Windows Cryptographic Services
by Microsoft
CVEs (19)
| CVE | Vendor / Product | Sev | Risk | CVSS | EPSS | KEV | Published | Description |
|---|---|---|---|---|---|---|---|---|
| CVE-2026-44810 | Hig | 0.55 | 8.4 | 0.00 | Jun 9, 2026 | Improper authentication in Windows Cryptographic Services allows an unauthorized attacker to elevate privileges locally. | ||
| CVE-2024-29050 | Hig | 0.55 | 8.4 | 0.01 | Apr 9, 2024 | Windows Cryptographic Services Remote Code Execution Vulnerability | ||
| CVE-2025-29828 | Hig | 0.53 | 8.1 | 0.01 | Jun 10, 2025 | Missing release of memory after effective lifetime in Windows Cryptographic Services allows an unauthorized attacker to execute code over a network. | ||
| CVE-2024-30020 | Hig | 0.53 | 8.1 | 0.01 | May 14, 2024 | Windows Cryptographic Services Remote Code Execution Vulnerability | ||
| CVE-2025-58720 | Hig | 0.51 | 7.8 | 0.00 | Oct 14, 2025 | Use of a cryptographic primitive with a risky implementation in Windows Cryptographic Services allows an authorized attacker to disclose information locally. | ||
| CVE-2024-26228 | Hig | 0.51 | 7.8 | 0.00 | Apr 9, 2024 | Windows Cryptographic Services Security Feature Bypass Vulnerability | ||
| CVE-2024-20682 | Hig | 0.51 | 7.8 | 0.01 | Jan 9, 2024 | Windows Cryptographic Services Remote Code Execution Vulnerability | ||
| CVE-2023-23416 | Hig | 0.51 | 7.8 | 0.08 | Mar 14, 2023 | Windows Cryptographic Services Remote Code Execution Vulnerability | ||
| CVE-2020-0782 | Hig | 0.51 | 7.8 | 0.01 | Sep 11, 2020 | An elevation of privilege vulnerability exists when the Windows Cryptographic Catalog Services improperly handle objects in memory. An attacker who successfully exploited this vulnerability could modify the cryptographic catalog. To exploit this vulnerability, an… | ||
| CVE-2025-26641 | Hig | 0.49 | 7.5 | 0.02 | Apr 8, 2025 | Uncontrolled resource consumption in Windows Cryptographic Services allows an unauthorized attacker to deny service over a network. | ||
| CVE-2024-30098 | Hig | 0.49 | 7.5 | 0.01 | Jul 9, 2024 | Windows Cryptographic Services Security Feature Bypass Vulnerability | ||
| CVE-2026-26152 | Hig | 0.46 | 7.0 | 0.00 | Apr 14, 2026 | Insecure storage of sensitive information in Windows Cryptographic Services allows an authorized attacker to elevate privileges locally. | ||
| CVE-2025-48823 | Med | 0.38 | 5.9 | 0.01 | Jul 8, 2025 | Cryptographic issues in Windows Cryptographic Services allows an unauthorized attacker to disclose information over a network. | ||
| CVE-2025-29808 | Med | 0.36 | 5.5 | 0.00 | Apr 8, 2025 | Use of a cryptographic primitive with a risky implementation in Windows Cryptographic Services allows an authorized attacker to disclose information locally. | ||
| CVE-2024-30096 | Med | 0.36 | 5.5 | 0.01 | Jun 11, 2024 | Windows Cryptographic Services Information Disclosure Vulnerability | ||
| CVE-2024-30016 | Med | 0.36 | 5.5 | 0.01 | May 14, 2024 | Windows Cryptographic Services Information Disclosure Vulnerability | ||
| CVE-2024-21311 | Med | 0.36 | 5.5 | 0.01 | Jan 9, 2024 | Windows Cryptographic Services Information Disclosure Vulnerability | ||
| CVE-2023-36907 | Med | 0.36 | 5.5 | 0.02 | Aug 8, 2023 | Windows Cryptographic Services Information Disclosure Vulnerability | ||
| CVE-2023-36906 | Med | 0.36 | 5.5 | 0.02 | Aug 8, 2023 | Windows Cryptographic Services Information Disclosure Vulnerability |
- risk 0.55cvss 8.4epss 0.00
Improper authentication in Windows Cryptographic Services allows an unauthorized attacker to elevate privileges locally.
- risk 0.55cvss 8.4epss 0.01
Windows Cryptographic Services Remote Code Execution Vulnerability
- risk 0.53cvss 8.1epss 0.01
Missing release of memory after effective lifetime in Windows Cryptographic Services allows an unauthorized attacker to execute code over a network.
- risk 0.53cvss 8.1epss 0.01
Windows Cryptographic Services Remote Code Execution Vulnerability
- risk 0.51cvss 7.8epss 0.00
Use of a cryptographic primitive with a risky implementation in Windows Cryptographic Services allows an authorized attacker to disclose information locally.
- risk 0.51cvss 7.8epss 0.00
Windows Cryptographic Services Security Feature Bypass Vulnerability
- risk 0.51cvss 7.8epss 0.01
Windows Cryptographic Services Remote Code Execution Vulnerability
- risk 0.51cvss 7.8epss 0.08
Windows Cryptographic Services Remote Code Execution Vulnerability
- risk 0.51cvss 7.8epss 0.01
An elevation of privilege vulnerability exists when the Windows Cryptographic Catalog Services improperly handle objects in memory. An attacker who successfully exploited this vulnerability could modify the cryptographic catalog. To exploit this vulnerability, an…
- risk 0.49cvss 7.5epss 0.02
Uncontrolled resource consumption in Windows Cryptographic Services allows an unauthorized attacker to deny service over a network.
- risk 0.49cvss 7.5epss 0.01
Windows Cryptographic Services Security Feature Bypass Vulnerability
- risk 0.46cvss 7.0epss 0.00
Insecure storage of sensitive information in Windows Cryptographic Services allows an authorized attacker to elevate privileges locally.
- risk 0.38cvss 5.9epss 0.01
Cryptographic issues in Windows Cryptographic Services allows an unauthorized attacker to disclose information over a network.
- risk 0.36cvss 5.5epss 0.00
Use of a cryptographic primitive with a risky implementation in Windows Cryptographic Services allows an authorized attacker to disclose information locally.
- risk 0.36cvss 5.5epss 0.01
Windows Cryptographic Services Information Disclosure Vulnerability
- risk 0.36cvss 5.5epss 0.01
Windows Cryptographic Services Information Disclosure Vulnerability
- risk 0.36cvss 5.5epss 0.01
Windows Cryptographic Services Information Disclosure Vulnerability
- risk 0.36cvss 5.5epss 0.02
Windows Cryptographic Services Information Disclosure Vulnerability
- risk 0.36cvss 5.5epss 0.02
Windows Cryptographic Services Information Disclosure Vulnerability