Vulnerability index

Browse CVEs

10,000+ matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Chakracore HIGH 7.5
CVE-2017-11806EPSS 9%

ChakraCore and Microsoft Edge in Microsoft Windows 10 1703 allows an attacker to execute arbitrary code in the context of the current user, due to ho…

Fix: after 1.7.2
Fix from $1,950 2017-10-13
Chakracore HIGH 7.5
CVE-2017-11807EPSS 9%

ChakraCore and Microsoft Edge in Microsoft Windows 10 1703 allows an attacker to execute arbitrary code in the context of the current user, due to ho…

Fix: after 1.7.2
Fix from $1,950 2017-10-13
Chakracore HIGH 7.5
CVE-2017-11808EPSS 9%

ChakraCore and Microsoft Edge in Microsoft Windows 10 Gold, 1511, 1607, 1703, and Windows Server 2016 allows an attacker to execute arbitrary code in…

Fix: after 1.7.2
Fix from $1,950 2017-10-13
Chakracore HIGH 7.5
CVE-2017-11809EPSS 56%

ChakraCore and Microsoft Edge in Microsoft Windows 10 Gold, 1511, 1607, 1703, and Windows Server 2016 allows an attacker to execute arbitrary code in…

Fix: after 1.7.2
Fix from $1,950 2017-10-13
Edge HIGH 7.5
CVE-2017-11811EPSS 52%

ChakraCore and Microsoft Edge in Microsoft Windows 10 Gold, 1511, 1607, 1703, and Windows Server 2016 allows an attacker to execute arbitrary code in…

Fix: 1.7.3+
Fix from $1,950 2017-10-13
Chakracore HIGH 7.5
CVE-2017-11812EPSS 48%

ChakraCore and Microsoft Edge in Microsoft Windows 10 1511, 1607, 1703, and Windows Server 2016 allows an attacker to execute arbitrary code in the c…

Fix: after 1.7.2
Fix from $1,950 2017-10-13
Chakracore HIGH 7.5
CVE-2017-11821EPSS 9%

ChakraCore and Microsoft Edge in Microsoft Windows 10 1703 allows an attacker to execute arbitrary code in the context of the current user, due to ho…

Fix: after 1.7.2
Fix from $1,950 2017-10-13
Windows 10 MEDIUM 6.7
CVE-2017-11823

The Microsoft Device Guard on Microsoft Windows 10 Gold, 1511, 1607, and 1703, and Windows Server 2016 allows a security feature bypass by the way it…

Patch available
Fix from $1,600 2017-10-13
Windows 10 MEDIUM 5.5
CVE-2017-11814

The Microsoft Windows Kernel component on Microsoft Windows Server 2008 SP2 and R2 SP1, Windows 7 SP1, Windows 8.1, Windows Server 2012 Gold and R2, …

Patch available
Fix from $1,600 2017-10-13
Windows 10 MEDIUM 5.5
CVE-2017-11816EPSS 21%

The Microsoft Windows Graphics Device Interface (GDI) on Microsoft Windows Server 2008 SP2 and R2 SP1, Windows 7 SP1, Windows 8.1, Windows Server 201…

Patch available
Fix from $1,600 2017-10-13
Sharepoint Enterprise Server MEDIUM 5.4
CVE-2017-11820

Microsoft SharePoint Enterprise Server 2013 SP1 and Microsoft SharePoint Enterprise Server 2016 allow an attacker to exploit a cross-site scripting (…

Patch available
Fix from $1,600 2017-10-13
Windows 10 MEDIUM 5.3
CVE-2017-11815EPSS 7%

The Microsoft Server Block Message (SMB) on Microsoft Windows Server 2008 SP2 and R2 SP1, Windows 7 SP1, Windows 8.1, Windows Server 2012 Gold and R2…

Patch available
Fix from $1,600 2017-10-13
Windows 10 CRITICAL 9.8
CVE-2017-11771EPSS 55%

The Microsoft Windows Search component on Microsoft Windows Server 2008 SP2 and R2 SP1, Windows 7 SP1, Windows 8.1, Windows Server 2012 Gold and R2, …

Patch available
Fix from $2,300 2017-10-13
Windows 10 HIGH 8.8
CVE-2017-11762EPSS 15%

The Microsoft Graphics Component on Microsoft Windows Server 2008 SP2 and R2 SP1, Windows 7 SP1, Windows 8.1, Windows Server 2012 Gold and R2, Window…

Patch available
Fix from $1,950 2017-10-13
Windows 10 HIGH 8.8
CVE-2017-11763EPSS 15%

The Microsoft Graphics Component on Microsoft Windows Server 2008 SP2 and R2 SP1, Windows 7 SP1, Windows 8.1, Windows Server 2012 Gold and R2, Window…

Patch available
Fix from $1,950 2017-10-13
Lync HIGH 8.8
CVE-2017-11786EPSS 8%

Skype for Business in Microsoft Lync 2013 SP1 and Skype for Business 2016 allows an attacker to steal an authentication hash that can be reused elsew…

Patch available
Fix from $1,950 2017-10-13
Windows 10 HIGH 8.1
CVE-2017-11779EPSS 25%

The Microsoft Windows Domain Name System (DNS) DNSAPI.dll on Microsoft Windows 8.1, Windows Server 2012 R2, Windows RT 8.1, Windows 10 Gold, 1511, 16…

Patch available
Fix from $1,950 2017-10-13
Windows 10 HIGH 7.8
CVE-2017-11769EPSS 17%

The Microsoft Windows TRIE component on Microsoft Windows 10 Gold, 1511, 1607, and 1703, and Windows Server 2016 allows a remote code execution vulne…

Patch available
Fix from $1,950 2017-10-13
Outlook HIGH 7.8
CVE-2017-11774 KEVEPSS 60%

Microsoft Outlook 2010 SP2, Outlook 2013 SP1 and RT SP1, and Outlook 2016 allow an attacker to execute arbitrary commands, due to how Microsoft Offic…

Patch available
Fix from $1,950 2017-10-13
Windows 10 HIGH 7.8
CVE-2017-11782

The Microsoft Server Block Message (SMB) on Microsoft Windows 10 1607 and Windows Server 2016, allows an elevation of privilege vulnerability when an…

Patch available
Fix from $1,950 2017-10-13
Windows 10 HIGH 7.5
CVE-2017-11772EPSS 7%

The Microsoft Windows Search component on Microsoft Windows Server 2008 SP2 and R2 SP1, Windows 7 SP1, Windows 8.1, Windows Server 2012 Gold and R2, …

Patch available
Fix from $1,950 2017-10-13
Outlook HIGH 7.5
CVE-2017-11776EPSS 8%

Microsoft Outlook 2016 allows an attacker to obtain the email content of a user, due to how Outlook 2016 discloses user email content, aka "Microsoft…

Patch available
Fix from $1,950 2017-10-13
Windows 10 HIGH 7.5
CVE-2017-11781EPSS 12%

The Microsoft Server Block Message (SMB) on Microsoft Windows Server 2008 SP2 and R2 SP1, Windows 7 SP1, Windows 8.1, Windows Server 2012 Gold and R2…

Patch available
Fix from $1,950 2017-10-13
Chakracore HIGH 7.5
CVE-2017-11792EPSS 9%

ChakraCore and Microsoft Edge in Microsoft Windows 10 1703 allow an attacker to execute arbitrary code in the context of the current user, due to how…

Fix: after 1.7.2
Fix from $1,950 2017-10-13
Windows 10 HIGH 7.0
CVE-2017-11780EPSS 15%

The Server Message Block 1.0 (SMBv1) on Microsoft Windows Server 2008 SP2 and R2 SP1, Windows 7 SP1, Windows 8.1, Windows Server 2012 Gold and R2, Wi…

Patch available
Fix from $1,950 2017-10-13
Windows 10 HIGH 7.0
CVE-2017-11783

Microsoft Windows 8.1, Windows Server 2012 R2, Windows RT 8.1, Windows 10 Gold, 1511, 1607, and 1703, and Windows Server 2016 allows an elevation of …

Patch available
Fix from $1,950 2017-10-13
Windows 10 MEDIUM 5.5
CVE-2017-11765

The Microsoft Windows Kernel component on Microsoft Windows Server 2008 SP2 and R2 SP1, Windows 7 SP1, Windows 8.1, Windows Server 2012 Gold and R2, …

Patch available
Fix from $1,600 2017-10-13
Windows 10 MEDIUM 5.5
CVE-2017-11784

The Microsoft Windows Kernel component on Microsoft Windows Server 2008 SP2 and R2 SP1, Windows 7 SP1, Windows 8.1, Windows Server 2012 Gold and R2, …

Patch available
Fix from $1,600 2017-10-13
Windows 10 MEDIUM 5.5
CVE-2017-11785

The Microsoft Windows Kernel component on Microsoft Windows Server 2008 SP2 and R2 SP1, Windows 7 SP1, Windows 8.1, Windows Server 2012 Gold and R2, …

Patch available
Fix from $1,600 2017-10-13
Sharepoint Enterprise Server MEDIUM 5.4
CVE-2017-11775

Microsoft SharePoint Enterprise Server 2013 SP1 and Microsoft SharePoint Enterprise Server 2016 allow an attacker to exploit a cross-site scripting (…

Patch available
Fix from $1,600 2017-10-13