Vulnerability index

Browse CVEs

611 matching
Filters 2 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Improper Input ValidationCWE-20 × clear
Asp.net Model View Controller HIGH 7.3
CVE-2017-0249

An elevation of privilege vulnerability exists when the ASP.NET Core fails to properly sanitize web requests.

No fix yet
Fix from $1,950 2017-05-12
Asp.net Model View Controller MEDIUM 5.3
CVE-2017-0256

A spoofing vulnerability exists when the ASP.NET Core fails to properly sanitize web requests.

Mitigation only
Fix from $1,600 2017-05-12
Asp.net Model View Controller HIGH 7.5
CVE-2017-0247EPSS 17%

A denial of service vulnerability exists when the ASP.NET Core fails to properly validate web requests. NOTE: Microsoft has not commented on third-pa…

Patch available
Fix from $1,950 2017-05-12
Windows 10 HIGH 7.6
CVE-2017-0212

Windows Hyper-V allows an elevation of privilege vulnerability when Microsoft Windows 10 Gold, 1511, 1607, and 1703, and Windows Server 2016 fail to …

Patch available
Fix from $1,950 2017-05-12
Windows Server 2008 MEDIUM 5.9
CVE-2017-0171

Windows DNS Server allows a denial of service vulnerability when Microsoft Windows Server 2008 SP2 and R2 SP1, Windows Server 2012 Gold and R2, and W…

Patch available
Fix from $1,600 2017-05-12
Onenote HIGH 7.8
CVE-2017-0197EPSS 19%

Microsoft OneNote 2007 SP3 and Microsoft OneNote 2010 SP2 allow remote attackers to execute arbitrary code via a crafted document, aka "Microsoft Off…

Patch available
Fix from $1,950 2017-04-12
Windows 10 HIGH 7.6
CVE-2017-0162

A remote code execution vulnerability exists when Windows Hyper-V Network Switch running on a Windows 10, Windows 8.1, Windows Server 2012 R2, or Win…

Patch available
Fix from $1,950 2017-04-12
Windows 10 HIGH 7.6
CVE-2017-0163

A remote code execution vulnerability exists when Windows Hyper-V Network Switch running on a host server fails to properly validate input from an au…

Patch available
Fix from $1,950 2017-04-12
Windows 10 HIGH 7.6
CVE-2017-0180

A remote code execution vulnerability exists when Windows Hyper-V Network Switch running on a host server fails to properly validate input from an au…

Patch available
Fix from $1,950 2017-04-12
Windows 10 HIGH 7.6
CVE-2017-0181

A remote code execution vulnerability exists when Windows Hyper-V Network Switch running on a Windows 10 or Windows Server 2016 host server fails to …

Patch available
Fix from $1,950 2017-04-12
Windows 10 MEDIUM 5.8
CVE-2017-0179

A denial of service vulnerability exists when Microsoft Hyper-V running on a Windows 10, Windows 8.1, Windows Server 2012 R2, or Windows Server 2016 …

Patch available
Fix from $1,600 2017-04-12
Windows 10 MEDIUM 5.8
CVE-2017-0182

A denial of service vulnerability exists when Microsoft Hyper-V Network Switch running on a Windows 10, Windows Server 2008 R2, Windows 8.1, Windows …

Patch available
Fix from $1,600 2017-04-12
Windows 10 MEDIUM 5.8
CVE-2017-0183

A denial of service vulnerability exists when Microsoft Hyper-V Network Switch running on a Windows 10, Windows Server 2008 R2, Windows 8.1, Windows …

Patch available
Fix from $1,600 2017-04-12
Windows 10 MEDIUM 5.8
CVE-2017-0185EPSS 6%

A denial of service vulnerability exists when Microsoft Hyper-V Network Switch running on a Windows 10, Windows 8.1, Windows Server 2012, Windows Ser…

Patch available
Fix from $1,600 2017-04-12
Windows 10 MEDIUM 5.8
CVE-2017-0186

A denial of service vulnerability exists when Microsoft Hyper-V Network Switch running on a Windows 10, Windows 8.1, Windows Server 2012, Windows Ser…

Patch available
Fix from $1,600 2017-04-12
Windows 10 MEDIUM 5.4
CVE-2017-0178

A denial of service vulnerability exists when Microsoft Hyper-V running on Windows 10, Windows 10 1511, Windows 10 1607, Windows 8.1, Windows Server …

Patch available
Fix from $1,600 2017-04-12
Windows 10 MEDIUM 5.4
CVE-2017-0184

A denial of service vulnerability exists when Microsoft Hyper-V running on a host server fails to properly validate input from a privileged user on a…

Patch available
Fix from $1,600 2017-04-12
Server Message Block HIGH 8.1
CVE-2017-0148 KEVEPSS 99%

The SMBv1 server in Microsoft Windows Vista SP2; Windows Server 2008 SP2 and R2 SP1; Windows 7 SP1; Windows 8.1; Windows Server 2012 Gold and R2; Win…

Fix: 4.0e+
Fix from $1,950 2017-03-17
Windows 10 HIGH 7.6
CVE-2017-0095

Hyper-V in Microsoft Windows 10 Gold, 1511, and 1607 and Windows Server 2016 does not properly validate vSMB packet data, which allows attackers to e…

Patch available
Fix from $1,950 2017-03-17
Windows 10 HIGH 7.6
CVE-2017-0109

Hyper-V in Microsoft Windows Vista SP2; Windows Server 2008 SP2 and R2; Windows 7 SP1; Windows 8.1; Windows Server 2012 Gold and R2; Windows 10 Gold,…

Patch available
Fix from $1,950 2017-03-17
Windows 10 MEDIUM 5.4
CVE-2017-0076

Hyper-V in Microsoft Windows Vista SP2; Windows Server 2008 SP2 and 2008 R2; Windows 7 SP1; Windows 8.1; Windows Server 2012 and R2; Windows 10, 1511…

Patch available
Fix from $1,600 2017-03-17
Windows 10 MEDIUM 5.4
CVE-2017-0097

Hyper-V in Microsoft Windows Vista SP2; Windows Server 2008 SP2 and 2008 R2; Windows 7 SP1; Windows 8.1; Windows Server 2012 and R2; Windows 10, 1511…

Patch available
Fix from $1,600 2017-03-17
Windows 10 MEDIUM 5.4
CVE-2017-0098

Hyper-V in Microsoft Windows 10 Gold, 1511, and 1607; and Windows Server 2016 allows guest OS users, running as virtual machines, to cause a denial o…

Patch available
Fix from $1,600 2017-03-17
Windows 10 MEDIUM 5.4
CVE-2017-0099

Hyper-V in Microsoft Windows Vista SP2; Windows Server 2008 SP2 and 2008 R2; Windows 7 SP1; Windows 8.1; Windows Server 2012 Gold and R2; Windows 10 …

Patch available
Fix from $1,600 2017-03-17
Windows 10 MEDIUM 5.4
CVE-2017-0074

Hyper-V in Microsoft Windows Vista SP2; Windows Server 2008 SP2 and 2008 R2; Windows 7 SP1; Windows 8.1; Windows Server 2012 and R2; Windows 10, 1511…

Patch available
Fix from $1,600 2017-03-17
Windows 10 MEDIUM 5.5
CVE-2017-0007EPSS 11%

Device Guard in Microsoft Windows 10 Gold, 1511, 1607, and Windows Server 2016 allows remote attackers to modify PowerShell script without invalidati…

Patch available
Fix from $1,600 2017-03-17
Excel HIGH 7.8
CVE-2016-7266EPSS 22%

Microsoft Excel 2007 SP3, Excel 2010 SP2, Excel 2013 SP1, Excel 2013 RT SP1, Excel 2016, Office Compatibility Pack SP3, Excel Viewer, and Excel 2016 …

Mitigation only
Fix from $1,950 2016-12-20
Excel MEDIUM 5.5
CVE-2016-7267EPSS 19%

Microsoft Excel 2010 SP2, 2013 SP1, 2013 RT SP1, and 2016 misparses file formats, which makes it easier for remote attackers to execute arbitrary cod…

Mitigation only
Fix from $1,600 2016-12-20
Edge MEDIUM 5.3
CVE-2016-7209EPSS 9%

Microsoft Edge allows remote attackers to spoof web content via a crafted web site, aka "Microsoft Edge Spoofing Vulnerability."

No fix yet
Fix from $1,600 2016-11-10
Live Meeting CRITICAL 9.8
CVE-2016-7182EPSS 30%

The Graphics component in Microsoft Windows Vista SP2; Windows Server 2008 SP2 and R2 SP1; Windows 7 SP1; Windows 8.1; Windows Server 2012 Gold and R…

Mitigation only
Fix from $2,300 2016-10-14