βΌ CVE-2021-26392 βΌ
π Read
via "National Vulnerability Database".
Insufficient verification of missing size check in 'LoadModule' may lead to an out-of-bounds write potentially allowing an attacker with privileges to gain code execution of the OS/kernel by loading a malicious TA.π Read
via "National Vulnerability Database".
βΌ CVE-2021-46852 βΌ
π Read
via "National Vulnerability Database".
The memory management module has the logic bypass vulnerability. Successful exploitation of this vulnerability may affect data confidentiality.π Read
via "National Vulnerability Database".
βΌ CVE-2021-26393 βΌ
π Read
via "National Vulnerability Database".
Insufficient memory cleanup in the AMD Secure Processor (ASP) Trusted Execution Environment (TEE) may allow an authenticated attacker with privileges to generate a valid signed TA and potentially poison the contents of the process memory with attacker controlled data resulting in a loss of confidentiality.π Read
via "National Vulnerability Database".
βΌ CVE-2022-41116 βΌ
π Read
via "National Vulnerability Database".
Windows Point-to-Point Tunneling Protocol Denial of Service Vulnerability. This CVE ID is unique from CVE-2022-41090.π Read
via "National Vulnerability Database".
βΌ CVE-2022-41064 βΌ
π Read
via "National Vulnerability Database".
.NET Framework Information Disclosure Vulnerability.π Read
via "National Vulnerability Database".
βΌ CVE-2022-41060 βΌ
π Read
via "National Vulnerability Database".
Microsoft Word Information Disclosure Vulnerability. This CVE ID is unique from CVE-2022-41103.π Read
via "National Vulnerability Database".
βΌ CVE-2022-41105 βΌ
π Read
via "National Vulnerability Database".
Microsoft Excel Information Disclosure Vulnerability.π Read
via "National Vulnerability Database".
βΌ CVE-2020-12930 βΌ
π Read
via "National Vulnerability Database".
Improper parameters handling in AMD Secure Processor (ASP) drivers may allow a privileged attacker to elevate their privileges potentially leading to loss of integrity.π Read
via "National Vulnerability Database".
βΌ CVE-2022-38023 βΌ
π Read
via "National Vulnerability Database".
Netlogon RPC Elevation of Privilege Vulnerability.π Read
via "National Vulnerability Database".
βΌ CVE-2022-41114 βΌ
π Read
via "National Vulnerability Database".
Windows Bind Filter Driver Elevation of Privilege Vulnerability.π Read
via "National Vulnerability Database".
βΌ CVE-2022-31687 βΌ
π Read
via "National Vulnerability Database".
VMware Workspace ONE Assist prior to 22.10 contains a Broken Access Control vulnerability. A malicious actor with network access to Workspace ONE Assist may be able to obtain administrative access without the need to authenticate to the application.π Read
via "National Vulnerability Database".
βΌ CVE-2021-26360 βΌ
π Read
via "National Vulnerability Database".
An attacker with local access to the system can make unauthorized modifications of the security configuration of the SOC registers. This could allow potential corruption of AMD secure processorΓ’β¬β’s encrypted memory contents which may lead to arbitrary code execution in ASP.π Read
via "National Vulnerability Database".
βΌ CVE-2022-31688 βΌ
π Read
via "National Vulnerability Database".
VMware Workspace ONE Assist prior to 22.10 contains a Reflected cross-site scripting (XSS) vulnerability. Due to improper user input sanitization, a malicious actor with some user interaction may be able to inject javascript code in the target user's window.π Read
via "National Vulnerability Database".
βΌ CVE-2022-41054 βΌ
π Read
via "National Vulnerability Database".
Windows Resilient File System (ReFS) Elevation of Privilege Vulnerability.π Read
via "National Vulnerability Database".
βΌ CVE-2022-39879 βΌ
π Read
via "National Vulnerability Database".
Improper authorization vulnerability in?CallBGProvider prior to SMR Nov-2022 Release 1 allows local attacker to grant permission for accessing information with phone uid.π Read
via "National Vulnerability Database".
βΌ CVE-2022-41048 βΌ
π Read
via "National Vulnerability Database".
Microsoft ODBC Driver Remote Code Execution Vulnerability. This CVE ID is unique from CVE-2022-41047.π Read
via "National Vulnerability Database".
π1
βΌ CVE-2022-41085 βΌ
π Read
via "National Vulnerability Database".
Azure CycleCloud Elevation of Privilege Vulnerability.π Read
via "National Vulnerability Database".
βΌ CVE-2022-41063 βΌ
π Read
via "National Vulnerability Database".
Microsoft Excel Remote Code Execution Vulnerability. This CVE ID is unique from CVE-2022-41106.π Read
via "National Vulnerability Database".
βΌ CVE-2022-41050 βΌ
π Read
via "National Vulnerability Database".
Windows Extensible File Allocation Table Elevation of Privilege Vulnerability.π Read
via "National Vulnerability Database".
βΌ CVE-2022-39885 βΌ
π Read
via "National Vulnerability Database".
Improper access control vulnerability in BootCompletedReceiver_CMCC in DeviceManagement prior to SMR Nov-2022 Release 1 allows local attacker to access to Device information.π Read
via "National Vulnerability Database".
βΌ CVE-2022-44550 βΌ
π Read
via "National Vulnerability Database".
The graphics display module has a UAF vulnerability when traversing graphic layers. Successful exploitation of this vulnerability may affect system availability.π Read
via "National Vulnerability Database".