Windows CNG Key Isolation Service
by Microsoft
CVEs (9)
| CVE | Vendor / Product | Sev | Risk | CVSS | EPSS | KEV | Published | Description |
|---|---|---|---|---|---|---|---|---|
| CVE-2022-41125 | Hig | 0.63 | 7.8 | 0.03 | KEV | Nov 9, 2022 | Windows CNG Key Isolation Service Elevation of Privilege Vulnerability | |
| CVE-2023-28229 | Hig | 0.58 | 7.0 | 0.02 | KEV | Apr 11, 2023 | Windows CNG Key Isolation Service Elevation of Privilege Vulnerability | |
| CVE-2024-30031 | Hig | 0.51 | 7.8 | 0.00 | May 14, 2024 | Windows CNG Key Isolation Service Elevation of Privilege Vulnerability | ||
| CVE-2023-35340 | Hig | 0.51 | 7.8 | 0.00 | Jul 11, 2023 | Windows CNG Key Isolation Service Elevation of Privilege Vulnerability | ||
| CVE-2020-1384 | Hig | 0.51 | 7.8 | 0.01 | Jul 14, 2020 | An elevation of privilege vulnerability exists when the Windows Cryptography Next Generation (CNG) Key Isolation service improperly handles memory, aka 'Windows CNG Key Isolation Service Elevation of Privilege Vulnerability'. This CVE ID is unique from CVE-2020-1359. | ||
| CVE-2020-0755 | Med | 0.36 | 5.5 | 0.02 | Feb 11, 2020 | An information disclosure vulnerability exists in the Cryptography Next Generation (CNG) service when it fails to properly handle objects in memory.To exploit this vulnerability, an attacker would have to log on to an affected system and run a specially crafted application.The… | ||
| CVE-2020-0677 | Med | 0.36 | 5.5 | 0.02 | Feb 11, 2020 | An information disclosure vulnerability exists in the Cryptography Next Generation (CNG) service when it fails to properly handle objects in memory.To exploit this vulnerability, an attacker would have to log on to an affected system and run a specially crafted application.The… | ||
| CVE-2020-0676 | Med | 0.36 | 5.5 | 0.02 | Feb 11, 2020 | An information disclosure vulnerability exists in the Cryptography Next Generation (CNG) service when it fails to properly handle objects in memory.To exploit this vulnerability, an attacker would have to log on to an affected system and run a specially crafted application.The… | ||
| CVE-2020-0675 | Med | 0.36 | 5.5 | 0.02 | Feb 11, 2020 | An information disclosure vulnerability exists in the Cryptography Next Generation (CNG) service when it fails to properly handle objects in memory.To exploit this vulnerability, an attacker would have to log on to an affected system and run a specially crafted application.The… |
- risk 0.63cvss 7.8epss 0.03
Windows CNG Key Isolation Service Elevation of Privilege Vulnerability
- risk 0.58cvss 7.0epss 0.02
Windows CNG Key Isolation Service Elevation of Privilege Vulnerability
- risk 0.51cvss 7.8epss 0.00
Windows CNG Key Isolation Service Elevation of Privilege Vulnerability
- risk 0.51cvss 7.8epss 0.00
Windows CNG Key Isolation Service Elevation of Privilege Vulnerability
- risk 0.51cvss 7.8epss 0.01
An elevation of privilege vulnerability exists when the Windows Cryptography Next Generation (CNG) Key Isolation service improperly handles memory, aka 'Windows CNG Key Isolation Service Elevation of Privilege Vulnerability'. This CVE ID is unique from CVE-2020-1359.
- risk 0.36cvss 5.5epss 0.02
An information disclosure vulnerability exists in the Cryptography Next Generation (CNG) service when it fails to properly handle objects in memory.To exploit this vulnerability, an attacker would have to log on to an affected system and run a specially crafted application.The…
- risk 0.36cvss 5.5epss 0.02
An information disclosure vulnerability exists in the Cryptography Next Generation (CNG) service when it fails to properly handle objects in memory.To exploit this vulnerability, an attacker would have to log on to an affected system and run a specially crafted application.The…
- risk 0.36cvss 5.5epss 0.02
An information disclosure vulnerability exists in the Cryptography Next Generation (CNG) service when it fails to properly handle objects in memory.To exploit this vulnerability, an attacker would have to log on to an affected system and run a specially crafted application.The…
- risk 0.36cvss 5.5epss 0.02
An information disclosure vulnerability exists in the Cryptography Next Generation (CNG) service when it fails to properly handle objects in memory.To exploit this vulnerability, an attacker would have to log on to an affected system and run a specially crafted application.The…