Power Shell — Known Vulnerabilities
25 vulnerabilities mapped against this product across all versions. Grouped by the release each fix landed in — newest tracked release v7.6.2.0.
Fixed in v7.x 24
NET, .NET Framework, and Visual Studio Security Feature Bypass Vulnerability
PowerShell Remote Code Execution Vulnerability
Improper input validation in Microsoft PowerShell allows an unauthorized attacker to bypass a security feature locally.
Windows Graphics Component Elevation of Privilege Vulnerability
PowerShell Elevation of Privilege Vulnerability
Uncontrolled resource consumption in .NET allows an unauthorized attacker to deny service over a network.
Untrusted search path in .NET and Visual Studio allows an unauthorized attacker to execute code over a network.
.NET Remote Code Execution Vulnerability
Microsoft QUIC Denial of Service Vulnerability
.NET and Visual Studio Denial of Service Vulnerability
.NET Denial of Service Vulnerability
.NET and Visual Studio Denial of Service Vulnerability
A denial of service vulnerability exists when .NET Core or .NET Framework improperly handles web requests, aka '.NET Core & .NET Framework Denial of Service Vulnerability'.
Improper access control in Microsoft PowerShell allows an authorized attacker to elevate privileges locally.
.NET, .NET Framework, and Visual Studio Remote Code Execution Vulnerability
Improper restriction of communication channel to intended endpoints in Windows PowerShell allows an authorized attacker to elevate privileges locally.
A security feature bypass vulnerability exists in Windows Defender Application Control (WDAC) which could allow an attacker to bypass WDAC enforcement. An attacker who successfully exploited this vulnerability could execute PowerShell commands that would be blocked by WDAC.…
PowerShell Information Disclosure Vulnerability
A buffer overflow exists in the Brotli library versions prior to 1.0.8 where an attacker controlling the input length of a "one-shot" decompression request to a script can trigger a crash, which happens when copying over chunks of…
.NET and Visual Studio Remote Code Execution Vulnerability
.NET and Visual Studio Remote Code Execution Vulnerability
.NET Spoofing Vulnerability
.NET Core and Visual Studio Information Disclosure Vulnerability
Microsoft PowerShell Spoofing Vulnerability
Fixed in v1.x 1
A remote code execution vulnerability exists in PowerShell Editor Services, aka "PowerShell Editor Services Remote Code Execution Vulnerability." This affects PowerShell Editor, PowerShell Extension.
