Vulnerability index

Browse CVEs

611 matching
Filters 2 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Improper Input ValidationCWE-20 × clear
Windows 10 HIGH 8.8
CVE-2018-1016EPSS 24%

A remote code execution vulnerability exists when the Windows font library improperly handles specially crafted embedded fonts, aka "Microsoft Graphi…

Patch available
Fix from $1,950 2018-04-12
Windows 10 MEDIUM 5.3
CVE-2018-0957

An information disclosure vulnerability exists when Windows Hyper-V on a host operating system fails to properly validate input from an authenticated…

Patch available
Fix from $1,600 2018-04-12
Windows 10 MEDIUM 5.8
CVE-2018-0885EPSS 5%

The Microsoft Hyper-V Network Switch in 64-bit versions of Microsoft Windows Server 2008 SP2 and R2 SP1, Windows Server 2012 and R2, Windows 10 Gold,…

Patch available
Fix from $1,600 2018-03-14
Windows 10 MEDIUM 5.6
CVE-2018-0888

The Microsoft Hyper-V Network Switch in 64-bit versions of Microsoft Windows Server 2008 SP2 and R2 SP1, Windows 7 SP1, Windows 8.1, Windows Server 2…

Patch available
Fix from $1,600 2018-03-14
Windows 10 HIGH 7.0
CVE-2018-0868

Windows Installer in Microsoft Windows Server 2008 SP2 and R2 SP1, Windows 7 SP1, Windows 8.1 and RT 8.1, Windows Server 2012 and R2, Windows 10 Gold…

Patch available
Fix from $1,950 2018-03-14
Sharepoint Enterprise Server HIGH 8.8
CVE-2017-11936

Microsoft SharePoint Enterprise Server 2016 allows an elevation of privilege vulnerability due to the way web requests are handled, aka "Microsoft Sh…

Patch available
Fix from $1,950 2017-12-12
Exchange Server HIGH 8.1
CVE-2017-11932EPSS 6%

Microsoft Exchange Server 2016 CU5 and Microsoft Exchange Server 2016 CU5 allow a spoofing vulnerability due to the way Outlook Web Access (OWA) vali…

Patch available
Fix from $1,950 2017-12-12
Windows 10 MEDIUM 6.6
CVE-2017-11885EPSS 46%

Windows 7 SP1, Windows 8.1 and RT 8.1, Windows Server 2008 SP2 and R2 SP1, Windows Server 2012 and R2, Windows 10 Gold, 1511, 1607, 1703 and 1709, Wi…

Patch available
Fix from $1,600 2017-12-12
Edge MEDIUM 6.1
CVE-2017-11863

Microsoft Edge in Microsoft Windows 10 Gold, 1511, 1607, 1703, 1709, Windows Server 2016 and Windows Server, version 1709 allows an attacker to trick…

Patch available
Fix from $1,600 2017-11-15
Windows 10 CRITICAL 9.8
CVE-2017-11771EPSS 64%

The Microsoft Windows Search component on Microsoft Windows Server 2008 SP2 and R2 SP1, Windows 7 SP1, Windows 8.1, Windows Server 2012 Gold and R2, …

Patch available
Fix from $2,300 2017-10-13
Windows 10 HIGH 8.8
CVE-2017-11762EPSS 17%

The Microsoft Graphics Component on Microsoft Windows Server 2008 SP2 and R2 SP1, Windows 7 SP1, Windows 8.1, Windows Server 2012 Gold and R2, Window…

Patch available
Fix from $1,950 2017-10-13
Windows 10 HIGH 8.8
CVE-2017-11763EPSS 17%

The Microsoft Graphics Component on Microsoft Windows Server 2008 SP2 and R2 SP1, Windows 7 SP1, Windows 8.1, Windows Server 2012 Gold and R2, Window…

Patch available
Fix from $1,950 2017-10-13
Windows 10 HIGH 7.8
CVE-2017-11782

The Microsoft Server Block Message (SMB) on Microsoft Windows 10 1607 and Windows Server 2016, allows an elevation of privilege vulnerability when an…

Patch available
Fix from $1,950 2017-10-13
Windows 10 HIGH 7.5
CVE-2017-11781EPSS 14%

The Microsoft Server Block Message (SMB) on Microsoft Windows Server 2008 SP2 and R2 SP1, Windows 7 SP1, Windows 8.1, Windows Server 2012 Gold and R2…

Patch available
Fix from $1,950 2017-10-13
Office 2007 HIGH 8.8
CVE-2017-8682EPSS 50%

Windows graphics on Microsoft Windows Server 2008 SP2 and R2 SP1, Windows 7 SP1, Windows 8.1, Windows Server 2012 Gold and R2, Windows RT 8.1, Window…

Patch available
Fix from $1,950 2017-09-13
Windows 10 HIGH 7.8
CVE-2017-8714

The Windows Hyper-V component on Microsoft Windows 8.1, Windows Server 2012 Gold and R2,, Windows 10 1607, and Windows Server 2016 allows a remote co…

Patch available
Fix from $1,950 2017-09-13
Windows 10 HIGH 7.0
CVE-2017-8699EPSS 21%

Windows Shell in Microsoft Windows 7 SP1, Windows Server 2008 and R2 SP1, Windows 8.1 and Windows RT 8.1, Windows Server 2012 and R2, Windows 10 Gold…

Patch available
Fix from $1,950 2017-09-13
Windows 10 MEDIUM 5.3
CVE-2017-8704

The Windows Hyper-V component on Microsoft Windows 10 1607 and Windows Server 2016 allows a denial of service vulnerability when it fails to properly…

Patch available
Fix from $1,600 2017-09-13
Windows 10 HIGH 8.8
CVE-2017-8664

Windows Hyper-V in Windows 8.1, Windows Server 2012 Gold and R2, Windows RT 8.1, Windows 10 Gold, 1511, 1607, and 1703, and Windows Server 2016 allow…

Patch available
Fix from $1,950 2017-08-08
Windows 10 MEDIUM 6.8
CVE-2017-8623EPSS 7%

Windows Hyper-V in Windows 10 1607, 1703, and Windows Server 2016 allows a denial of service vulnerability when it fails to properly validate input f…

Patch available
Fix from $1,600 2017-08-08
Outlook HIGH 7.8
CVE-2017-8571EPSS 6%

Microsoft Outlook 2007 SP3, Outlook 2010 SP2, Outlook 2013 SP1, Outlook 2013 RT SP1, and Outlook 2016 as packaged in Microsoft Office allows a securi…

Patch available
Fix from $1,950 2017-08-01
Edge MEDIUM 6.5
CVE-2017-8599EPSS 5%

Microsoft Edge in Microsoft Windows 10 Gold, 1511, 1607, and 1703, and Windows Server 2016 allows an attacker to trick a user into loading a page wit…

Patch available
Fix from $1,600 2017-07-11
Edge MEDIUM 6.5
CVE-2017-8602EPSS 5%

Microsoft browsers on Microsoft Windows 7 SP1, Windows Server 2008 R2 SP1, Windows 8.1 and Windows RT 8.1, Windows Server 2012 R2, Windows 10 Gold, 1…

Patch available
Fix from $1,600 2017-07-11
Edge MEDIUM 6.5
CVE-2017-8611EPSS 11%

Microsoft Edge on Microsoft Windows 10 Gold, 1511, 1607, and 1703, and Windows Server 2016 allows remote attackers to spoof web content via a crafted…

Patch available
Fix from $1,600 2017-07-11
.net Framework HIGH 7.5
CVE-2017-8585EPSS 10%

Microsoft .NET Framework 4.6, 4.6.1, 4.6.2, and 4.7 allow an attacker to send specially crafted requests to a .NET web application, resulting in deni…

Patch available
Fix from $1,950 2017-07-11
Windows 10 HIGH 7.0
CVE-2017-8566

Microsoft Windows 1607, 1703, and Windows Server 2016 allows an elevation of privilege vulnerability due to Windows Input Method Editor (IME) imprope…

Patch available
Fix from $1,950 2017-07-11
Outlook MEDIUM 6.5
CVE-2017-8545

A spoofing vulnerability exists in when Microsoft Outlook for Mac does not sanitize html properly, aka "Microsoft Outlook for Mac Spoofing Vulnerabil…

Patch available
Fix from $1,600 2017-06-15
Windows 10 MEDIUM 5.9
CVE-2017-0280EPSS 7%

The Microsoft Server Message Block 1.0 (SMBv1) allows denial of service when an attacker sends specially crafted requests to the server, aka "Windows…

Patch available
Fix from $1,600 2017-05-12
Windows 10 MEDIUM 5.9
CVE-2017-0269EPSS 6%

The Microsoft Server Message Block 1.0 (SMBv1) allows denial of service when an attacker sends specially crafted requests to the server, aka "Windows…

Patch available
Fix from $1,600 2017-05-12
Windows 10 MEDIUM 5.9
CVE-2017-0273EPSS 6%

The Microsoft Server Message Block 1.0 (SMBv1) allows denial of service when an attacker sends specially crafted requests to the server, aka "Windows…

Patch available
Fix from $1,600 2017-05-12