Vulnerability index

Browse CVEs

10,000+ matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Windows 10 MEDIUM 5.9
CVE-2017-0275EPSS 7%

Microsoft Server Message Block 1.0 (SMBv1) allows an information disclosure vulnerability in the way that Microsoft Windows Server 2008 SP2 and R2 SP…

Patch available
Fix from $1,600 2017-05-12
Windows 10 MEDIUM 5.9
CVE-2017-0276EPSS 7%

Microsoft Server Message Block 1.0 (SMBv1) allows an information disclosure vulnerability in the way that Microsoft Windows Server 2008 SP2 and R2 SP…

Patch available
Fix from $1,600 2017-05-12
Windows 10 MEDIUM 5.9
CVE-2017-0280EPSS 8%

The Microsoft Server Message Block 1.0 (SMBv1) allows denial of service when an attacker sends specially crafted requests to the server, aka "Windows…

Patch available
Fix from $1,600 2017-05-12
Windows 10 HIGH 8.1
CVE-2017-0272EPSS 21%

The Microsoft Server Message Block 1.0 (SMBv1) server on Microsoft Windows Server 2008 SP2 and R2 SP1, Windows 7 SP1, Windows 8.1, Windows Server 201…

Patch available
Fix from $1,950 2017-05-12
Office HIGH 7.8
CVE-2017-0262 KEVEPSS 81%

Microsoft Office 2010 SP2, Office 2013 SP1, and Office 2016 allow a remote code execution vulnerability when the software fails to properly handle ob…

Patch available
Fix from $1,950 2017-05-12
Windows 10 1507 HIGH 7.8
CVE-2017-0263 KEVEPSS 10%

The kernel-mode drivers in Microsoft Windows Server 2008 SP2 and R2 SP1, Windows 7 SP1, Windows 8.1, Windows Server 2012 Gold and R2, Windows RT 8.1,…

Patch available
Fix from $1,950 2017-05-12
Powerpoint For Mac HIGH 7.8
CVE-2017-0264EPSS 13%

Microsoft PowerPoint for Mac 2011 allows a remote code execution vulnerability when the software fails to properly handle objects in memory, aka "Mic…

Patch available
Fix from $1,950 2017-05-12
Powerpoint For Mac HIGH 7.8
CVE-2017-0265EPSS 16%

Microsoft PowerPoint for Mac 2011 allows a remote code execution vulnerability when the software fails to properly handle objects in memory, aka "Mic…

Patch available
Fix from $1,950 2017-05-12
Edge HIGH 7.5
CVE-2017-0266EPSS 33%

A remote code execution vulnerability exists in Microsoft Edge in the way affected Microsoft scripting engines render when handling objects in memory…

Patch available
Fix from $1,950 2017-05-12
Windows 10 MEDIUM 5.9
CVE-2017-0267EPSS 11%

Microsoft Server Message Block 1.0 (SMBv1) allows an information disclosure vulnerability in the way that Microsoft Windows Server 2008 SP2 and R2 SP…

Patch available
Fix from $1,600 2017-05-12
Windows 10 MEDIUM 5.9
CVE-2017-0268EPSS 7%

Microsoft Server Message Block 1.0 (SMBv1) allows an information disclosure vulnerability in the way that Microsoft Windows Server 2008 SP2 and R2 SP…

Patch available
Fix from $1,600 2017-05-12
Windows 10 MEDIUM 5.9
CVE-2017-0269EPSS 7%

The Microsoft Server Message Block 1.0 (SMBv1) allows denial of service when an attacker sends specially crafted requests to the server, aka "Windows…

Patch available
Fix from $1,600 2017-05-12
Windows 10 MEDIUM 5.9
CVE-2017-0270EPSS 7%

Microsoft Server Message Block 1.0 (SMBv1) allows an information disclosure vulnerability in the way that Microsoft Windows Server 2008 SP2 and R2 SP…

Patch available
Fix from $1,600 2017-05-12
Windows 10 MEDIUM 5.9
CVE-2017-0271EPSS 11%

Microsoft Server Message Block 1.0 (SMBv1) allows an information disclosure vulnerability in the way that Microsoft Windows Server 2008 SP2 and R2 SP…

Patch available
Fix from $1,600 2017-05-12
Windows 10 MEDIUM 5.9
CVE-2017-0273EPSS 7%

The Microsoft Server Message Block 1.0 (SMBv1) allows denial of service when an attacker sends specially crafted requests to the server, aka "Windows…

Patch available
Fix from $1,600 2017-05-12
Office HIGH 7.8
CVE-2017-0254EPSS 17%

Microsoft Word 2007, Office 2010 SP2, Word 2010 SP2, Office Compatibility Pack SP3, Office for Mac 2011, Office for Mac 2016, Microsoft Office Web Ap…

Patch available
Fix from $1,950 2017-05-12
Office HIGH 7.8
CVE-2017-0261 KEVEPSS 78%

Microsoft Office 2010 SP2, Office 2013 SP1, and Office 2016 allow a remote code execution vulnerability when the software fails to properly handle ob…

Patch available
Fix from $1,950 2017-05-12
Asp.net Model View Controller HIGH 7.3
CVE-2017-0249EPSS 8%

An elevation of privilege vulnerability exists when the ASP.NET Core fails to properly sanitize web requests.

No fix yet
Fix from $1,950 2017-05-12
Sharepoint Foundation MEDIUM 5.4
CVE-2017-0255

Microsoft SharePoint Foundation 2013 SP1 allows an elevation of privilege vulnerability when it does not properly sanitize a specially crafted web re…

Patch available
Fix from $1,600 2017-05-12
Asp.net Model View Controller MEDIUM 5.3
CVE-2017-0256EPSS 5%

A spoofing vulnerability exists when the ASP.NET Core fails to properly sanitize web requests.

Mitigation only
Fix from $1,600 2017-05-12
Edge HIGH 7.5
CVE-2017-0238EPSS 17%

A remote code execution vulnerability exists in Microsoft browsers in the way JavaScript scripting engines handle objects in memory, aka "Scripting E…

Patch available
Fix from $1,950 2017-05-12
Edge HIGH 7.5
CVE-2017-0240EPSS 15%

A remote code execution vulnerability exists in Microsoft Edge in the way affected Microsoft scripting engines render when handling objects in memory…

Patch available
Fix from $1,950 2017-05-12
Asp.net Model View Controller HIGH 7.5
CVE-2017-0247EPSS 17%

A denial of service vulnerability exists when the ASP.NET Core fails to properly validate web requests. NOTE: Microsoft has not commented on third-pa…

Patch available
Fix from $1,950 2017-05-12
.net Framework HIGH 7.5
CVE-2017-0248EPSS 5%

Microsoft .NET Framework 2.0, 3.5, 3.5.1, 4.5.2, 4.6, 4.6.1, 4.6.2 and 4.7 allow an attacker to bypass Enhanced Security Usage taggings when they pre…

Patch available
Fix from $1,950 2017-05-12
Windows 10 HIGH 7.0
CVE-2017-0246

The Graphics Component in the kernel-mode drivers in Windows Server 2008 SP2 and R2 SP1, Windows 7 SP1, Windows 8.1, Windows Server 2012 Gold and R2,…

Patch available
Fix from $1,950 2017-05-12
Edge MEDIUM 5.3
CVE-2017-0241

An elevation of privilege vulnerability exists when Microsoft Edge renders a domain-less page in the URL, which could allow Microsoft Edge to perform…

Patch available
Fix from $1,600 2017-05-12
Internet Explorer HIGH 8.8
CVE-2017-0222 KEVEPSS 30%

A remote code execution vulnerability exists when Internet Explorer improperly accesses objects in memory, aka "Internet Explorer Memory Corruption V…

Patch available
Fix from $1,950 2017-05-12
Edge HIGH 8.3
CVE-2017-0233

An elevation of privilege vulnerability exists in Microsoft Edge that could allow an attacker to escape from the AppContainer sandbox in the browser,…

Patch available
Fix from $1,950 2017-05-12
Edge HIGH 7.5
CVE-2017-0221

A vulnerability exists when Microsoft Edge improperly accesses objects in memory, aka "Microsoft Edge Memory Corruption Vulnerability." This CVE ID i…

Patch available
Fix from $1,950 2017-05-12
Edge HIGH 7.5
CVE-2017-0224EPSS 12%

A remote code execution vulnerability exists in the way JavaScript engines render when handling objects in memory in Microsoft Edge, aka "Scripting E…

Patch available
Fix from $1,950 2017-05-12