Vulnerabilities (CVE)

Filtered by CWE-782
Total 23 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2023-44976 2026-06-17 N/A 3.2 LOW
Hangzhou Shunwang Rentdrv2 before 2024-12-24 allows local users to terminate EDR processes and possibly have unspecified other impact via DeviceIoControl with control code 0x22E010, as exploited in the wild in October 2023.
CVE-2023-35841 1 Phoenixtech 1 Winflash 2026-06-17 N/A 7.8 HIGH
Exposed IOCTL with Insufficient Access Control in Phoenix WinFlash Driver on Windows allows Privilege Escalation which allows for modification of system firmware.This issue affects WinFlash Driver: before 4.5.0.0.
CVE-2021-21551 1 Dell 568 Alienware 14, Alienware 17 51m R2, Alienware Area 51 and 565 more 2026-06-17 4.6 MEDIUM 8.8 HIGH
Dell dbutil_2_3.sys driver contains an insufficient access control vulnerability which may lead to escalation of privileges, denial of service, or information disclosure. Local authenticated user access is required.