VendorsMicrosoftwindows_rt_8.1all versions
Vulnerabilities

Microsoft Windows RT 8.1

Ranked by severity, then by exploit likelihood. Click a CVE ID for its full record.

2336CVEs
CVE-2022-33645
Windows TCP/IP Driver Denial of Service Vulnerability
Published 2022-10-11 · Modified
7.5EPSS 0.022
CVE-2022-38041
Windows Secure Channel Denial of Service Vulnerability
Published 2022-10-11 · Modified
7.5EPSS 0.022
CVE-2022-30211
Windows Layer 2 Tunneling Protocol (L2TP) Remote Code Execution Vulnerability
Published 2022-07-12 · Modified
7.5EPSS 0.021
CVE-2022-21983
Win32 Stream Enumeration Remote Code Execution Vulnerability
Published 2022-04-15 · Modified
7.5EPSS 0.021
CVE-2023-21757
Windows Layer 2 Tunneling Protocol (L2TP) Denial of Service Vulnerability
Published 2023-01-10 · Modified
7.5EPSS 0.020
CVE-2023-21728
Windows Netlogon Denial of Service Vulnerability
Published 2023-01-10 · Modified
7.5EPSS 0.020
CVE-2023-21683
Windows Internet Key Exchange (IKE) Extension Denial of Service Vulnerability
Published 2023-01-10 · Modified
7.5EPSS 0.020
CVE-2023-21527
Windows iSCSI Service Denial of Service Vulnerability
Published 2023-01-10 · Modified
7.5EPSS 0.020
CVE-2022-30146
Windows Lightweight Directory Access Protocol (LDAP) Remote Code Execution Vulnerability
Published 2022-06-15 · Modified
7.5EPSS 0.019
CVE-2022-30143
Windows Lightweight Directory Access Protocol (LDAP) Remote Code Execution Vulnerability
Published 2022-06-15 · Modified
7.5EPSS 0.019
CVE-2022-30140
Windows iSCSI Discovery Service Remote Code Execution Vulnerability
Published 2022-06-15 · Modified
7.5EPSS 0.019
CVE-2022-30149
Windows Lightweight Directory Access Protocol (LDAP) Remote Code Execution Vulnerability
Published 2022-06-15 · Modified
7.5EPSS 0.019
CVE-2022-24534
Win32 Stream Enumeration Remote Code Execution Vulnerability
Published 2022-04-15 · Modified
7.5EPSS 0.019
CVE-2022-24485
Win32 File Enumeration Remote Code Execution Vulnerability
Published 2022-04-15 · Modified
7.5EPSS 0.017
CVE-2022-37978
Windows Active Directory Certificate Services Security Feature Bypass
Published 2022-10-11 · Modified
7.5EPSS 0.015
CVE-2022-22040
Internet Information Services Dynamic Compression Module Denial of Service Vulnerability
Published 2022-07-12 · Modified
7.5EPSS 0.015
CVE-2022-30194
Windows WebBrowser Control Remote Code Execution Vulnerability
Published 2022-08-09 · Modified
7.5EPSS 0.015
CVE-2022-30144
Windows Bluetooth Service Remote Code Execution Vulnerability
Published 2022-08-09 · Modified
7.5EPSS 0.009
CVE-2021-38665
Remote Desktop Protocol Client Information Disclosure Vulnerability
Published 2021-11-10 · Modified
7.4EPSS 0.070
CVE-2021-31186
Windows Remote Desktop Protocol (RDP) Information Disclosure Vulnerability
Published 2021-05-11 · Modified
7.4EPSS 0.030
CVE-2022-30209
Windows IIS Server Elevation of Privilege Vulnerability
Published 2022-07-12 · Modified
7.4EPSS 0.026
CVE-2022-30203
Windows Boot Manager Security Feature Bypass Vulnerability
Published 2022-07-12 · Modified
7.4EPSS 0.015
CVE-2017-0213
Windows COM Aggregate Marshaler in Microsoft Windows Server 2008 SP2 and R2 SP1, Windows 7 SP1, Windows 8.1, Windows Server 2012 Gold and R2, Windows RT 8.1, Windows 10 Gold, 1511, 1607, and 1703, and Windows Server 2016 allows an elevation privilege vulnerability when an attacker runs a specially crafted application, aka "Windows COM Elevation of Privilege Vulnerability". This CVE ID is unique from CVE-2017-0214.
Published 2017-05-12 · Analyzed
7.3KEV1 PoCEPSS 0.841
CVE-2022-35755
Windows Print Spooler Elevation of Privilege Vulnerability
Published 2023-05-31 · Modified
7.3EPSS 0.098
CVE-2022-35793
Windows Print Spooler Elevation of Privilege Vulnerability
Published 2022-08-09 · Modified
7.3EPSS 0.091
CVE-2016-0006
The sandbox implementation in Microsoft Windows Vista SP2, Windows Server 2008 SP2 and R2 SP1, Windows 7 SP1, Windows 8, Windows 8.1, Windows Server 2012 Gold and R2, Windows RT Gold and 8.1, and Windows 10 Gold and 1511 mishandles reparse points, which allows local users to gain privileges via a crafted application, aka "Windows Mount Point Elevation of Privilege Vulnerability," a different vulnerability than CVE-2016-0007.
Published 2016-01-13 · Modified
7.31 PoCEPSS 0.040
CVE-2016-3252
The kernel-mode drivers in Microsoft Windows Vista SP2, Windows Server 2008 SP2 and R2 SP1, Windows 7 SP1, Windows 8.1, Windows Server 2012 Gold and R2, Windows RT 8.1, and Windows 10 Gold and 1511 allow local users to gain privileges via a crafted application, aka "Win32k Elevation of Privilege Vulnerability," a different vulnerability than CVE-2016-3249, CVE-2016-3254, and CVE-2016-3286.
Published 2016-07-13 · Modified
7.3EPSS 0.038
CVE-2017-8460
Windows PDF in Windows 8.1, Windows Server 2012 Gold and R2, Windows RT 8.1, Windows 10 Gold, 1511, 1607, 1703, and Windows Server 2016 allows information disclosure when a user opens a specially crafted PDF file, aka "Windows PDF Information Disclosure Vulnerability".
Published 2017-06-15 · Modified
7.3EPSS 0.033
CVE-2016-7211
The kernel-mode drivers in Microsoft Windows Vista SP2, Windows Server 2008 SP2 and R2 SP1, Windows 7 SP1, Windows 8.1, Windows Server 2012 Gold and R2, Windows RT 8.1, and Windows 10 Gold, 1511, and 1607 allow local users to gain privileges via a crafted application, aka "Win32k Elevation of Privilege Vulnerability." a different vulnerability than CVE-2016-3266, CVE-2016-3376, and CVE-2016-7185.
Published 2016-10-14 · Modified
7.3EPSS 0.030
CVE-2016-3286
The kernel-mode drivers in Microsoft Windows Vista SP2, Windows Server 2008 SP2 and R2 SP1, Windows 7 SP1, Windows 8.1, Windows Server 2012 Gold and R2, Windows RT 8.1, and Windows 10 Gold and 1511 allow local users to gain privileges via a crafted application, aka "Win32k Elevation of Privilege Vulnerability," a different vulnerability than CVE-2016-3249, CVE-2016-3252, and CVE-2016-3254.
Published 2016-07-13 · Modified
7.3EPSS 0.025
CVE-2016-3249
The kernel-mode drivers in Microsoft Windows Vista SP2, Windows Server 2008 SP2 and R2 SP1, Windows 7 SP1, Windows 8.1, Windows Server 2012 Gold and R2, Windows RT 8.1, and Windows 10 Gold and 1511 allow local users to gain privileges via a crafted application, aka "Win32k Elevation of Privilege Vulnerability," a different vulnerability than CVE-2016-3252, CVE-2016-3254, and CVE-2016-3286.
Published 2016-07-13 · Modified
7.3EPSS 0.025
CVE-2022-30170
Windows Credential Roaming Service Elevation of Privilege Vulnerability
Published 2022-09-13 · Modified
7.3EPSS 0.016
CVE-2015-6132
Microsoft Windows Vista SP2, Windows Server 2008 SP2 and R2 SP1, Windows 7 SP1, Windows 8, Windows 8.1, Windows Server 2012 Gold and R2, Windows RT Gold and 8.1, and Windows 10 Gold and 1511 mishandle library loading, which allows local users to gain privileges via a crafted application, aka "Windows Library Loading Remote Code Execution Vulnerability."
Published 2015-12-09 · Modified
7.22 PoCEPSS 0.847
CVE-2015-6133
Microsoft Windows 8, Windows 8.1, Windows Server 2012 Gold and R2, Windows RT Gold and 8.1, and Windows 10 Gold and 1511 mishandle library loading, which allows local users to gain privileges via a crafted application, aka "Windows Library Loading Remote Code Execution Vulnerability."
Published 2015-12-09 · Modified
7.21 PoCEPSS 0.666
CVE-2015-2525
Task Scheduler in Microsoft Windows Vista SP2, Windows Server 2008 SP2 and R2 SP1, Windows 7 SP1, Windows 8, Windows 8.1, Windows Server 2012 Gold and R2, Windows RT Gold and 8.1, and Windows 10 allows local users to bypass intended filesystem restrictions and delete arbitrary files via unspecified vectors, aka "Windows Task File Deletion Elevation of Privilege Vulnerability."
Published 2015-09-09 · Modified
7.21 PoCEPSS 0.315
CVE-2015-0002
The AhcVerifyAdminContext function in ahcache.sys in the Application Compatibility component in Microsoft Windows 7 SP1, Windows Server 2008 R2 SP1, Windows 8, Windows 8.1, Windows Server 2012 Gold and R2, and Windows RT Gold and 8.1 does not verify that an impersonation token is associated with an administrative account, which allows local users to gain privileges by running AppCompatCache.exe with a crafted DLL file, aka MSRC ID 20544 or "Microsoft Application Compatibility Infrastructure Elevation of Privilege Vulnerability."
Published 2015-01-13 · Modified
7.21 PoCEPSS 0.138
CVE-2015-0057
win32k.sys in the kernel-mode drivers in Microsoft Windows Server 2003 SP2, Windows Vista SP2, Windows Server 2008 SP2 and R2 SP1, Windows 7 SP1, Windows 8, Windows 8.1, Windows Server 2012 Gold and R2, and Windows RT Gold and 8.1 allows local users to gain privileges via a crafted application, aka "Win32k Elevation of Privilege Vulnerability."
Published 2015-02-11 · Modified
7.22 PoCEPSS 0.128
CVE-2014-1767
Double free vulnerability in the Ancillary Function Driver (AFD) in afd.sys in the kernel-mode drivers in Microsoft Windows Server 2003 SP2, Windows Vista SP2, Windows Server 2008 SP2 and R2 SP1, Windows 7 SP1, Windows 8, Windows 8.1, Windows Server 2012 Gold and R2, and Windows RT Gold and 8.1 allows local users to gain privileges via a crafted application, aka "Ancillary Function Driver Elevation of Privilege Vulnerability."
Published 2014-07-08 · Modified
7.22 PoCEPSS 0.127
CVE-2015-2527
The process-initialization implementation in win32k.sys in the kernel-mode drivers in Microsoft Windows 8, Windows 8.1, Windows Server 2012 Gold and R2, Windows RT Gold and 8.1, and Windows 10 does not properly constrain impersonation levels, which allows local users to gain privileges via a crafted application, aka "Win32k Elevation of Privilege Vulnerability."
Published 2015-09-09 · Modified
7.21 PoCEPSS 0.066
CVE-2015-1769
Mount Manager in Microsoft Windows Vista SP2, Windows Server 2008 SP2 and R2 SP1, Windows 7 SP1, Windows 8, Windows 8.1, Windows Server 2012 Gold and R2, Windows RT Gold and 8.1, and Windows 10 mishandles symlinks, which allows physically proximate attackers to execute arbitrary code by connecting a crafted USB device, aka "Mount Manager Elevation of Privilege Vulnerability."
Published 2015-08-15 · Analyzed
7.2KEVEPSS 0.041
← Prev39 / 59Next →