VendorsMicrosoftwindows_8.1any version
Vulnerabilities

Microsoft Windows 8.1 any version

Ranked by severity, then by exploit likelihood. Click a CVE ID for its full record.

2873CVEs
CVE-2019-1178
Windows Elevation of Privilege Vulnerability
Published 2019-08-14 · Modified
7.0EPSS 0.008
CVE-2019-1180
Windows Elevation of Privilege Vulnerability
Published 2019-08-14 · Modified
7.0EPSS 0.008
CVE-2022-21864
Windows UI Immersive Server API Elevation of Privilege Vulnerability
Published 2022-01-11 · Modified
7.0EPSS 0.008
CVE-2022-22717
Windows Print Spooler Elevation of Privilege Vulnerability
Published 2022-02-09 · Modified
7.0EPSS 0.007
CVE-2019-1177
Windows Elevation of Privilege Vulnerability
Published 2019-08-14 · Modified
7.0EPSS 0.007
CVE-2022-29125
Windows Push Notifications Apps Elevation of Privilege Vulnerability
Published 2022-05-10 · Modified
7.0EPSS 0.007
CVE-2022-21867
Windows Push Notifications Apps Elevation of Privilege Vulnerability
Published 2022-01-11 · Modified
7.0EPSS 0.007
CVE-2022-21868
Windows Devices Human Interface Elevation of Privilege Vulnerability
Published 2022-01-11 · Modified
7.0EPSS 0.007
CVE-2022-38029
Windows ALPC Elevation of Privilege Vulnerability
Published 2022-10-11 · Modified
7.0EPSS 0.007
CVE-2022-21862
Windows Application Model Core API Elevation of Privilege Vulnerability
Published 2022-01-11 · Modified
7.0EPSS 0.006
CVE-2022-21859
Windows Accounts Control Elevation of Privilege Vulnerability
Published 2022-01-11 · Modified
7.0EPSS 0.006
CVE-2022-29126
Tablet Windows User Interface Application Core Elevation of Privilege Vulnerability
Published 2022-05-10 · Modified
7.0EPSS 0.006
CVE-2022-23298
Windows NT OS Kernel Elevation of Privilege Vulnerability
Published 2022-03-09 · Modified
7.0EPSS 0.006
CVE-2023-21739
Windows Bluetooth Driver Elevation of Privilege Vulnerability
Published 2023-01-10 · Modified
7.0EPSS 0.006
CVE-2022-30151
Windows Ancillary Function Driver for WinSock Elevation of Privilege Vulnerability
Published 2022-06-15 · Modified
7.0EPSS 0.005
CVE-2022-30224
Windows Advanced Local Procedure Call (ALPC) Elevation of Privilege Vulnerability
Published 2022-07-12 · Modified
7.0EPSS 0.005
CVE-2022-22036
Performance Counters for Windows Elevation of Privilege Vulnerability
Published 2022-07-12 · Modified
7.0EPSS 0.005
CVE-2023-21532
Windows GDI Elevation of Privilege Vulnerability
Published 2023-01-10 · Modified
7.0EPSS 0.004
CVE-2022-26808
Windows File Explorer Elevation of Privilege Vulnerability
Published 2022-04-15 · Modified
7.0EPSS 0.004
CVE-2022-24540
Windows ALPC Elevation of Privilege Vulnerability
Published 2022-04-15 · Modified
7.0EPSS 0.004
CVE-2022-26827
Windows File Server Resource Management Service Elevation of Privilege Vulnerability
Published 2022-04-15 · Modified
7.0EPSS 0.004
CVE-2022-38027
Windows Storage Elevation of Privilege Vulnerability
Published 2022-10-11 · Modified
7.0EPSS 0.004
CVE-2022-23283
Windows ALPC Elevation of Privilege Vulnerability
Published 2022-03-09 · Modified
7.0EPSS 0.004
CVE-2022-26807
Windows Work Folder Service Elevation of Privilege Vulnerability
Published 2022-04-15 · Modified
7.0EPSS 0.003
CVE-2023-21542
Windows Installer Elevation of Privilege Vulnerability
Published 2023-01-10 · Modified
7.0EPSS 0.003
CVE-2014-0315
Untrusted search path vulnerability in Microsoft Windows XP SP2 and SP3, Windows Server 2003 SP2, Windows Vista SP2, Windows Server 2008 SP2 and R2 SP1, Windows 7 SP1, Windows 8, Windows 8.1, Windows Server 2012 Gold and R2, and Windows RT Gold and 8.1 allows local users to gain privileges via a Trojan horse cmd.exe file in the current working directory, as demonstrated by a directory that contains a .bat or .cmd file, aka "Windows File Handling Vulnerability."
Published 2014-04-08 · Modified
6.9EPSS 0.147
CVE-2015-0059
win32k.sys in the kernel-mode drivers in Microsoft Windows Server 2008 R2 SP1, Windows 7 SP1, Windows 8, Windows 8.1, Windows Server 2012 Gold and R2, and Windows RT Gold and 8.1 allows local users to gain privileges via a crafted TrueType font, aka "TrueType Font Parsing Remote Code Execution Vulnerability."
Published 2015-02-11 · Modified
6.91 PoCEPSS 0.111
CVE-2015-2368
Untrusted search path vulnerability in Microsoft Windows 7 SP1, Windows Server 2008 R2 SP1, Windows 8.1, Windows Server 2012 R2, and Windows RT 8.1 allows local users to gain privileges via a Trojan horse DLL in the current working directory, aka "Windows DLL Remote Code Execution Vulnerability."
Published 2015-07-14 · Modified
6.9EPSS 0.082
CVE-2015-0003
win32k.sys in the kernel-mode drivers in Microsoft Windows Server 2003 SP2, Windows Vista SP2, Windows Server 2008 SP2 and R2 SP1, Windows 7 SP1, Windows 8, Windows 8.1, Windows Server 2012 Gold and R2, and Windows RT Gold and 8.1 allows local users to gain privileges or cause a denial of service (NULL pointer dereference) via a crafted application, aka "Win32k Elevation of Privilege Vulnerability."
Published 2015-02-11 · Modified
6.91 PoCEPSS 0.045
CVE-2015-2511
The kernel-mode driver in Microsoft Windows Vista SP2, Windows Server 2008 SP2 and R2 SP1, Windows 7 SP1, Windows 8, Windows 8.1, Windows Server 2012 Gold and R2, Windows RT Gold and 8.1, and Windows 10 allows local users to gain privileges via a crafted application, aka "Win32k Memory Corruption Elevation of Privilege Vulnerability," a different vulnerability than CVE-2015-2517, CVE-2015-2518, and CVE-2015-2546.
Published 2015-09-09 · Modified
6.91 PoCEPSS 0.039
CVE-2015-2518
The kernel-mode driver in Microsoft Windows Vista SP2, Windows Server 2008 SP2 and R2 SP1, Windows 7 SP1, Windows 8, Windows 8.1, Windows Server 2012 Gold and R2, Windows RT Gold and 8.1, and Windows 10 allows local users to gain privileges via a crafted application, aka "Win32k Memory Corruption Elevation of Privilege Vulnerability," a different vulnerability than CVE-2015-2511, CVE-2015-2517, and CVE-2015-2546.
Published 2015-09-09 · Modified
6.91 PoCEPSS 0.039
CVE-2015-2517
The kernel-mode driver in Microsoft Windows Vista SP2, Windows Server 2008 SP2 and R2 SP1, Windows 7 SP1, Windows 8, Windows 8.1, Windows Server 2012 Gold and R2, Windows RT Gold and 8.1, and Windows 10 allows local users to gain privileges via a crafted application, aka "Win32k Memory Corruption Elevation of Privilege Vulnerability," a different vulnerability than CVE-2015-2511, CVE-2015-2518, and CVE-2015-2546.
Published 2015-09-09 · Modified
6.91 PoCEPSS 0.039
CVE-2015-6100
The kernel in Microsoft Windows Vista SP2, Windows Server 2008 SP2 and R2 SP1, Windows 7 SP1, Windows 8, Windows 8.1, Windows Server 2012 Gold and R2, Windows RT Gold and 8.1, and Windows 10 Gold and 1511 allows local users to gain privileges via a crafted application, aka "Windows Kernel Memory Elevation of Privilege Vulnerability," a different vulnerability than CVE-2015-6101.
Published 2015-11-11 · Modified
6.91 PoCEPSS 0.032
CVE-2015-6101
The kernel in Microsoft Windows Vista SP2, Windows Server 2008 SP2 and R2 SP1, Windows 7 SP1, Windows 8, Windows 8.1, Windows Server 2012 Gold and R2, Windows RT Gold and 8.1, and Windows 10 Gold and 1511 allows local users to gain privileges via a crafted application, aka "Windows Kernel Memory Elevation of Privilege Vulnerability," a different vulnerability than CVE-2015-6100.
Published 2015-11-11 · Modified
6.91 PoCEPSS 0.031
CVE-2013-5058
Integer overflow in the kernel-mode drivers in Microsoft Windows XP SP2 and SP3, Windows Server 2003 SP2, Windows Vista SP2, Windows Server 2008 SP2 and R2 SP1, Windows 7 SP1, Windows 8, Windows 8.1, and Windows Server 2012 Gold and R2 allows local users to gain privileges via a crafted application, aka "Win32k Integer Overflow Vulnerability."
Published 2013-12-11 · Modified
6.91 PoCEPSS 0.028
CVE-2014-2780
DirectShow in Microsoft Windows Vista SP2, Windows Server 2008 SP2 and R2 SP1, Windows 7 SP1, Windows 8, Windows 8.1, and Windows Server 2012 Gold and R2 allows local users to gain privileges by leveraging control over a low-integrity process to execute a crafted application, aka "DirectShow Elevation of Privilege Vulnerability."
Published 2014-07-08 · Modified
6.9EPSS 0.018
CVE-2015-1702
The Service Control Manager (SCM) in Microsoft Windows Server 2003 SP2, Windows Vista SP2, Windows Server 2008 SP2 and R2 SP1, Windows 7 SP1, Windows 8, Windows 8.1, Windows Server 2012 Gold and R2, and Windows RT Gold and 8.1 does not properly constrain impersonation levels, which allows local users to gain privileges via a crafted application, aka "Service Control Manager Elevation of Privilege Vulnerability."
Published 2015-05-13 · Modified
6.9EPSS 0.016
CVE-2015-2371
The Windows Installer service in Microsoft Windows Server 2003 SP2 and R2 SP2, Windows Vista SP2, Windows Server 2008 SP2 and R2 SP1, Windows 7 SP1, Windows 8, Windows 8.1, Windows Server 2012 Gold and R2, and Windows RT Gold and 8.1 allows local users to gain privileges via a custom action script associated with a .msi package, aka "Windows Installer EoP Vulnerability."
Published 2015-07-14 · Modified
6.9EPSS 0.015
CVE-2022-21928
Windows Resilient File System (ReFS) Remote Code Execution Vulnerability
Published 2022-01-11 · Modified
6.9EPSS 0.007
CVE-2022-22023
Windows Portable Device Enumerator Service Security Feature Bypass Vulnerability
Published 2022-07-12 · Modified
6.9EPSS 0.006
← Prev54 / 72Next →