Vulnerabilities > Microsoft > Windows 10 1507 > High

DATE CVE VULNERABILITY TITLE RISK
2023-02-28 CVE-2023-1017 Out-of-bounds Write vulnerability in multiple products
An out-of-bounds write vulnerability exists in TPM2.0's Module Library allowing writing of a 2-byte data past the end of TPM2.0 command in the CryptParameterDecryption routine.
local
low complexity
trustedcomputinggroup microsoft CWE-787
7.8
2023-02-14 CVE-2023-21823 Integer Overflow or Wraparound vulnerability in Microsoft products
Windows Graphics Component Remote Code Execution Vulnerability
local
low complexity
microsoft CWE-190
7.8
2023-02-14 CVE-2023-23376 Out-of-bounds Write vulnerability in Microsoft products
Windows Common Log File System Driver Elevation of Privilege Vulnerability
local
low complexity
microsoft CWE-787
7.8
2023-02-12 CVE-2022-38396 Unspecified vulnerability in Microsoft products
HP Factory Preinstalled Images on certain systems that shipped with Windows 10 versions 20H2 and earlier OS versions might allow escalation of privilege via execution of certain files outside the restricted path.
local
low complexity
microsoft
7.8
2023-01-10 CVE-2023-21674 Use After Free vulnerability in Microsoft products
Windows Advanced Local Procedure Call (ALPC) Elevation of Privilege Vulnerability
local
low complexity
microsoft CWE-416
8.8
2022-11-09 CVE-2022-41073 Out-of-bounds Write vulnerability in Microsoft products
Windows Print Spooler Elevation of Privilege Vulnerability
local
low complexity
microsoft CWE-787
7.8
2022-11-09 CVE-2022-41125 Out-of-bounds Write vulnerability in Microsoft products
Windows CNG Key Isolation Service Elevation of Privilege Vulnerability
local
low complexity
microsoft CWE-787
7.8
2022-11-09 CVE-2022-41128 Out-of-bounds Write vulnerability in Microsoft products
Windows Scripting Languages Remote Code Execution Vulnerability
network
low complexity
microsoft CWE-787
8.8
2022-10-11 CVE-2022-38028 Unspecified vulnerability in Microsoft products
Windows Print Spooler Elevation of Privilege Vulnerability
local
low complexity
microsoft
7.8
2022-10-11 CVE-2022-41033 Type Confusion vulnerability in Microsoft products
Windows COM+ Event System Service Elevation of Privilege Vulnerability
local
low complexity
microsoft CWE-843
7.8