Vulnerability index

Browse CVEs

458 matching
Filters 2 Clear all
Severity

Filters apply as you choose them.

CRITICAL 9.9 CVE-2019-1365 An elevation of privilege vulnerability exists when Microsoft IIS Server fails to check the length of a buffer prior to copying memory to it.An attac… Windows 10 Patch available Fix from $2,3002019-10-10 CRITICAL 9.8 CVE-2019-1306EPSS 17% A remote code execution vulnerability exists when Azure DevOps Server (ADO) and Team Foundation Server (TFS) fail to validate input properly, aka 'Az… Team Foundation Server Patch available Fix from $2,3002019-09-11 CRITICAL 9.8 CVE-2019-1205EPSS 5% A remote code execution vulnerability exists in Microsoft Word software when it fails to properly handle objects in memory. An attacker who successfu… Office Patch available Fix from $2,3002019-08-14 CRITICAL 9.8 CVE-2019-1212EPSS 7% A memory corruption vulnerability exists in the Windows Server DHCP service when processing specially crafted packets. An attacker who successfully e… Windows 10 Patch available Fix from $2,3002019-08-14 CRITICAL 9.8 CVE-2019-1222EPSS 8% A remote code execution vulnerability exists in Remote Desktop Services – formerly known as Terminal Services – when an unauthenticated attacker conn… Windows 10 Patch available Fix from $2,3002019-08-14 CRITICAL 9.8 CVE-2019-1226EPSS 8% A remote code execution vulnerability exists in Remote Desktop Services – formerly known as Terminal Services – when an unauthenticated attacker conn… Windows 10 Patch available Fix from $2,3002019-08-14 CRITICAL 9.8 CVE-2019-1181EPSS 76% A remote code execution vulnerability exists in Remote Desktop Services – formerly known as Terminal Services – when an unauthenticated attacker conn… Windows 10 Patch available Fix from $2,3002019-08-14 CRITICAL 9.8 CVE-2019-1182EPSS 17% A remote code execution vulnerability exists in Remote Desktop Services – formerly known as Terminal Services – when an unauthenticated attacker conn… Windows 10 Patch available Fix from $2,3002019-08-14 CRITICAL 9.8 CVE-2019-0736 A memory corruption vulnerability exists in the Windows DHCP client when an attacker sends specially crafted DHCP responses to a client. An attacker … Windows 10 Patch available Fix from $2,3002019-08-14 CRITICAL 9.1 CVE-2019-1109 A spoofing vulnerability exists when Microsoft Office Javascript does not check the validity of the web page making a request to Office documents.An … Office Patch available Fix from $2,3002019-07-15 CRITICAL 9.8 CVE-2019-1072EPSS 12% A remote code execution vulnerability exists when Azure DevOps Server and Team Foundation Server (TFS) improperly handle user input, aka 'Azure DevOp… Team Foundation Server Patch available Fix from $2,3002019-07-15 CRITICAL 9.8 CVE-2019-0785EPSS 48% A memory corruption vulnerability exists in the Windows Server DHCP service when an attacker sends specially crafted packets to a DHCP failover serve… Windows Server 2012 Patch available Fix from $2,3002019-07-15 CRITICAL 9.0 CVE-2019-0938 An elevation of privilege vulnerability exists in Microsoft Edge that could allow an attacker to escape from the AppContainer sandbox in the browser,… Edge Patch available Fix from $2,3002019-05-16 CRITICAL 9.8 CVE-2019-0708 KEVEPSS 100% A remote code execution vulnerability exists in Remote Desktop Services formerly known as Terminal Services when an unauthenticated attacker connects… Windows 7 Patch available Fix from $2,3002019-05-16 CRITICAL 9.8 CVE-2019-0725EPSS 26% A memory corruption vulnerability exists in the Windows Server DHCP service when processing specially crafted packets, aka 'Windows DHCP Server Remot… Windows Server 2008 Patch available Fix from $2,3002019-05-16 CRITICAL 9.8 CVE-2019-0813 An elevation of privilege vulnerability exists when Windows Admin Center improperly impersonates operations in certain situations, aka 'Windows Admin… Windows Admin Center 1809.5+ Fix from $2,3002019-04-09 CRITICAL 9.8 CVE-2019-0786EPSS 7% An elevation of privilege vulnerability exists in the Microsoft Server Message Block (SMB) Server when an attacker with valid credentials attempts to… Windows 10 Patch available Fix from $2,3002019-04-09 CRITICAL 9.8 CVE-2019-0697EPSS 32% A memory corruption vulnerability exists in the Windows DHCP client when an attacker sends specially crafted DHCP responses to a client, aka 'Windows… Windows 10 Patch available Fix from $2,3002019-04-09 CRITICAL 9.8 CVE-2019-0698EPSS 64% A memory corruption vulnerability exists in the Windows DHCP client when an attacker sends specially crafted DHCP responses to a client, aka 'Windows… Windows 10 Patch available Fix from $2,3002019-04-09 CRITICAL 9.8 CVE-2019-0726EPSS 52% A memory corruption vulnerability exists in the Windows DHCP client when an attacker sends specially crafted DHCP responses to a client, aka 'Windows… Windows 10 Patch available Fix from $2,3002019-04-09 CRITICAL 9.8 CVE-2019-0729 An Elevation of Privilege vulnerability exists in the way Azure IoT Java SDK generates symmetric keys for encryption, allowing an attacker to predict… Java Software Development Kit Patch available Fix from $2,3002019-03-05 CRITICAL 9.8 CVE-2019-0626EPSS 61% A memory corruption vulnerability exists in the Windows Server DHCP service when an attacker sends specially crafted packets to a DHCP server, aka 'W… Windows 10 Patch available Fix from $2,3002019-03-05 CRITICAL 9.8 CVE-2019-0604 KEVEPSS 100% A remote code execution vulnerability exists in Microsoft SharePoint when the software fails to check the source markup of an application package, ak… Sharepoint Enterprise Server Patch available Fix from $2,3002019-03-05 CRITICAL 9.8 CVE-2019-0586EPSS 15% A remote code execution vulnerability exists in Microsoft Exchange software when the software fails to properly handle objects in memory, aka "Micros… Exchange Server Patch available Fix from $2,3002019-01-08 CRITICAL 9.8 CVE-2019-0547EPSS 67% A memory corruption vulnerability exists in the Windows DHCP client when an attacker sends specially crafted DHCP responses to a client, aka "Windows… Windows 10 Patch available Fix from $2,3002019-01-08 CRITICAL 9.8 CVE-2018-8626EPSS 35% A remote code execution vulnerability exists in Windows Domain Name System (DNS) servers when they fail to properly handle requests, aka "Windows DNS… Windows 10 Patch available Fix from $2,3002018-12-12 CRITICAL 9.8 CVE-2018-8540EPSS 21% A remote code execution vulnerability exists when the Microsoft .NET Framework fails to validate input properly, aka ".NET Framework Remote Code Inje… .net Framework Patch available Fix from $2,3002018-12-12 CRITICAL 9.8 CVE-2018-8529EPSS 13% A remote code execution vulnerability exists when Team Foundation Server (TFS) does not enable basic authorization on the communication between the T… Team Foundation Server Patch available Fix from $2,3002018-11-15 CRITICAL 9.8 CVE-2018-8476EPSS 60% A remote code execution vulnerability exists in the way that Windows Deployment Services TFTP Server handles objects in memory, aka "Windows Deployme… Windows Server 2008 Patch available Fix from $2,3002018-11-14 CRITICAL 9.8 CVE-2018-8500EPSS 17% A remote code execution vulnerability exists in the way that the ChakraCore scripting engine handles objects in memory, aka "Scripting Engine Memory … Chakracore Patch available Fix from $2,3002018-10-10