Microsoft Windows 10
cpe:2.3:o:microsoft:windows_10:*:*:*:*:*:*:*
A vulnerability exists in Windows Push Notifications due to the use of uninitialized resources, allowing an authorized attacker to locally disclose information. This vulnerability affects multiple Windows versions, including various releases of Windows 10, Windows 11, and Windows Server. The disclosed information could include uninitialized memory, potentially leading to the exposure of sensitive data.
Exploitation of this vulnerability could result in unauthorized information disclosure.
Users can apply the security update for this vulnerability, which is available through the Microsoft Update Catalog. Specific update details can be found in the Microsoft Knowledge Base articles KB5094122, KB5094123, KB5094125, KB5094126, and KB5093998.
Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.