Vulnerability index

Browse CVEs

409 matching
Filters 2 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Information ExposureCWE-200 × clear
Live Meeting MEDIUM 5.5
CVE-2017-0060EPSS 16%

The Graphics Device Interface (GDI) in Microsoft Windows Vista SP2; Windows Server 2008 SP2 and R2 SP1; Windows 7 SP1; Windows 8.1; Windows Server 20…

Patch available
Fix from $1,600 2017-03-17
Windows 10 MEDIUM 5.3
CVE-2017-0043

Active Directory Federation Services in Microsoft Windows 10 1607, Windows Server 2008 SP2 and R2 SP1, Windows Server 2012 Gold and R2, and Windows S…

Patch available
Fix from $1,600 2017-03-17
Windows 10 MEDIUM 5.5
CVE-2017-0038EPSS 82%

gdi32.dll in Graphics Device Interface (GDI) in Microsoft Windows Vista SP2, Windows Server 2008 SP2 and R2 SP1, Windows 7 SP1, Windows 8.1, Windows …

Patch available
Fix from $1,600 2017-02-20
Windows 10 MEDIUM 5.5
CVE-2016-7295

The Common Log File System (CLFS) driver in Microsoft Windows Vista SP2, Windows Server 2008 SP2 and R2 SP1, Windows 7 SP1, Windows 8.1, Windows Serv…

Mitigation only
Fix from $1,600 2016-12-20
Office For Mac MEDIUM 6.5
CVE-2016-7257EPSS 23%

The GDI component in Microsoft Windows Vista SP2, Windows Server 2008 SP2 and R2 SP1, Windows 7 SP1, Office for Mac 2011, and Office 2016 for Mac all…

Mitigation only
Fix from $1,600 2016-12-20
Windows 10 MEDIUM 5.5
CVE-2016-7219

The Crypto driver in Microsoft Windows Vista SP2, Windows Server 2008 SP2 and R2 SP1, Windows 7 SP1, Windows 8.1, Windows Server 2012 Gold and R2, Wi…

Mitigation only
Fix from $1,600 2016-12-20
Windows 10 MEDIUM 5.5
CVE-2016-7258

The kernel in Microsoft Windows 10 Gold, 1511, and 1607 and Windows Server 2016 mishandles page-fault system calls, which allows local users to obtai…

Mitigation only
Fix from $1,600 2016-12-20
Sql Server MEDIUM 6.5
CVE-2016-7252EPSS 18%

Microsoft SQL Server 2016 mishandles the FILESTREAM path, which allows remote authenticated users to gain privileges via unspecified vectors, aka "SQ…

Mitigation only
Fix from $1,600 2016-11-10
Excel For Mac MEDIUM 6.5
CVE-2016-7233EPSS 22%

Microsoft Word 2007, Office 2010 SP2, Word 2010 SP2, Word for Mac 2011, Excel for Mac 2011, Word Viewer, Office Compatibility Pack SP3, Word Automati…

Mitigation only
Fix from $1,600 2016-11-10
Windows 10 MEDIUM 6.5
CVE-2016-7210EPSS 21%

atmfd.dll in Microsoft Windows Vista SP2, Windows Server 2008 SP2 and R2 SP1, Windows 7 SP1, Windows 8.1, Windows Server 2012 Gold and R2, Windows RT…

Mitigation only
Fix from $1,600 2016-11-10
Edge MEDIUM 5.3
CVE-2016-3391EPSS 8%

Microsoft Internet Explorer 10 and 11 and Microsoft Edge allow context-dependent attackers to discover credentials by leveraging access to a memory d…

Mitigation only
Fix from $1,600 2016-10-14
Edge MEDIUM 5.3
CVE-2016-3267EPSS 16%

Microsoft Internet Explorer 9 through 11 and Microsoft Edge allow remote attackers to determine the existence of unspecified files via a crafted web …

Mitigation only
Fix from $1,600 2016-10-14
Live Meeting MEDIUM 5.5
CVE-2016-3263EPSS 32%

Graphics Device Interface (aka GDI or GDI+) in Microsoft Windows Vista SP2; Windows Server 2008 SP2 and R2 SP1; Windows 7 SP1; Windows 8.1; Windows S…

Mitigation only
Fix from $1,600 2016-10-14
Live Meeting MEDIUM 5.5
CVE-2016-3262EPSS 32%

Graphics Device Interface (aka GDI or GDI+) in Microsoft Windows Vista SP2; Windows Server 2008 SP2 and R2 SP1; Windows 7 SP1; Windows 8.1; Windows S…

Mitigation only
Fix from $1,600 2016-10-14
.net Framework MEDIUM 5.5
CVE-2016-3209EPSS 54%

Graphics Device Interface (aka GDI or GDI+) in Microsoft Windows Vista SP2; Windows Server 2008 SP2 and R2 SP1; Windows 7 SP1; Windows 8.1; Windows S…

Mitigation only
Fix from $1,600 2016-10-14
Windows 10 MEDIUM 5.0
CVE-2016-0079EPSS 5%

The kernel in Microsoft Windows 10 Gold, 1511, and 1607 allows local users to gain privileges via a crafted application that makes an API call to acc…

No fix yet
Fix from $1,600 2016-10-14
Windows 10 MEDIUM 5.5
CVE-2016-0075EPSS 7%

The kernel in Microsoft Windows 8.1, Windows Server 2012 Gold and R2, Windows RT 8.1, and Windows 10 Gold, 1511, and 1607 allows local users to gain …

No fix yet
Fix from $1,600 2016-10-14
Windows 10 MEDIUM 5.0
CVE-2016-0073EPSS 5%

The kernel in Microsoft Windows 8.1, Windows Server 2012 Gold and R2, Windows RT 8.1, and Windows 10 Gold, 1511, and 1607 allows local users to gain …

No fix yet
Fix from $1,600 2016-10-14
Windows 10 MEDIUM 5.5
CVE-2016-0070EPSS 11%

The kernel in Microsoft Windows Vista SP2, Windows Server 2008 SP2 and R2 SP1, Windows 7 SP1, Windows 8.1, Windows Server 2012 Gold and R2, Windows R…

Mitigation only
Fix from $1,600 2016-10-14
Edge MEDIUM 6.5
CVE-2016-3374EPSS 26%

The PDF library in Microsoft Edge, Windows 8.1, Windows Server 2012 Gold and R2, Windows RT 8.1, and Windows 10 Gold, 1511, and 1607 allows remote at…

Mitigation only
Fix from $1,600 2016-09-14
Windows 10 MEDIUM 5.5
CVE-2016-3371EPSS 40%

The kernel API in Microsoft Windows Vista SP2, Windows Server 2008 SP2 and R2 SP1, Windows 7 SP1, Windows 8.1, Windows Server 2012 Gold and R2, Windo…

No fix yet
Fix from $1,600 2016-09-14
Edge MEDIUM 6.5
CVE-2016-3370EPSS 22%

The PDF library in Microsoft Edge, Windows 8.1, Windows Server 2012 Gold and R2, Windows RT 8.1, and Windows 10 Gold, 1511, and 1607 allows remote at…

Mitigation only
Fix from $1,600 2016-09-14
Office MEDIUM 6.5
CVE-2016-0141

The Visual Basic macros in Microsoft Office 2007 SP3, 2010 SP2, 2013 SP1, and 2016 export a certificate-store private key during a document-save oper…

Mitigation only
Fix from $1,600 2016-09-14
Edge MEDIUM 5.3
CVE-2016-3329EPSS 14%

Microsoft Internet Explorer 9 through 11 and Edge allow remote attackers to determine the existence of files via a crafted webpage, aka "Internet Exp…

Mitigation only
Fix from $1,600 2016-08-09
Edge MEDIUM 5.3
CVE-2016-3327EPSS 14%

Microsoft Internet Explorer 9 through 11 and Edge allow remote attackers to obtain sensitive information via a crafted web page, aka "Microsoft Brows…

Mitigation only
Fix from $1,600 2016-08-09
Edge MEDIUM 5.3
CVE-2016-3326EPSS 16%

Microsoft Internet Explorer 9 through 11 and Edge allow remote attackers to obtain sensitive information via a crafted web page, aka "Microsoft Brows…

Mitigation only
Fix from $1,600 2016-08-09
Onenote MEDIUM 5.5
CVE-2016-3315EPSS 30%

Microsoft OneNote 2007 SP3, 2010 SP2, 2013 SP1, 2013 RT SP1, 2016, and 2016 for Mac allow remote attackers to obtain sensitive information via a craf…

Mitigation only
Fix from $1,600 2016-08-09
Windows 10 CRITICAL 9.1
CVE-2016-3312EPSS 10%

ActiveSyncProvider in Microsoft Windows 10 Gold and 1511 allows attackers to discover credentials by leveraging failure of Universal Outlook to obtai…

Mitigation only
Fix from $2,300 2016-08-09
Edge MEDIUM 5.3
CVE-2016-3277EPSS 32%

Microsoft Internet Explorer 10 and 11 and Microsoft Edge allow remote attackers to obtain sensitive information via a crafted web site, aka "Microsof…

Mitigation only
Fix from $1,600 2016-07-13
Edge MEDIUM 5.3
CVE-2016-3273EPSS 14%

The XSS Filter in Microsoft Internet Explorer 9 through 11 and Microsoft Edge does not properly restrict JavaScript code, which allows remote attacke…

Mitigation only
Fix from $1,600 2016-07-13