Vulnerability index

Browse CVEs

3,025 matching
Filters 2 Clear all
Severity

Filters apply as you choose them.

HIGH 7.8 CVE-2016-7260 The kernel-mode drivers in Microsoft Windows Vista SP2, Windows Server 2008 SP2 and R2 SP1, Windows 7 SP1, Windows 8.1, Windows Server 2012 Gold and … Windows 10 Mitigation only Fix from $1,9502016-12-20 HIGH 7.8 CVE-2016-7263EPSS 19% Microsoft Excel for Mac 2011 and Excel 2016 for Mac allow remote attackers to execute arbitrary code or cause a denial of service (memory corruption)… Excel For Mac Mitigation only Fix from $1,9502016-12-20 HIGH 7.8 CVE-2016-7266EPSS 22% Microsoft Excel 2007 SP3, Excel 2010 SP2, Excel 2013 SP1, Excel 2013 RT SP1, Excel 2016, Office Compatibility Pack SP3, Excel Viewer, and Excel 2016 … Excel Mitigation only Fix from $1,9502016-12-20 HIGH 7.8 CVE-2016-7271 The Secure Kernel Mode implementation in Microsoft Windows 10 Gold, 1511, and 1607 and Windows Server 2016 allows local users to bypass the virtual t… Windows 10 Mitigation only Fix from $1,9502016-12-20 HIGH 7.8 CVE-2016-7275 Microsoft Office 2010 SP2, 2013 SP1, 2013 RT SP1, and 2016 mishandles library loading, which allows local users to gain privileges via a crafted appl… Office Mitigation only Fix from $1,9502016-12-20 HIGH 7.5 CVE-2016-7181EPSS 14% Microsoft Edge allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via a crafted web site, aka "Micros… Edge No fix yet Fix from $1,9502016-12-20 HIGH 7.5 CVE-2016-7270EPSS 20% The Data Provider for SQL Server in Microsoft .NET Framework 4.6.2 mishandles a developer-supplied key, which allows remote attackers to bypass the A… .net Framework Mitigation only Fix from $1,9502016-12-20 HIGH 7.5 CVE-2016-7279EPSS 15% Microsoft Internet Explorer 9 through 11 and Microsoft Edge allow remote attackers to execute arbitrary code or cause a denial of service (memory cor… Edge Mitigation only Fix from $1,9502016-12-20 HIGH 7.1 CVE-2016-7264EPSS 23% Microsoft Excel 2007 SP3, Office Compatibility Pack SP3, Excel Viewer, Excel for Mac 2011, and Excel 2016 for Mac allow remote attackers to obtain se… Excel Mitigation only Fix from $1,9502016-12-20 HIGH 7.1 CVE-2016-7265EPSS 23% Microsoft Excel 2007 SP3, Excel 2010 SP2, Excel 2013 SP1, Excel 2013 RT SP1, Excel 2016, Office Compatibility Pack SP3, Excel Viewer, Excel Services … Excel Mitigation only Fix from $1,9502016-12-20 HIGH 7.1 CVE-2016-7268EPSS 23% Microsoft Word 2007 SP3, Office 2010 SP2, Word 2010 SP2, Office Compatibility Pack SP3, Word Viewer, Word for Mac 2011, Word Automation Services on S… Office Mitigation only Fix from $1,9502016-12-20 HIGH 7.1 CVE-2016-7276EPSS 25% Microsoft Office 2007 SP3, Office 2010 SP2, Office 2013 SP1, Office for Mac 2011, and Office 2016 for Mac allow remote attackers to obtain sensitive … Office Mitigation only Fix from $1,9502016-12-20 MEDIUM 6.5 CVE-2016-7257EPSS 23% The GDI component in Microsoft Windows Vista SP2, Windows Server 2008 SP2 and R2 SP1, Windows 7 SP1, Office for Mac 2011, and Office 2016 for Mac all… Office For Mac Mitigation only Fix from $1,6002016-12-20 MEDIUM 6.1 CVE-2016-7206EPSS 12% Cross-site scripting (XSS) vulnerability in Microsoft Edge allows remote attackers to inject arbitrary web script or HTML via unspecified vectors, ak… Edge Mitigation only Fix from $1,6002016-12-20 MEDIUM 5.5 CVE-2016-7219 The Crypto driver in Microsoft Windows Vista SP2, Windows Server 2008 SP2 and R2 SP1, Windows 7 SP1, Windows 8.1, Windows Server 2012 Gold and R2, Wi… Windows 10 Mitigation only Fix from $1,6002016-12-20 MEDIUM 5.5 CVE-2016-7258 The kernel in Microsoft Windows 10 Gold, 1511, and 1607 and Windows Server 2016 mishandles page-fault system calls, which allows local users to obtai… Windows 10 Mitigation only Fix from $1,6002016-12-20 MEDIUM 5.5 CVE-2016-7267EPSS 19% Microsoft Excel 2010 SP2, 2013 SP1, 2013 RT SP1, and 2016 misparses file formats, which makes it easier for remote attackers to execute arbitrary cod… Excel Mitigation only Fix from $1,6002016-12-20 HIGH 8.8 CVE-2016-7254EPSS 12% Microsoft SQL Server 2012 SP2 and 2012 SP3 does not properly perform a cast of an unspecified pointer, which allows remote authenticated users to gai… Sql Server Mitigation only Fix from $1,9502016-11-10 HIGH 8.8 CVE-2016-7253EPSS 12% The agent in Microsoft SQL Server 2012 SP2, 2012 SP3, 2014 SP1, 2014 SP2, and 2016 does not properly check the atxcore.dll ACL, which allows remote a… Sql Server Mitigation only Fix from $1,9502016-11-10 MEDIUM 6.5 CVE-2016-7252EPSS 18% Microsoft SQL Server 2016 mishandles the FILESTREAM path, which allows remote authenticated users to gain privileges via unspecified vectors, aka "SQ… Sql Server Mitigation only Fix from $1,6002016-11-10 MEDIUM 6.1 CVE-2016-7251EPSS 8% Cross-site scripting (XSS) vulnerability in the MDS API in Microsoft SQL Server 2016 allows remote attackers to inject arbitrary web script or HTML v… Sql Server Mitigation only Fix from $1,6002016-11-10 HIGH 8.8 CVE-2016-7250EPSS 12% Microsoft SQL Server 2014 SP1, 2014 SP2, and 2016 does not properly perform a cast of an unspecified pointer, which allows remote authenticated users… Sql Server Mitigation only Fix from $1,9502016-11-10 HIGH 8.8 CVE-2016-7249EPSS 12% Microsoft SQL Server 2016 does not properly perform a cast of an unspecified pointer, which allows remote authenticated users to gain privileges via … Sql Server Mitigation only Fix from $1,9502016-11-10 HIGH 7.8 CVE-2016-7248EPSS 22% Microsoft Video Control in Microsoft Windows Vista SP2, Windows 7 SP1, Windows 8.1, Windows RT 8.1, and Windows 10 Gold, 1511, and 1607 allows remote… Windows 10 Mitigation only Fix from $1,9502016-11-10 HIGH 7.5 CVE-2016-7247EPSS 6% Microsoft Windows 8.1, Windows Server 2012 Gold and R2, Windows RT 8.1, Windows 10 Gold, 1511, and 1607, and Windows Server 2016 allow physically pro… Windows 10 Mitigation only Fix from $1,9502016-11-10 HIGH 7.8 CVE-2016-7246 The kernel-mode drivers in Microsoft Windows Server 2008 R2 SP1, Windows 7 SP1, Windows 8.1, Windows Server 2012 Gold and R2, Windows RT 8.1, Windows… Windows 10 Mitigation only Fix from $1,9502016-11-10 HIGH 7.8 CVE-2016-7245EPSS 20% Microsoft Office 2007 SP3, Office 2010 SP2, Office 2013 SP1, Office 2013 RT SP1, and Office 2016 allow remote attackers to execute arbitrary code via… Office Mitigation only Fix from $1,9502016-11-10 MEDIUM 5.5 CVE-2016-7244EPSS 16% Microsoft Office 2007 SP3 allows remote attackers to cause a denial of service (application hang) via a crafted Office document, aka "Microsoft Offic… Office Mitigation only Fix from $1,6002016-11-10 HIGH 7.5 CVE-2016-7243EPSS 15% The Chakra JavaScript scripting engine in Microsoft Edge allows remote attackers to execute arbitrary code or cause a denial of service (memory corru… Edge Mitigation only Fix from $1,9502016-11-10 HIGH 7.5 CVE-2016-7242EPSS 16% The Chakra JavaScript scripting engine in Microsoft Edge allows remote attackers to execute arbitrary code or cause a denial of service (memory corru… Edge Mitigation only Fix from $1,9502016-11-10