Tag
#Security Vulnerability
Improper input validation in Windows Routing and Remote Access Service (RRAS) allows an authorized attacker to deny service locally.
Exposure of sensitive information to an unauthorized actor in Windows Speech allows an authorized attacker to disclose information locally.
Improper access control in Customer Experience Improvement Program (CEIP) allows an authorized attacker to elevate privileges locally.
External control of file name or path in Windows WLAN Service allows an authorized attacker to elevate privileges locally.
Out-of-bounds read in Windows Hyper-V allows an unauthorized attacker to disclose information locally.
**What privileges could be gained by an attacker who successfully exploited the vulnerability?** An attacker who successfully exploited this vulnerability could gain administrator privileges.
Untrusted pointer dereference in Storvsp.sys Driver allows an authorized attacker to deny service locally.
Use after free in Multimedia Class Scheduler Service (MMCSS) allows an authorized attacker to elevate privileges locally.
Use after free in Microsoft Office allows an unauthorized attacker to execute code locally.
Untrusted pointer dereference in Microsoft Office Excel allows an unauthorized attacker to disclose information over a network.