Vulnerabilities > Microsoft > Powershell > 7.1.4

DATE CVE VULNERABILITY TITLE RISK
2023-12-18 CVE-2023-48795 Improper Validation of Integrity Check Value vulnerability in multiple products
The SSH transport protocol with certain OpenSSH extensions, found in OpenSSH before 9.6 and other products, allows remote attackers to bypass integrity checks such that some packets are omitted (from the extension negotiation message), and a client and server may consequently end up with a connection for which some security features have been downgraded or disabled, aka a Terrapin attack.
5.9
2022-04-15 CVE-2022-26788 Unspecified vulnerability in Microsoft products
PowerShell Elevation of Privilege Vulnerability
local
low complexity
microsoft
7.8
2022-03-09 CVE-2022-24512 .NET and Visual Studio Remote Code Execution Vulnerability
network
low complexity
microsoft fedoraproject
6.3
2021-10-13 CVE-2021-41355 Unspecified vulnerability in Microsoft .Net and Visual Studio 2019
.NET Core and Visual Studio Information Disclosure Vulnerability
low complexity
microsoft
5.7
2020-09-15 CVE-2020-8927 Classic Buffer Overflow vulnerability in multiple products
A buffer overflow exists in the Brotli library versions prior to 1.0.8 where an attacker controlling the input length of a "one-shot" decompression request to a script can trigger a crash, which happens when copying over chunks of data larger than 2 GiB.
6.5
2020-09-11 CVE-2020-0951 Unspecified vulnerability in Microsoft products
<p>A security feature bypass vulnerability exists in Windows Defender Application Control (WDAC) which could allow an attacker to bypass WDAC enforcement.
local
low complexity
microsoft
6.7