Vulnerability index

Browse CVEs

680 matching
Filters 2 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Memory Buffer Bounds ErrorCWE-119 × clear
Chakracore CRITICAL 9.8
CVE-2017-11767EPSS 10%

ChakraCore allows an attacker to gain the same user rights as the current user, due to the way that the ChakraCore scripting engine handles objects i…

Mitigation only
Fix from $2,300 2017-11-02
Office HIGH 7.8
CVE-2017-11825EPSS 22%

Microsoft Office 2016 Click-to-Run (C2R) and Microsoft Office 2016 for Mac allow an attacker to use a specially crafted file to perform actions in th…

Patch available
Fix from $1,950 2017-10-13
Office Compatibility Pack HIGH 7.8
CVE-2017-11826 KEVEPSS 81%

Microsoft Office 2010, SharePoint Enterprise Server 2010, SharePoint Server 2010, Web Applications, Office Web Apps Server 2010 and 2013, Word Viewer…

Patch available
Fix from $1,950 2017-10-13
Windows 10 HIGH 7.8
CVE-2017-8717EPSS 24%

The Microsoft JET Database Engine in Windows Server 2008 SP2 and R2 SP1, Windows 7 SP1, Windows 8.1 and RT 8.1, Windows Server 2012 and R2, Windows 1…

Patch available
Fix from $1,950 2017-10-13
Windows 10 HIGH 7.8
CVE-2017-8718EPSS 23%

The Microsoft JET Database Engine in Windows Server 2008 SP2 and R2 SP1, Windows 7 SP1, Windows 8.1 and RT 8.1, Windows Server 2012 and R2, Windows 1…

Patch available
Fix from $1,950 2017-10-13
Windows 10 HIGH 7.5
CVE-2017-8727EPSS 8%

Microsoft Windows Server 2008 SP2 and R2 SP1, Windows 7 SP1, Windows 8.1 and RT 8.1, Windows Server 2012 and R2, Windows 10 Gold, 1511, 1607, 1703, a…

Patch available
Fix from $1,950 2017-10-13
Windows 10 MEDIUM 5.5
CVE-2017-8703

The Microsoft Windows Subsystem for Linux on Microsoft Windows 10 1703 allows a denial of service vulnerability when it improperly handles objects in…

Patch available
Fix from $1,600 2017-10-13
Chakracore HIGH 7.5
CVE-2017-11796EPSS 9%

ChakraCore and Microsoft Edge in Windows 10 1703 allows an attacker to execute arbitrary code in the context of the current user, due to how the scri…

Fix: after 1.7.2
Fix from $1,950 2017-10-13
Edge HIGH 7.5
CVE-2017-11798EPSS 9%

Microsoft Edge in Microsoft Windows 10 Gold, 1511, 1607, 1703, and Windows Server 2016 allows an attacker to execute arbitrary code in the context of…

Patch available
Fix from $1,950 2017-10-13
Chakracore HIGH 7.5
CVE-2017-11799EPSS 64%

ChakraCore and Microsoft Edge in Microsoft Windows 10 Gold, 1511, 1607, 1703, and Windows Server 2016 allows an attacker to execute arbitrary code in…

Fix: after 1.7.2
Fix from $1,950 2017-10-13
Edge HIGH 7.5
CVE-2017-11800EPSS 9%

Microsoft Edge in Microsoft Windows 10 Gold, 1511, 1607, and Windows Server 2016 allows an attacker to execute arbitrary code in the context of the c…

Patch available
Fix from $1,950 2017-10-13
Chakracore HIGH 7.5
CVE-2017-11802EPSS 69%

ChakraCore and Microsoft Edge in Microsoft Windows 10 Gold, 1511, 1607, 1703, and Windows Server 2016 allows an attacker to execute arbitrary code in…

Fix: after 1.7.2
Fix from $1,950 2017-10-13
Chakracore HIGH 7.5
CVE-2017-11804EPSS 9%

ChakraCore and Microsoft Edge in Microsoft Windows 10 Gold, 1511, 1607, 1703, and Windows Server 2016 allows an attacker to execute arbitrary code in…

Patch available
Fix from $1,950 2017-10-13
Chakracore HIGH 7.5
CVE-2017-11805EPSS 9%

ChakraCore and Microsoft Edge in Microsoft Windows 10 1703 allows an attacker to execute arbitrary code in the context of the current user, due to ho…

Fix: after 1.7.2
Fix from $1,950 2017-10-13
Chakracore HIGH 7.5
CVE-2017-11806EPSS 9%

ChakraCore and Microsoft Edge in Microsoft Windows 10 1703 allows an attacker to execute arbitrary code in the context of the current user, due to ho…

Fix: after 1.7.2
Fix from $1,950 2017-10-13
Chakracore HIGH 7.5
CVE-2017-11807EPSS 9%

ChakraCore and Microsoft Edge in Microsoft Windows 10 1703 allows an attacker to execute arbitrary code in the context of the current user, due to ho…

Fix: after 1.7.2
Fix from $1,950 2017-10-13
Chakracore HIGH 7.5
CVE-2017-11808EPSS 9%

ChakraCore and Microsoft Edge in Microsoft Windows 10 Gold, 1511, 1607, 1703, and Windows Server 2016 allows an attacker to execute arbitrary code in…

Fix: after 1.7.2
Fix from $1,950 2017-10-13
Chakracore HIGH 7.5
CVE-2017-11809EPSS 68%

ChakraCore and Microsoft Edge in Microsoft Windows 10 Gold, 1511, 1607, 1703, and Windows Server 2016 allows an attacker to execute arbitrary code in…

Fix: after 1.7.2
Fix from $1,950 2017-10-13
Edge HIGH 7.5
CVE-2017-11811EPSS 65%

ChakraCore and Microsoft Edge in Microsoft Windows 10 Gold, 1511, 1607, 1703, and Windows Server 2016 allows an attacker to execute arbitrary code in…

Fix: 1.7.3+
Fix from $1,950 2017-10-13
Chakracore HIGH 7.5
CVE-2017-11812EPSS 47%

ChakraCore and Microsoft Edge in Microsoft Windows 10 1511, 1607, 1703, and Windows Server 2016 allows an attacker to execute arbitrary code in the c…

Fix: after 1.7.2
Fix from $1,950 2017-10-13
Chakracore HIGH 7.5
CVE-2017-11821EPSS 9%

ChakraCore and Microsoft Edge in Microsoft Windows 10 1703 allows an attacker to execute arbitrary code in the context of the current user, due to ho…

Fix: after 1.7.2
Fix from $1,950 2017-10-13
Outlook HIGH 7.8
CVE-2017-11774 KEVEPSS 60%

Microsoft Outlook 2010 SP2, Outlook 2013 SP1 and RT SP1, and Outlook 2016 allow an attacker to execute arbitrary commands, due to how Microsoft Offic…

Patch available
Fix from $1,950 2017-10-13
Chakracore HIGH 7.5
CVE-2017-11792EPSS 9%

ChakraCore and Microsoft Edge in Microsoft Windows 10 1703 allow an attacker to execute arbitrary code in the context of the current user, due to how…

Fix: after 1.7.2
Fix from $1,950 2017-10-13
Edge HIGH 7.5
CVE-2017-8753EPSS 9%

Microsoft Edge in Microsoft Windows 10 Gold, 1511, 1607, 1703, and Windows Server 2016 allows an attacker to execute arbitrary code in the context of…

Patch available
Fix from $1,950 2017-09-13
Edge HIGH 7.5
CVE-2017-8755EPSS 71%

Microsoft Edge in Microsoft Windows 10 1511, 1607, 1703, and Windows Server 2016 allows an attacker to execute arbitrary code in the context of the c…

Patch available
Fix from $1,950 2017-09-13
Edge HIGH 7.5
CVE-2017-8756EPSS 9%

Microsoft Edge in Microsoft Windows 10 Gold, 1511, 1607, 1703, and Windows Server 2016 allows an attacker to execute arbitrary code in the context of…

Patch available
Fix from $1,950 2017-09-13
Edge HIGH 7.5
CVE-2017-8757EPSS 16%

Microsoft Edge in Microsoft Windows 10 Gold, 1511, 1607, 1703, and Windows Server 2016 allows an attacker to execute arbitrary code in the context of…

Patch available
Fix from $1,950 2017-09-13
Publisher HIGH 7.8
CVE-2017-8725EPSS 20%

A remote code execution vulnerability exists in Microsoft Publisher 2007 Service Pack 3 and Microsoft Publisher 2010 Service Pack 2 when they fail to…

Patch available
Fix from $1,950 2017-09-13
Office Compatibility Pack HIGH 7.8
CVE-2017-8742EPSS 22%

A remote code execution vulnerability exists in Microsoft PowerPoint 2007 Service Pack 3, Microsoft PowerPoint 2010 Service Pack 2, Microsoft PowerPo…

Patch available
Fix from $1,950 2017-09-13
Office Online Server HIGH 7.8
CVE-2017-8743EPSS 22%

A remote code execution vulnerability exists in Microsoft PowerPoint 2016, Microsoft SharePoint Enterprise Server 2016, and Office Online Server when…

Patch available
Fix from $1,950 2017-09-13