Microsoft Windows Defender vulnerabilities
6 known vulnerabilities affecting microsoft/windows_defender.
Total CVEs
6
CISA KEV
1
actively exploited
Public exploits
1
Exploited in wild
1
Severity breakdown
HIGH6
Vulnerabilities
Page 1 of 1
CVE-2023-36422HIGHCVSS 7.8fixed in 4.18.23100.20092023-11-14
CVE-2023-36422 [HIGH] CWE-426 CVE-2023-36422: Microsoft Windows Defender Elevation of Privilege Vulnerability
Microsoft Windows Defender Elevation of Privilege Vulnerability
nvd
CVE-2023-38175HIGHCVSS 7.8fixed in 1.1.23060.30012023-08-08
CVE-2023-38175 [HIGH] CWE-59 CVE-2023-38175: Microsoft Windows Defender Elevation of Privilege Vulnerability
Microsoft Windows Defender Elevation of Privilege Vulnerability
nvd
CVE-2021-24092HIGHCVSS 7.8vN/A2021-02-25
CVE-2021-24092 [HIGH] CWE-269 CVE-2021-24092: Microsoft Defender Elevation of Privilege Vulnerability
Microsoft Defender Elevation of Privilege Vulnerability
cvelistv5nvd
CVE-2021-1647HIGHCVSS 7.8KEVvN/A2021-01-12
CVE-2021-1647 [HIGH] CVE-2021-1647: Microsoft Defender Remote Code Execution Vulnerability
Microsoft Defender Remote Code Execution Vulnerability
cvelistv5nvd
CVE-2019-1161HIGHCVSS 7.1vN/A2019-08-14
CVE-2019-1161 [HIGH] CVE-2019-1161: An elevation of privilege vulnerability exists when the MpSigStub.exe for Defender allows file delet
An elevation of privilege vulnerability exists when the MpSigStub.exe for Defender allows file deletion in arbitrary locations.
To exploit the vulnerability, an attacker would first have to log on to the system. An attacker could then run a specially crafted command that could exploit the vulnerability and delete protected files on an affected system once MpSig
cvelistv5nvd
CVE-2018-0986HIGHCVSS 8.8PoCvWindows 10 for 32-bit SystemsvWindows 10 for x64-based Systems+23 more2018-04-04
CVE-2018-0986 [HIGH] CWE-787 CVE-2018-0986: A remote code execution vulnerability exists when the Microsoft Malware Protection Engine does not p
A remote code execution vulnerability exists when the Microsoft Malware Protection Engine does not properly scan a specially crafted file, leading to memory corruption, aka "Microsoft Malware Protection Engine Remote Code Execution Vulnerability." This affects Windows Defender, Windows Intune Endpoint Protection, Microsoft Security Essentials, Microsoft
cvelistv5nvd