Vulnerability index

Browse CVEs

232 matching
Filters 2 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Improper Privilege ManagementCWE-269 × clear
Windows 10 HIGH 7.8
CVE-2020-0799

An elevation of privilege vulnerability exists in Microsoft Windows when the Windows kernel fails to properly handle parsing of certain symbolic link…

Patch available
Fix from $1,950 2020-03-12
Windows 10 HIGH 7.1
CVE-2020-0785

An elevation of privilege vulnerability exists when the Windows User Profile Service (ProfSvc) improperly handles symlinks, aka 'Windows User Profile…

Patch available
Fix from $1,950 2020-03-12
Windows 10 HIGH 7.8
CVE-2020-0686

An elevation of privilege vulnerability exists in the Windows Installer when MSI packages process symbolic links, aka 'Windows Installer Elevation of…

Patch available
Fix from $1,950 2020-02-11
Windows 10 MEDIUM 5.5
CVE-2019-1454

An elevation of privilege vulnerability exists when the Windows User Profile Service (ProfSvc) improperly handles symlinks, aka 'Windows User Profile…

Patch available
Fix from $1,600 2020-01-24
Dynamics 365 MEDIUM 6.5
CVE-2018-8654

An elevation of privilege vulnerability exists in Microsoft Dynamics 365 Server, aka 'Microsoft Dynamics 365 Elevation of Privilege Vulnerability'.

Patch available
Fix from $1,600 2020-01-24
Windows 10 HIGH 7.8
CVE-2020-0635

An elevation of privilege vulnerability exists in Microsoft Windows when Windows fails to properly handle certain symbolic links, aka 'Windows Elevat…

Patch available
Fix from $1,950 2020-01-14
Windows 10 1507 HIGH 7.8
CVE-2019-1405 KEVEPSS 30%

An elevation of privilege vulnerability exists when the Windows Universal Plug and Play (UPnP) service improperly allows COM object creation, aka 'Wi…

Patch available
Fix from $1,950 2019-11-12
Windows 10 1507 HIGH 7.8
CVE-2019-1388 KEVEPSS 9%

An elevation of privilege vulnerability exists in the Windows Certificate Dialog when it does not properly enforce user privileges, aka 'Windows Cert…

Patch available
Fix from $1,950 2019-11-12
Windows 10 1507 HIGH 7.8
CVE-2019-1215 KEVEPSS 19%

An elevation of privilege vulnerability exists in the way that ws2ifsl.sys (Winsock) handles objects in memory, aka 'Windows Elevation of Privilege V…

Patch available
Fix from $1,950 2019-09-11
Windows 10 HIGH 7.0
CVE-2019-1175

An elevation of privilege vulnerability exists in the way that the psmsrv.dll handles objects in memory. An attacker who successfully exploited the v…

Patch available
Fix from $1,950 2019-08-14
Windows 10 HIGH 7.0
CVE-2019-1177

An elevation of privilege vulnerability exists in the way that the rpcss.dll handles objects in memory. An attacker who successfully exploited the vu…

Patch available
Fix from $1,950 2019-08-14
Windows 10 HIGH 7.8
CVE-2019-1162

An elevation of privilege vulnerability exists when Windows improperly handles calls to Advanced Local Procedure Call (ALPC). An attacker who success…

Patch available
Fix from $1,950 2019-08-14
Windows 10 HIGH 7.8
CVE-2019-1007

An elevation of privilege exists in Windows Audio Service. An attacker who successfully exploited the vulnerability could run arbitrary code with ele…

Patch available
Fix from $1,950 2019-06-12
Azure Active Directory Connect MEDIUM 5.3
CVE-2019-1000

An elevation of privilege vulnerability exists in Microsoft Azure Active Directory Connect build 1.3.20.0, which allows an attacker to execute two Po…

Patch available
Fix from $1,600 2019-05-16
Windows 10 HIGH 7.8
CVE-2019-0735

An elevation of privilege vulnerability exists when the Windows Client Server Run-Time Subsystem (CSRSS) fails to properly handle objects in memory, …

Patch available
Fix from $1,950 2019-04-09
Windows 10 HIGH 7.0
CVE-2018-0821

AppContainer in Windows 10 Gold, 1511, 1607, 1703 and 1709, Windows Server 2016 and Windows Server, version 1709 allows an elevation of privilege vul…

Patch available
Fix from $1,950 2018-02-15
Windows 10 HIGH 7.8
CVE-2018-0748

The Windows kernel in Windows 7 SP1, Windows 8.1 and RT 8.1, Windows Server 2008 SP2 and R2 SP1, Windows Server 2012 and R2, Windows 10 Gold, 1511, 1…

Patch available
Fix from $1,950 2018-01-04
Windows 10 HIGH 7.1
CVE-2018-0751

The Windows Kernel API in Windows 8.1 and RT 8.1, Windows Server 2012 and R2, Windows 10 Gold, 1511, 1607, 1703 and 1709, Windows Server 2016 and Win…

No fix yet
Fix from $1,950 2018-01-04
Windows 10 HIGH 7.8
CVE-2016-3376EPSS 13%

The kernel-mode drivers in Microsoft Windows Vista SP2, Windows Server 2008 SP2 and R2 SP1, Windows 7 SP1, Windows 8.1, Windows Server 2012 Gold and …

Patch available
Fix from $1,950 2016-10-14
Windows 10 1507 HIGH 7.8
CVE-2016-0151 KEVEPSS 63%

The Client-Server Run-time Subsystem (CSRSS) in Microsoft Windows 8.1, Windows Server 2012 Gold and R2, Windows RT 8.1, and Windows 10 Gold and 1511 …

Patch available
Fix from $1,950 2016-04-12
Windows 2000 HIGH 7.8
CVE-2002-0367 KEV

smss.exe debugging subsystem in Windows NT and Windows 2000 does not properly authenticate programs that connect to other programs, which allows loca…

Patch available
Fix from $1,950 2002-06-25
Exchange Server MEDIUM 6.4
CVE-2002-0049EPSS 13%

Microsoft Exchange Server 2000 System Attendant gives "Everyone" group privileges to the WinReg key, which could allow remote attackers to read or mo…

Patch available
Fix from $1,600 2002-03-08