Vulnerability index

Browse CVEs

10,000+ matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Windows 10 MEDIUM 5.5
CVE-2018-8486

An information disclosure vulnerability exists when DirectX improperly handles objects in memory, aka "DirectX Information Disclosure Vulnerability."…

Patch available
Fix from $1,600 2018-10-10
Sharepoint Enterprise Server 2016 MEDIUM 5.4
CVE-2018-8480

An elevation of privilege vulnerability exists when Microsoft SharePoint Server does not properly sanitize a specially crafted web request to an affe…

Patch available
Fix from $1,600 2018-10-10
Sharepoint Enterprise Server MEDIUM 5.4
CVE-2018-8488

An elevation of privilege vulnerability exists when Microsoft SharePoint Server does not properly sanitize a specially crafted web request to an affe…

Patch available
Fix from $1,600 2018-10-10
Windows 10 MEDIUM 5.3
CVE-2018-8492

A security feature bypass vulnerability exists in Device Guard that could allow an attacker to inject malicious code into a Windows PowerShell sessio…

Patch available
Fix from $1,600 2018-10-10
Windows 10 HIGH 7.8
CVE-2018-8423EPSS 28%

A remote code execution vulnerability exists in the Microsoft JET Database Engine, aka "Microsoft JET Database Engine Remote Code Execution Vulnerabi…

Patch available
Fix from $1,950 2018-10-10
Excel Viewer HIGH 7.8
CVE-2018-8432EPSS 18%

A remote code execution vulnerability exists in the way that Microsoft Graphics Components handle objects in memory, aka "Microsoft Graphics Componen…

Patch available
Fix from $1,950 2018-10-10
Windows 10 1507 HIGH 7.8
CVE-2018-8453 KEVEPSS 70%

An elevation of privilege vulnerability exists in Windows when the Win32k component fails to properly handle objects in memory, aka "Win32k Elevation…

Patch available
Fix from $1,950 2018-10-10
Chakracore HIGH 7.5
CVE-2018-8473EPSS 15%

A remote code execution vulnerability exists when Microsoft Edge improperly accesses objects in memory, aka "Microsoft Edge Memory Corruption Vulnera…

Patch available
Fix from $1,950 2018-10-10
Excel Viewer MEDIUM 5.5
CVE-2018-8427

An information disclosure vulnerability exists in the way that Microsoft Graphics Components handle objects in memory, aka "Microsoft Graphics Compon…

Patch available
Fix from $1,600 2018-10-10
Windows 10 MEDIUM 5.5
CVE-2018-8472EPSS 20%

An information disclosure vulnerability exists in the way that the Windows Graphics Device Interface (GDI) handles objects in memory, allowing an att…

Patch available
Fix from $1,600 2018-10-10
Exchange Server MEDIUM 5.4
CVE-2018-8448

An elevation of privilege vulnerability exists when Microsoft Exchange Outlook Web Access (OWA) fails to properly handle web requests, aka "Microsoft…

Patch available
Fix from $1,600 2018-10-10
Exchange Server HIGH 7.8
CVE-2018-8265EPSS 24%

A remote code execution vulnerability exists in the way Microsoft Exchange software parses specially crafted email messages, aka "Microsoft Exchange …

Patch available
Fix from $1,950 2018-10-10
Windows 10 HIGH 7.8
CVE-2018-8329

An Elevation of Privilege vulnerability exists in Windows Subsystem for Linux when it fails to properly handle objects in memory, aka "Linux On Windo…

Patch available
Fix from $1,950 2018-10-10
Windows 10 HIGH 7.8
CVE-2018-8411

An elevation of privilege vulnerability exists when NTFS improperly checks access, aka "NTFS Elevation of Privilege Vulnerability." This affects Wind…

Patch available
Fix from $1,950 2018-10-10
Windows 10 HIGH 7.8
CVE-2018-8413EPSS 37%

A remote code execution vulnerability exists when "Windows Theme API" does not properly decompress files, aka "Windows Theme API Remote Code Executio…

Patch available
Fix from $1,950 2018-10-10
Asp.net Core HIGH 7.5
CVE-2018-8292EPSS 12%

An information disclosure vulnerability exists in .NET Core when authentication information is inadvertently exposed in a redirect, aka ".NET Core In…

Patch available
Fix from $1,950 2018-10-10
Windows 10 HIGH 7.0
CVE-2018-8333

An Elevation of Privilege vulnerability exists in Filter Manager when it improperly handles objects in memory, aka "Microsoft Filter Manager Elevatio…

Patch available
Fix from $1,950 2018-10-10
Windows 10 MEDIUM 5.5
CVE-2018-8330

An information disclosure vulnerability exists when the Windows kernel improperly handles objects in memory, aka "Windows Kernel Information Disclosu…

Patch available
Fix from $1,600 2018-10-10
Exchange Server HIGH 8.6
CVE-2018-16793EPSS 11%

Rollup 18 for Microsoft Exchange Server 2010 SP3 and previous versions has an SSRF vulnerability via the username parameter in /owa/auth/logon.aspx i…

No fix yet
Fix from $1,950 2018-09-21
Active Directory Federation Services HIGH 8.6
CVE-2018-16794EPSS 8%

Microsoft ADFS 4.0 Windows Server 2016 and previous (Active Directory Federation Services) has an SSRF vulnerability via the txtBoxEmail parameter in…

Fix: after 4.0
Fix from $1,950 2018-09-18
Windows 10 HIGH 8.8
CVE-2018-8475EPSS 14%

A remote code execution vulnerability exists when Windows does not properly handle specially crafted image files, aka "Windows Remote Code Execution …

Patch available
Fix from $1,950 2018-09-13
Lync For Mac HIGH 7.5
CVE-2018-8474EPSS 55%

A security feature bypass vulnerability exists when Lync for Mac 2011 fails to properly sanitize specially crafted messages, aka "Lync for Mac 2011 S…

No fix yet
Fix from $1,950 2018-09-13
C Software Development Kit MEDIUM 5.6
CVE-2018-8479

A spoofing vulnerability exists for the Azure IoT Device Provisioning for the C SDK library using the HTTP protocol on Windows platform, aka "Azure I…

Patch available
Fix from $1,600 2018-09-13
Windows 10 HIGH 7.8
CVE-2018-8462

An elevation of privilege vulnerability exists when the DirectX Graphics Kernel (DXGKRNL) driver improperly handles objects in memory, aka "DirectX G…

Patch available
Fix from $1,950 2018-09-13
Edge HIGH 7.5
CVE-2018-8464EPSS 48%

An remote code execution vulnerability exists when Microsoft Edge PDF Reader improperly handles objects in memory, aka "Microsoft Edge PDF Remote Cod…

Patch available
Fix from $1,950 2018-09-13
Edge HIGH 7.5
CVE-2018-8465EPSS 15%

A remote code execution vulnerability exists in the way that the Chakra scripting engine handles objects in memory in Microsoft Edge, aka "Chakra Scr…

Patch available
Fix from $1,950 2018-09-13
Chakracore HIGH 7.5
CVE-2018-8466EPSS 64%

A remote code execution vulnerability exists in the way that the Chakra scripting engine handles objects in memory in Microsoft Edge, aka "Chakra Scr…

Fix: after 1.10.1
Fix from $1,950 2018-09-13
Chakracore HIGH 7.5
CVE-2018-8467EPSS 64%

A remote code execution vulnerability exists in the way that the Chakra scripting engine handles objects in memory in Microsoft Edge, aka "Chakra Scr…

Patch available
Fix from $1,950 2018-09-13
Edge HIGH 7.4
CVE-2018-8463EPSS 13%

An elevation of privilege vulnerability exists in Microsoft Edge that could allow an attacker to escape from the AppContainer sandbox in the browser,…

Patch available
Fix from $1,950 2018-09-13
Edge HIGH 7.4
CVE-2018-8469EPSS 13%

An elevation of privilege vulnerability exists in Microsoft Edge that could allow an attacker to escape from the AppContainer sandbox in the browser,…

Patch available
Fix from $1,950 2018-09-13