Vulnerability index

Browse CVEs

10,000+ matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Windows 10 1607 HIGH 7.8
CVE-2018-8611 KEV

An elevation of privilege vulnerability exists when the Windows kernel fails to properly handle objects in memory, aka "Windows Kernel Elevation of P…

Patch available
Fix from $1,950 2018-12-12
.net Framework HIGH 7.5
CVE-2018-8517EPSS 5%

A denial of service vulnerability exists when .NET Framework improperly handles special web requests, aka ".NET Framework Denial Of Service Vulnerabi…

Patch available
Fix from $1,950 2018-12-12
Chakracore HIGH 7.5
CVE-2018-8583EPSS 11%

A remote code execution vulnerability exists in the way that the Chakra scripting engine handles objects in memory in Microsoft Edge, aka "Chakra Scr…

Patch available
Fix from $1,950 2018-12-12
Windows 10 MEDIUM 6.5
CVE-2018-8595EPSS 6%

An information disclosure vulnerability exists when the Windows GDI component improperly discloses the contents of its memory, aka "Windows GDI Infor…

Patch available
Fix from $1,600 2018-12-12
Windows 10 MEDIUM 6.5
CVE-2018-8596EPSS 6%

An information disclosure vulnerability exists when the Windows GDI component improperly discloses the contents of its memory, aka "Windows GDI Infor…

Patch available
Fix from $1,600 2018-12-12
Windows 10 MEDIUM 5.5
CVE-2018-8477

An information disclosure vulnerability exists when the Windows kernel improperly handles objects in memory, aka "Windows Kernel Information Disclosu…

Patch available
Fix from $1,600 2018-12-12
Windows 10 MEDIUM 5.5
CVE-2018-8514

An information disclosure vulnerability exists when Remote Procedure Call runtime improperly initializes objects in memory, aka "Remote Procedure Cal…

Patch available
Fix from $1,600 2018-12-12
Windows 10 MEDIUM 5.5
CVE-2018-8612

A Denial Of Service vulnerability exists when Connected User Experiences and Telemetry Service fails to validate certain function values, aka "Connec…

Patch available
Fix from $1,600 2018-12-12
Team Foundation Server CRITICAL 9.8
CVE-2018-8529EPSS 13%

A remote code execution vulnerability exists when Team Foundation Server (TFS) does not enable basic authorization on the communication between the T…

Patch available
Fix from $2,300 2018-11-15
Dynamics 365 HIGH 8.8
CVE-2018-8609EPSS 9%

A remote code execution vulnerability exists in Microsoft Dynamics 365 (on-premises) version 8 when the server fails to properly sanitize web request…

Fix: 8.2.3.0003+
Fix from $1,950 2018-11-14
Windows 10 HIGH 7.8
CVE-2018-8584

An elevation of privilege vulnerability exists when Windows improperly handles calls to Advanced Local Procedure Call (ALPC), aka "Windows ALPC Eleva…

Patch available
Fix from $1,950 2018-11-14
Windows 7 HIGH 7.8
CVE-2018-8589 KEV

An elevation of privilege vulnerability exists when Windows improperly handles calls to Win32k.sys, aka "Windows Win32k Elevation of Privilege Vulner…

Patch available
Fix from $1,950 2018-11-14
Chakracore HIGH 7.5
CVE-2018-8588EPSS 14%

A remote code execution vulnerability exists in the way that the Chakra scripting engine handles objects in memory in Microsoft Edge, aka "Chakra Scr…

Patch available
Fix from $1,950 2018-11-14
Windows 10 MEDIUM 6.4
CVE-2018-8592

An elevation of privilege vulnerability exists in Windows 10 version 1809 when installed from physical media (USB, DVD, etc, aka "Windows Elevation O…

Patch available
Fix from $1,600 2018-11-14
Azure App Service On Azure Stack MEDIUM 6.1
CVE-2018-8600

A Cross-site Scripting (XSS) vulnerability exists when Azure App Services on Azure Stack does not properly sanitize user provided input, aka "Azure A…

Patch available
Fix from $1,600 2018-11-14
Team Foundation Server MEDIUM 5.4
CVE-2018-8602

A Cross-site Scripting (XSS) vulnerability exists when Team Foundation Server does not properly sanitize user provided input, aka "Team Foundation Se…

Patch available
Fix from $1,600 2018-11-14
Dynamics 365 MEDIUM 5.4
CVE-2018-8605

A cross site scripting vulnerability exists when Microsoft Dynamics 365 (on-premises) version 8 does not properly sanitize a specially crafted web re…

Fix: 8.2.3.0003+
Fix from $1,600 2018-11-14
Dynamics 365 MEDIUM 5.4
CVE-2018-8606

A cross site scripting vulnerability exists when Microsoft Dynamics 365 (on-premises) version 8 does not properly sanitize a specially crafted web re…

Fix: 8.2.3.0003+
Fix from $1,600 2018-11-14
Dynamics 365 MEDIUM 5.4
CVE-2018-8607

A cross site scripting vulnerability exists when Microsoft Dynamics 365 (on-premises) version 8 does not properly sanitize a specially crafted web re…

Fix: 8.2.3.0003+
Fix from $1,600 2018-11-14
Dynamics 365 MEDIUM 5.4
CVE-2018-8608

A cross site scripting vulnerability exists when Microsoft Dynamics 365 (on-premises) version 8 does not properly sanitize a specially crafted web re…

Fix: 8.2.3.0003+
Fix from $1,600 2018-11-14
Office 365 Proplus HIGH 8.8
CVE-2018-8582EPSS 17%

A remote code execution vulnerability exists in the way that Microsoft Outlook parses specially modified rule export files, aka "Microsoft Outlook Re…

Patch available
Fix from $1,950 2018-11-14
Windows 10 HIGH 7.8
CVE-2018-8550

An elevation of privilege exists in Windows COM Aggregate Marshaler, aka "Windows COM Elevation of Privilege Vulnerability." This affects Windows 7, …

Patch available
Fix from $1,950 2018-11-14
Windows 10 HIGH 7.8
CVE-2018-8553EPSS 17%

A remote code execution vulnerability exists in the way that Microsoft Graphics Components handle objects in memory, aka "Microsoft Graphics Componen…

Patch available
Fix from $1,950 2018-11-14
Windows 10 HIGH 7.8
CVE-2018-8554

An elevation of privilege vulnerability exists when DirectX improperly handles objects in memory, aka "DirectX Elevation of Privilege Vulnerability."…

Patch available
Fix from $1,950 2018-11-14
Windows 10 HIGH 7.8
CVE-2018-8561

An elevation of privilege vulnerability exists when DirectX improperly handles objects in memory, aka "DirectX Elevation of Privilege Vulnerability."…

Patch available
Fix from $1,950 2018-11-14
Windows 10 HIGH 7.8
CVE-2018-8562

An elevation of privilege vulnerability exists in Windows when the Win32k component fails to properly handle objects in memory, aka "Win32k Elevation…

Patch available
Fix from $1,950 2018-11-14
Office HIGH 7.8
CVE-2018-8573EPSS 17%

A remote code execution vulnerability exists in Microsoft Word software when it fails to properly handle objects in memory, aka "Microsoft Word Remot…

Patch available
Fix from $1,950 2018-11-14
Office HIGH 7.8
CVE-2018-8574EPSS 17%

A remote code execution vulnerability exists in Microsoft Excel software when the software fails to properly handle objects in memory, aka "Microsoft…

Patch available
Fix from $1,950 2018-11-14
Office 365 Proplus HIGH 7.8
CVE-2018-8575EPSS 18%

A remote code execution vulnerability exists in Microsoft Project software when it fails to properly handle objects in memory, aka "Microsoft Project…

Patch available
Fix from $1,950 2018-11-14
Office HIGH 7.8
CVE-2018-8576EPSS 17%

A remote code execution vulnerability exists in Microsoft Outlook software when it fails to properly handle objects in memory, aka "Microsoft Outlook…

Patch available
Fix from $1,950 2018-11-14