Windows Telephony Service
by Microsoft
CVEs (73)
| CVE | Vendor / Product | Sev | Risk | CVSS | EPSS | KEV | Published | Description |
|---|---|---|---|---|---|---|---|---|
| CVE-2025-21223 | Hig | 0.57 | 8.8 | 0.02 | Jan 14, 2025 | Windows Telephony Service Remote Code Execution Vulnerability | ||
| CVE-2024-43635 | Hig | 0.57 | 8.8 | 0.02 | Nov 12, 2024 | Windows Telephony Service Remote Code Execution Vulnerability | ||
| CVE-2024-43628 | Hig | 0.57 | 8.8 | 0.02 | Nov 12, 2024 | Windows Telephony Service Remote Code Execution Vulnerability | ||
| CVE-2024-43627 | Hig | 0.57 | 8.8 | 0.02 | Nov 12, 2024 | Windows Telephony Service Remote Code Execution Vulnerability | ||
| CVE-2024-43622 | Hig | 0.57 | 8.8 | 0.02 | Nov 12, 2024 | Windows Telephony Service Remote Code Execution Vulnerability | ||
| CVE-2024-43621 | Hig | 0.57 | 8.8 | 0.02 | Nov 12, 2024 | Windows Telephony Service Remote Code Execution Vulnerability | ||
| CVE-2024-43620 | Hig | 0.57 | 8.8 | 0.02 | Nov 12, 2024 | Windows Telephony Service Remote Code Execution Vulnerability | ||
| CVE-2024-43518 | Hig | 0.57 | 8.8 | 0.01 | Oct 8, 2024 | Windows Telephony Server Remote Code Execution Vulnerability | ||
| CVE-2024-26230 | Hig | 0.53 | 7.8 | 0.24 | Apr 9, 2024 | Windows Telephony Server Elevation of Privilege Vulnerability | ||
| CVE-2026-20931 | Hig | 0.52 | 8.0 | 0.01 | Jan 13, 2026 | External control of file name or path in Windows Telephony Service allows an authorized attacker to elevate privileges over an adjacent network. | ||
| CVE-2026-62732 | Hig | 0.51 | 7.8 | 0.00 | Aug 11, 2026 | Heap-based buffer overflow in Windows Telephony Service allows an authorized attacker to elevate privileges locally. | ||
| CVE-2026-62701 | Hig | 0.51 | 7.8 | 0.00 | Aug 11, 2026 | Use after free in Windows Telephony Service allows an authorized attacker to elevate privileges locally. | ||
| CVE-2026-61353 | Hig | 0.51 | 7.8 | 0.00 | Aug 11, 2026 | Heap-based buffer overflow in Windows Telephony Service allows an authorized attacker to elevate privileges locally. | ||
| CVE-2026-40382 | Hig | 0.51 | 7.8 | 0.00 | May 12, 2026 | Use after free in Windows Telephony Service allows an authorized attacker to elevate privileges locally. | ||
| CVE-2026-34338 | Hig | 0.51 | 7.8 | 0.00 | May 12, 2026 | Use after free in Windows Telephony Service allows an authorized attacker to elevate privileges locally. | ||
| CVE-2024-43626 | Hig | 0.51 | 7.8 | 0.01 | Nov 12, 2024 | Windows Telephony Service Elevation of Privilege Vulnerability | ||
| CVE-2024-26239 | Hig | 0.51 | 7.8 | 0.01 | Apr 9, 2024 | Windows Telephony Server Elevation of Privilege Vulnerability | ||
| CVE-2023-36005 | Hig | 0.51 | 7.5 | 0.24 | Dec 12, 2023 | Windows Telephony Server Elevation of Privilege Vulnerability | ||
| CVE-2022-24550 | Hig | 0.51 | 7.8 | 0.01 | Apr 15, 2022 | Windows Telephony Server Elevation of Privilege Vulnerability | ||
| CVE-2020-1515 | Hig | 0.51 | 7.8 | 0.01 | Aug 17, 2020 | An elevation of privilege vulnerability exists when the Windows Telephony Server improperly handles memory. To exploit this vulnerability, an attacker would first have to gain execution on the victim system. An attacker could then run a specially crafted application to elevate… |
- risk 0.57cvss 8.8epss 0.02
Windows Telephony Service Remote Code Execution Vulnerability
- risk 0.57cvss 8.8epss 0.02
Windows Telephony Service Remote Code Execution Vulnerability
- risk 0.57cvss 8.8epss 0.02
Windows Telephony Service Remote Code Execution Vulnerability
- risk 0.57cvss 8.8epss 0.02
Windows Telephony Service Remote Code Execution Vulnerability
- risk 0.57cvss 8.8epss 0.02
Windows Telephony Service Remote Code Execution Vulnerability
- risk 0.57cvss 8.8epss 0.02
Windows Telephony Service Remote Code Execution Vulnerability
- risk 0.57cvss 8.8epss 0.02
Windows Telephony Service Remote Code Execution Vulnerability
- risk 0.57cvss 8.8epss 0.01
Windows Telephony Server Remote Code Execution Vulnerability
- risk 0.53cvss 7.8epss 0.24
Windows Telephony Server Elevation of Privilege Vulnerability
- risk 0.52cvss 8.0epss 0.01
External control of file name or path in Windows Telephony Service allows an authorized attacker to elevate privileges over an adjacent network.
- risk 0.51cvss 7.8epss 0.00
Heap-based buffer overflow in Windows Telephony Service allows an authorized attacker to elevate privileges locally.
- risk 0.51cvss 7.8epss 0.00
Use after free in Windows Telephony Service allows an authorized attacker to elevate privileges locally.
- risk 0.51cvss 7.8epss 0.00
Heap-based buffer overflow in Windows Telephony Service allows an authorized attacker to elevate privileges locally.
- risk 0.51cvss 7.8epss 0.00
Use after free in Windows Telephony Service allows an authorized attacker to elevate privileges locally.
- risk 0.51cvss 7.8epss 0.00
Use after free in Windows Telephony Service allows an authorized attacker to elevate privileges locally.
- risk 0.51cvss 7.8epss 0.01
Windows Telephony Service Elevation of Privilege Vulnerability
- risk 0.51cvss 7.8epss 0.01
Windows Telephony Server Elevation of Privilege Vulnerability
- risk 0.51cvss 7.5epss 0.24
Windows Telephony Server Elevation of Privilege Vulnerability
- risk 0.51cvss 7.8epss 0.01
Windows Telephony Server Elevation of Privilege Vulnerability
- risk 0.51cvss 7.8epss 0.01
An elevation of privilege vulnerability exists when the Windows Telephony Server improperly handles memory. To exploit this vulnerability, an attacker would first have to gain execution on the victim system. An attacker could then run a specially crafted application to elevate…
Page 3 of 4