Security
Headlines
HeadlinesLatestCVEs

Tag

#windows

CVE-2023-28144: security - Security issue in Hotspot elevate_perf_privileges.sh (CVE-2023-28144)

KDAB Hotspot 1.3.x and 1.4.x through 1.4.1, in a non-default configuration, allows privilege escalation because of race conditions involving symlinks and elevate_perf_privileges.sh chown calls.

CVE
#vulnerability#web#mac#windows#linux#git#php#perl#auth
Access Control Gap in Microsoft Active Directory Widens Enterprise Attack Surface

One researcher thinks trust is broken in AD. Microsoft disagrees that there's a security vulnerability. But enterprise IT environments should be aware of an authentication gap either way.

CVE-2023-23410

Windows HTTP.sys Elevation of Privilege Vulnerability

CVE-2023-23388

Windows Bluetooth Driver Elevation of Privilege Vulnerability

CVE-2023-23404

Windows Point-to-Point Tunneling Protocol Remote Code Execution Vulnerability

CVE-2023-24910

Windows Graphics Component Elevation of Privilege Vulnerability

CVE-2023-23402

Windows Media Remote Code Execution Vulnerability

CVE-2023-23401

Windows Media Remote Code Execution Vulnerability

CVE-2023-23400

Windows DNS Server Remote Code Execution Vulnerability

CVE-2023-23393

Windows BrokerInfrastructure Service Elevation of Privilege Vulnerability