Incorrect authorization in Visual Studio Code allows an unauthorized attacker to bypass a security feature locally.
Incorrect authorization in Microsoft Office SharePoint allows an authorized attacker to perform tampering over a network.
Incorrect authorization in .NET Framework allows an authorized attacker to elevate privileges over a network.
Incorrect authorization in Windows Container Isolation FS Filter Driver (unionfs.sys) allows an authorized attacker to disclose information locally.
Incorrect authorization in Windows Installer allows an authorized attacker to elevate privileges locally.
Incorrect authorization in .NET allows an unauthorized attacker to bypass a security feature over a network.
Authentication bypass by assumed-immutable data in ASP.NET Core allows an authorized attacker to elevate privileges over a network.
Incorrect authorization in Microsoft Exchange Online allows an authorized attacker to elevate privileges over a network.
Improper authorization in .NET allows an authorized attacker to elevate privileges locally.
Improper authorization in Microsoft Azure Kubernetes Service allows an unauthorized attacker to elevate privileges over a network.
Improper authorization in Azure AI Foundry allows an unauthorized attacker to elevate privileges over a network.
Improper authentication in Azure SRE Agent allows an unauthorized attacker to disclose information over a network.
Improper authentication in Azure Arc allows an authorized attacker to elevate privileges locally.
Improper authorization in Microsoft Power Apps allows an authorized attacker to execute code over a network.
Improper authorization in Azure Automation allows an authorized attacker to elevate privileges over a network.
On-Premises Data Gateway Information Disclosure Vulnerability
Secure Boot Security Feature Bypass Vulnerability
Windows Lock Screen Security Feature Bypass Vulnerability
Windows Boot Manager Security Feature Bypass Vulnerability
Microsoft Publisher Security Feature Bypass Vulnerability
Microsoft Edge (Chromium-based) Security Feature Bypass Vulnerability
Windows Boot Manager Security Feature Bypass Vulnerability
aad-pod-identity assigns Azure Active Directory identities to Kubernetes applications and has now been deprecated as of 24 October 2022. The NMI comp…
Windows Mark of the Web Security Feature Bypass Vulnerability
Windows Boot Manager Security Feature Bypass Vulnerability
Windows AD FS Security Feature Bypass Vulnerability
OneFuzz is an open source self-hosted Fuzzing-As-A-Service platform. Starting with OneFuzz 2.12.0 or greater, an incomplete authorization check allow…
Dell Wyse Windows Embedded System versions WIE10 LTSC 2019 and earlier contain an improper authorization vulnerability. A local authenticated malicio…
Windows Container Manager Service Elevation of Privilege Vulnerability
Windows Services and Controller App Elevation of Privilege Vulnerability