerability
- risk 0.49cvss 7.5epss 0.02
.NET, .NET Framework, and Visual Studio Elevation of Privilege Vulnerability
- risk 0.49cvss 7.5epss 0.03
.NET Denial of Service Vulnerability
- risk 0.48cvss 7.3epss 0.01
PowerShell Elevation of Privilege Vulnerability
- risk 0.48cvss 7.3epss 0.03
.NET, .NET Framework, and Visual Studio Remote Code Execution Vulnerability
- risk 0.48cvss 7.3epss 0.01
.NET and Visual Studio Remote Code Execution Vulnerability
- risk 0.48cvss 7.3epss 0.01
.NET and Visual Studio Remote Code Execution Vulnerability
- risk 0.47cvss 7.3epss 0.00
Incorrect default permissions in Microsoft PowerShell allows an authorized attacker to elevate privileges locally.
- risk 0.47cvss 7.3epss 0.00
Improper access control in Microsoft PowerShell allows an authorized attacker to elevate privileges locally.
- risk 0.47cvss 7.5epss 0.69
Microsoft QUIC Denial of Service Vulnerability
- risk 0.46cvss 7.0epss 0.00
Improper restriction of communication channel to intended endpoints in Windows PowerShell allows an authorized attacker to elevate privileges locally.
- risk 0.44cvss 7.8epss 0.01
.NET Framework Remote Code Execution Vulnerability
- risk 0.44cvss 6.7epss 0.07
A security feature bypass vulnerability exists in Windows Defender Application Control (WDAC) which could allow an attacker to bypass WDAC enforcement. An attacker who successfully exploited this vulnerability could execute PowerShell commands that would be blocked by…
- risk 0.43cvss 6.5epss 0.05
.NET Core and Visual Studio Denial of Service Vulnerability
- risk 0.42cvss 7.5epss 0.02
Uncontrolled resource consumption in .NET allows an unauthorized attacker to deny service over a network.
- risk 0.42cvss 7.5epss 0.03
.NET and Visual Studio Denial of Service Vulnerability
- risk 0.42cvss 6.5epss 0.01
PowerShell Information Disclosure Vulnerability
- risk 0.42cvss 7.5epss 0.05
Microsoft QUIC Denial of Service Vulnerability
- risk 0.42cvss 6.5epss 0.01
.NET and Visual Studio Elevation of Privilege Vulnerability
- risk 0.42cvss 7.5epss 0.05
.NET and Visual Studio Denial of Service Vulnerability
Page 3 of 4