Vulnerability index

Browse CVEs

3,025 matching
Filters 2 Clear all
Severity

Filters apply as you choose them.

Excel HIGH 7.8
CVE-2016-3358EPSS 18%

Microsoft Excel 2007 SP3, Excel 2010 SP2, Excel 2013 SP1, Excel 2013 RT SP1, Excel 2016, Excel 2016 for Mac, Office Compatibility Pack SP3, Excel Vie…

Mitigation only
Fix from $1,950 2016-09-14
Office HIGH 7.8
CVE-2016-3357EPSS 55%

Microsoft Office 2007 SP3, Office 2010 SP2, Office 2013 SP1, Office 2013 RT SP1, Office 2016, Word for Mac 2011, Word 2016 for Mac, Word Viewer, Word…

No fix yet
Fix from $1,950 2016-09-14
Windows 10 HIGH 7.8
CVE-2016-3356EPSS 19%

The Graphics Device Interface (GDI) in Microsoft Windows 10 1607 allows remote attackers to execute arbitrary code via a crafted document, aka "GDI R…

Mitigation only
Fix from $1,950 2016-09-14
Windows 10 HIGH 7.8
CVE-2016-3355

The Graphics Device Interface (GDI) in Microsoft Windows Vista SP2, Windows Server 2008 SP2 and R2 SP1, Windows 7 SP1, Windows 8.1, Windows Server 20…

Mitigation only
Fix from $1,950 2016-09-14
Windows 10 HIGH 8.8
CVE-2016-3352EPSS 21%

Microsoft Windows 8.1, Windows RT 8.1, and Windows 10 Gold, 1511, and 1607 do not properly check NTLM SSO requests for MSA logins, which makes it eas…

Mitigation only
Fix from $1,950 2016-09-14
Edge HIGH 7.5
CVE-2016-3350EPSS 15%

The Chakra JavaScript engine in Microsoft Edge allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via…

Mitigation only
Fix from $1,950 2016-09-14
Windows 10 HIGH 7.8
CVE-2016-3349

The kernel-mode drivers in Microsoft Windows 8.1, Windows Server 2012 Gold and R2, Windows RT 8.1, and Windows 10 Gold and 1511 allow local users to …

Mitigation only
Fix from $1,950 2016-09-14
Windows 10 HIGH 7.8
CVE-2016-3348EPSS 13%

The kernel-mode drivers in Microsoft Windows Vista SP2, Windows Server 2008 SP2 and R2 SP1, Windows 7 SP1, Windows 8.1, Windows Server 2012 Gold and …

Mitigation only
Fix from $1,950 2016-09-14
Windows 10 HIGH 7.8
CVE-2016-3346

Microsoft Windows 10 Gold, 1511, and 1607 does not properly enforce permissions, which allows local users to obtain Administrator access via a crafte…

Mitigation only
Fix from $1,950 2016-09-14
Windows 10 HIGH 8.8
CVE-2016-3345EPSS 32%

The SMBv1 server in Microsoft Windows Vista SP2, Windows Server 2008 SP2 and R2 SP1, Windows 7 SP1, Windows 8.1, Windows Server 2012 Gold and R2, Win…

Mitigation only
Fix from $1,950 2016-09-14
Edge HIGH 7.5
CVE-2016-3330EPSS 14%

Microsoft Edge allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via a crafted web site, aka "Micros…

Mitigation only
Fix from $1,950 2016-09-14
Edge HIGH 8.8
CVE-2016-3297EPSS 23%

Microsoft Internet Explorer 9 through 11 and Microsoft Edge allow remote attackers to execute arbitrary code or cause a denial of service (memory cor…

Mitigation only
Fix from $1,950 2016-09-14
Edge HIGH 7.5
CVE-2016-3295EPSS 15%

Microsoft Internet Explorer 10 and 11 and Microsoft Edge allow remote attackers to execute arbitrary code or cause a denial of service (memory corrup…

Mitigation only
Fix from $1,950 2016-09-14
Edge HIGH 7.5
CVE-2016-3294EPSS 14%

Microsoft Edge allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via a crafted web site, aka "Micros…

Mitigation only
Fix from $1,950 2016-09-14
Edge HIGH 7.5
CVE-2016-3247EPSS 71%

Microsoft Internet Explorer 11 and Microsoft Edge allow remote attackers to execute arbitrary code or cause a denial of service (memory corruption) v…

No fix yet
Fix from $1,950 2016-09-14
Office MEDIUM 6.5
CVE-2016-0141

The Visual Basic macros in Microsoft Office 2007 SP3, 2010 SP2, 2013 SP1, and 2016 export a certificate-store private key during a document-save oper…

Mitigation only
Fix from $1,600 2016-09-14
Edge MEDIUM 5.3
CVE-2016-3329EPSS 14%

Microsoft Internet Explorer 9 through 11 and Edge allow remote attackers to determine the existence of files via a crafted webpage, aka "Internet Exp…

Mitigation only
Fix from $1,600 2016-08-09
Edge MEDIUM 5.3
CVE-2016-3327EPSS 14%

Microsoft Internet Explorer 9 through 11 and Edge allow remote attackers to obtain sensitive information via a crafted web page, aka "Microsoft Brows…

Mitigation only
Fix from $1,600 2016-08-09
Edge MEDIUM 5.3
CVE-2016-3326EPSS 16%

Microsoft Internet Explorer 9 through 11 and Edge allow remote attackers to obtain sensitive information via a crafted web page, aka "Microsoft Brows…

Mitigation only
Fix from $1,600 2016-08-09
Edge HIGH 7.5
CVE-2016-3322EPSS 14%

Microsoft Internet Explorer 11 and Edge allow remote attackers to execute arbitrary code via a crafted web page, aka "Microsoft Browser Memory Corrup…

Mitigation only
Fix from $1,950 2016-08-09
Edge HIGH 7.0
CVE-2016-3319EPSS 19%

The PDF library in Microsoft Windows 8.1, Windows Server 2012 Gold and R2, Windows 10 Gold and 1511, and Microsoft Edge allows remote attackers to ex…

Mitigation only
Fix from $1,950 2016-08-09
Office HIGH 7.8
CVE-2016-3318EPSS 22%

Microsoft Office 2007 SP3, 2010 SP2, 2013 SP1, and 2013 RT SP1 allow remote attackers to execute arbitrary code via a crafted file, aka "Graphics Com…

Mitigation only
Fix from $1,950 2016-08-09
Office HIGH 7.8
CVE-2016-3317EPSS 22%

Microsoft Office 2010 SP2, Word 2007 SP3, Word 2010 SP2, Word for Mac 2011, Word 2016 for Mac, and Word Viewer allow remote attackers to execute arbi…

Mitigation only
Fix from $1,950 2016-08-09
Word HIGH 7.8
CVE-2016-3316EPSS 47%

Microsoft Word 2013 SP1, 2013 RT SP1, 2016, and 2016 for Mac allow remote attackers to execute arbitrary code via a crafted file, aka "Microsoft Offi…

No fix yet
Fix from $1,950 2016-08-09
Onenote MEDIUM 5.5
CVE-2016-3315EPSS 30%

Microsoft OneNote 2007 SP3, 2010 SP2, 2013 SP1, 2013 RT SP1, 2016, and 2016 for Mac allow remote attackers to obtain sensitive information via a craf…

Mitigation only
Fix from $1,600 2016-08-09
Office HIGH 7.8
CVE-2016-3313EPSS 50%

Microsoft Office 2007 SP3, 2010 SP2, 2013 SP1, 2013 RT SP1, and 2016, Word 2016 for Mac, and Word Viewer allow remote attackers to execute arbitrary …

No fix yet
Fix from $1,950 2016-08-09
Windows 10 CRITICAL 9.1
CVE-2016-3312EPSS 10%

ActiveSyncProvider in Microsoft Windows 10 Gold and 1511 allows attackers to discover credentials by leveraging failure of Universal Outlook to obtai…

Mitigation only
Fix from $2,300 2016-08-09
Windows 10 HIGH 7.8
CVE-2016-3311

The kernel-mode drivers in Microsoft Windows Vista SP2; Windows Server 2008 SP2 and R2 SP1; Windows 7 SP1; Windows 8.1; Windows Server 2012 Gold and …

Mitigation only
Fix from $1,950 2016-08-09
Windows 10 HIGH 7.8
CVE-2016-3310

The kernel-mode drivers in Microsoft Windows Vista SP2; Windows Server 2008 SP2 and R2 SP1; Windows 7 SP1; Windows 8.1; Windows Server 2012 Gold and …

Mitigation only
Fix from $1,950 2016-08-09
Windows 10 HIGH 7.8
CVE-2016-3308EPSS 6%

The kernel-mode drivers in Microsoft Windows Vista SP2; Windows Server 2008 SP2 and R2 SP1; Windows 7 SP1; Windows 8.1; Windows Server 2012 Gold and …

Mitigation only
Fix from $1,950 2016-08-09