Windows CSC Service
by Microsoft
CVEs (412)
| CVE | Vendor / Product | Sev | Risk | CVSS | EPSS | KEV | Published | Description |
|---|---|---|---|---|---|---|---|---|
| CVE-2019-1028 | Hig | 0.51 | 7.8 | 0.01 | Jun 12, 2019 | An elevation of privilege exists in Windows Audio Service. An attacker who successfully exploited the vulnerability could run arbitrary code with elevated privileges. To exploit the vulnerability, an attacker could run a specially crafted application that could exploit the… | ||
| CVE-2019-0985 | Hig | 0.51 | 7.8 | 0.04 | Jun 12, 2019 | A remote code execution vulnerability exists when the Microsoft Speech API (SAPI) improperly handles text-to-speech (TTS) input. The vulnerability could corrupt memory in a way that enables an attacker to execute arbitrary code in the context of the current user. To exploit the… | ||
| CVE-2019-0974 | Hig | 0.51 | 7.8 | 0.04 | Jun 12, 2019 | A remote code execution vulnerability exists when the Windows Jet Database Engine improperly handles objects in memory. An attacker who successfully exploited this vulnerability could execute arbitrary code on a victim system. An attacker could exploit this vulnerability by… | ||
| CVE-2019-0973 | Hig | 0.51 | 7.8 | 0.01 | Jun 12, 2019 | An elevation of privilege vulnerability exists in the Windows Installer when the Windows Installer fails to properly sanitize input leading to an insecure library loading behavior. A locally authenticated attacker could run arbitrary code with elevated system privileges. An… | ||
| CVE-2019-0908 | Hig | 0.51 | 7.8 | 0.05 | Jun 12, 2019 | A remote code execution vulnerability exists when the Windows Jet Database Engine improperly handles objects in memory. An attacker who successfully exploited this vulnerability could execute arbitrary code on a victim system. An attacker could exploit this vulnerability by… | ||
| CVE-2019-0907 | Hig | 0.51 | 7.8 | 0.04 | Jun 12, 2019 | A remote code execution vulnerability exists when the Windows Jet Database Engine improperly handles objects in memory. An attacker who successfully exploited this vulnerability could execute arbitrary code on a victim system. An attacker could exploit this vulnerability by… | ||
| CVE-2019-0906 | Hig | 0.51 | 7.8 | 0.06 | Jun 12, 2019 | A remote code execution vulnerability exists when the Windows Jet Database Engine improperly handles objects in memory. An attacker who successfully exploited this vulnerability could execute arbitrary code on a victim system. An attacker could exploit this vulnerability by… | ||
| CVE-2019-0905 | Hig | 0.51 | 7.8 | 0.04 | Jun 12, 2019 | A remote code execution vulnerability exists when the Windows Jet Database Engine improperly handles objects in memory. An attacker who successfully exploited this vulnerability could execute arbitrary code on a victim system. An attacker could exploit this vulnerability by… | ||
| CVE-2019-0904 | Hig | 0.51 | 7.8 | 0.04 | Jun 12, 2019 | A remote code execution vulnerability exists when the Windows Jet Database Engine improperly handles objects in memory. An attacker who successfully exploited this vulnerability could execute arbitrary code on a victim system. An attacker could exploit this vulnerability by… | ||
| CVE-2023-21752 | Hig | 0.50 | 7.1 | 0.05 | Jan 10, 2023 | Windows Backup Service Elevation of Privilege Vulnerability | ||
| CVE-2023-21757 | Hig | 0.49 | 7.5 | 0.02 | Jan 10, 2023 | Windows Layer 2 Tunneling Protocol (L2TP) Denial of Service Vulnerability | ||
| CVE-2023-21728 | Hig | 0.49 | 7.5 | 0.02 | Jan 10, 2023 | Windows Netlogon Denial of Service Vulnerability | ||
| CVE-2023-21557 | Hig | 0.49 | 7.5 | 0.02 | Jan 10, 2023 | Windows Lightweight Directory Access Protocol (LDAP) Denial of Service Vulnerability | ||
| CVE-2023-21527 | Hig | 0.49 | 7.5 | 0.02 | Jan 10, 2023 | Windows iSCSI Service Denial of Service Vulnerability | ||
| CVE-2022-41118 | Hig | 0.49 | 7.5 | 0.01 | Nov 9, 2022 | Windows Scripting Languages Remote Code Execution Vulnerability | ||
| CVE-2022-41058 | Hig | 0.49 | 7.5 | 0.02 | Nov 9, 2022 | Windows Network Address Translation (NAT) Denial of Service Vulnerability | ||
| CVE-2022-41056 | Hig | 0.49 | 7.5 | 0.02 | Nov 9, 2022 | Network Policy Server (NPS) RADIUS Protocol Denial of Service Vulnerability | ||
| CVE-2022-41053 | Hig | 0.49 | 7.5 | 0.02 | Nov 9, 2022 | Windows Kerberos Denial of Service Vulnerability | ||
| CVE-2022-38041 | Hig | 0.49 | 7.5 | 0.02 | Oct 11, 2022 | Windows Secure Channel Denial of Service Vulnerability | ||
| CVE-2022-37978 | Hig | 0.49 | 7.5 | 0.01 | Oct 11, 2022 | Windows Active Directory Certificate Services Security Feature Bypass |
- risk 0.51cvss 7.8epss 0.01
An elevation of privilege exists in Windows Audio Service. An attacker who successfully exploited the vulnerability could run arbitrary code with elevated privileges. To exploit the vulnerability, an attacker could run a specially crafted application that could exploit the…
- risk 0.51cvss 7.8epss 0.04
A remote code execution vulnerability exists when the Microsoft Speech API (SAPI) improperly handles text-to-speech (TTS) input. The vulnerability could corrupt memory in a way that enables an attacker to execute arbitrary code in the context of the current user. To exploit the…
- risk 0.51cvss 7.8epss 0.04
A remote code execution vulnerability exists when the Windows Jet Database Engine improperly handles objects in memory. An attacker who successfully exploited this vulnerability could execute arbitrary code on a victim system. An attacker could exploit this vulnerability by…
- risk 0.51cvss 7.8epss 0.01
An elevation of privilege vulnerability exists in the Windows Installer when the Windows Installer fails to properly sanitize input leading to an insecure library loading behavior. A locally authenticated attacker could run arbitrary code with elevated system privileges. An…
- risk 0.51cvss 7.8epss 0.05
A remote code execution vulnerability exists when the Windows Jet Database Engine improperly handles objects in memory. An attacker who successfully exploited this vulnerability could execute arbitrary code on a victim system. An attacker could exploit this vulnerability by…
- risk 0.51cvss 7.8epss 0.04
A remote code execution vulnerability exists when the Windows Jet Database Engine improperly handles objects in memory. An attacker who successfully exploited this vulnerability could execute arbitrary code on a victim system. An attacker could exploit this vulnerability by…
- risk 0.51cvss 7.8epss 0.06
A remote code execution vulnerability exists when the Windows Jet Database Engine improperly handles objects in memory. An attacker who successfully exploited this vulnerability could execute arbitrary code on a victim system. An attacker could exploit this vulnerability by…
- risk 0.51cvss 7.8epss 0.04
A remote code execution vulnerability exists when the Windows Jet Database Engine improperly handles objects in memory. An attacker who successfully exploited this vulnerability could execute arbitrary code on a victim system. An attacker could exploit this vulnerability by…
- risk 0.51cvss 7.8epss 0.04
A remote code execution vulnerability exists when the Windows Jet Database Engine improperly handles objects in memory. An attacker who successfully exploited this vulnerability could execute arbitrary code on a victim system. An attacker could exploit this vulnerability by…
- risk 0.50cvss 7.1epss 0.05
Windows Backup Service Elevation of Privilege Vulnerability
- risk 0.49cvss 7.5epss 0.02
Windows Layer 2 Tunneling Protocol (L2TP) Denial of Service Vulnerability
- risk 0.49cvss 7.5epss 0.02
Windows Netlogon Denial of Service Vulnerability
- risk 0.49cvss 7.5epss 0.02
Windows Lightweight Directory Access Protocol (LDAP) Denial of Service Vulnerability
- risk 0.49cvss 7.5epss 0.02
Windows iSCSI Service Denial of Service Vulnerability
- risk 0.49cvss 7.5epss 0.01
Windows Scripting Languages Remote Code Execution Vulnerability
- risk 0.49cvss 7.5epss 0.02
Windows Network Address Translation (NAT) Denial of Service Vulnerability
- risk 0.49cvss 7.5epss 0.02
Network Policy Server (NPS) RADIUS Protocol Denial of Service Vulnerability
- risk 0.49cvss 7.5epss 0.02
Windows Kerberos Denial of Service Vulnerability
- risk 0.49cvss 7.5epss 0.02
Windows Secure Channel Denial of Service Vulnerability
- risk 0.49cvss 7.5epss 0.01
Windows Active Directory Certificate Services Security Feature Bypass
Page 13 of 21