Tag

#Windows

15 published stories tagged with Windows.

highDefensive GuidanceJul 23, 20263 min read

Unauthorized action execution possible via deserialization flaw in Johnson Controls Victor software

A high-severity deserialization flaw has been identified in Johnson Controls' victor software running on Windows.

highExploited VulnerabilitiesJul 21, 20263 min read

Non-admin users can escalate privileges to administrator via Windows User Profile Service flaw

A zero-day vulnerability in the Windows User Profile Service, dubbed LegacyHive, allows non-admin users to escalate privileges to administrative levels.

highExploited VulnerabilitiesJul 15, 20262 min read

Local users can load administrative hives via Windows User Profile Service zero-day

A new zero-day vulnerability in the Windows User Profile Service allows local users to load administrative user hives.

highExploited VulnerabilitiesJul 15, 20263 min read

Unauthenticated attackers can hijack Zoom accounts through critical vulnerability in Windows software

馃毃 An unauthenticated attacker can hijack accounts via network access due to a critical flaw in Zoom's Windows software. This affects the standard Workplace client, VDI clients, and the Meeting SDK.

highExploited VulnerabilitiesJul 14, 20262 min read

Active exploitation of two zero-day flaws drives massive Microsoft security update targeting 622 vulnerabilities

Microsoft has released a massive update addressing 622 vulnerabilities, including two zero-days currently being exploited in the wild.

highExploited VulnerabilitiesJul 14, 20262 min read

Three zero-day vulnerabilities exploited in the wild require immediate Microsoft security updates

Microsoft's July 2026 Patch Tuesday addresses a record 570 flaws, including three zero-day vulnerabilities.

highVulnerabilityMay 8, 20264 min read

Brief: Acer PredatorSense Named Pipe Misconfiguration Enables SYSTEM Privilege Escalation

Acer PredatorSense versions 3.00.3136 through 3.00.3196 contain a local privilege escalation vulnerability caused by a misconfigured Windows named pipe.

highVulnerabilityMay 8, 20264 min read

Defender Guidance: Acer PredatorSense Named Pipe Misconfiguration Enables SYSTEM Privilege Escalation

Acer PredatorSense versions 3.00.3136 through 3.00.3196 contain a local privilege escalation vulnerability caused by a misconfigured Windows named pipe.

highVulnerabilityMay 8, 20264 min read

Detection Notes: Acer PredatorSense Named Pipe Misconfiguration Enables SYSTEM Privilege Escalation

Acer PredatorSense versions 3.00.3136 through 3.00.3196 contain a local privilege escalation vulnerability caused by a misconfigured Windows named pipe.

highVulnerabilityMay 8, 20264 min read

Risk Brief: Acer PredatorSense Named Pipe Misconfiguration Enables SYSTEM Privilege Escalation

Acer PredatorSense versions 3.00.3136 through 3.00.3196 contain a local privilege escalation vulnerability caused by a misconfigured Windows named pipe.

highVulnerabilityMay 8, 20264 min read

Brief: NAVER MYBOX Explorer for Windows Privilege Escalation Fixed in Version 3.0.11.160

NAVER MYBOX Explorer for Windows before 3.0.11.160 contains an improper privilege check that can allow a local attacker to escalate privileges to NT AUTHORITY\SYSTEM through registry manipulation.

highVulnerabilityMay 8, 20264 min read

Defender Guidance: NAVER MYBOX Explorer for Windows Privilege Escalation Fixed in Version 3.0.11.160

NAVER MYBOX Explorer for Windows before 3.0.11.160 contains an improper privilege check that can allow a local attacker to escalate privileges to NT AUTHORITY\SYSTEM through registry manipulation.

highVulnerabilityMay 8, 20264 min read

Detection Notes: NAVER MYBOX Explorer for Windows Privilege Escalation Fixed in Version 3.0.11.160

NAVER MYBOX Explorer for Windows before 3.0.11.160 contains an improper privilege check that can allow a local attacker to escalate privileges to NT AUTHORITY\SYSTEM through registry manipulation.

highVulnerabilityMay 8, 20264 min read

Risk Brief: NAVER MYBOX Explorer for Windows Privilege Escalation Fixed in Version 3.0.11.160

NAVER MYBOX Explorer for Windows before 3.0.11.160 contains an improper privilege check that can allow a local attacker to escalate privileges to NT AUTHORITY\SYSTEM through registry manipulation.

highVulnerabilityMay 8, 20264 min read

NAVER MYBOX Explorer for Windows Privilege Escalation Fixed in Version 3.0.11.160

NAVER MYBOX Explorer for Windows before 3.0.11.160 contains an improper privilege check that can allow a local attacker to escalate privileges to NT AUTHORITY\\SYSTEM through registry manipulation.