Top technology
Linux 13140
Google 12536
Microsoft 12379
Oracle 6843
Apple 6692
Adobe 6387
Ibm 6336
Cisco 5759
Debian 3919
Mozilla 2895
Apache 2864
Redhat 2592
MEDIUM 5.4
CVE-2019-1305
A Cross-site Scripting (XSS) vulnerability exists when Team Foundation Server does not properly sanitize user provided input, aka 'Team Foundation Se…
Team Foundation Server
Patch available
HIGH 8.8
CVE-2019-1290EPSS 12%
A remote code execution vulnerability exists in the Windows Remote Desktop Client when a user connects to a malicious server, aka 'Remote Desktop Cli…
Windows 10
Patch available
HIGH 8.8
CVE-2019-1291EPSS 12%
A remote code execution vulnerability exists in the Windows Remote Desktop Client when a user connects to a malicious server, aka 'Remote Desktop Cli…
Windows 10
Patch available
HIGH 8.8
CVE-2019-1295EPSS 8%
A remote code execution vulnerability exists in Microsoft SharePoint where APIs aren't properly protected from unsafe data input, aka 'Microsoft Shar…
Sharepoint Enterprise Server
Patch available
HIGH 8.8
CVE-2019-1296EPSS 8%
A remote code execution vulnerability exists in Microsoft SharePoint where APIs aren't properly protected from unsafe data input, aka 'Microsoft Shar…
Sharepoint Enterprise Server
Patch available
HIGH 8.8
CVE-2019-1297 KEVEPSS 22%
A remote code execution vulnerability exists in Microsoft Excel software when the software fails to properly handle objects in memory, aka 'Microsoft…
Excel
Patch available
HIGH 7.8
CVE-2019-1285
An elevation of privilege vulnerability exists in Windows when the Win32k component fails to properly handle objects in memory, aka 'Win32k Elevation…
Windows 10
Patch available
HIGH 7.8
CVE-2019-1287
An elevation of privilege vulnerability exists in the way that the Windows Network Connectivity Assistant handles objects in memory, aka 'Windows Net…
Windows 10
Patch available
HIGH 7.5
CVE-2019-1298EPSS 9%
A remote code execution vulnerability exists in the way that the Chakra scripting engine handles objects in memory in Microsoft Edge, aka 'Chakra Scr…
Edge
1.11.13+
HIGH 7.5
CVE-2019-1300EPSS 9%
A remote code execution vulnerability exists in the way that the Chakra scripting engine handles objects in memory in Microsoft Edge, aka 'Chakra Scr…
Edge
1.11.13+
MEDIUM 6.5
CVE-2019-1286EPSS 6%
An information disclosure vulnerability exists when the Windows GDI component improperly discloses the contents of its memory, aka 'Windows GDI Infor…
Windows 10
Patch available
MEDIUM 6.5
CVE-2019-1299EPSS 6%
An information disclosure vulnerability exists when Microsoft Edge based on Edge HTML improperly handles objects in memory, aka 'Microsoft Edge based…
Edge
Patch available
MEDIUM 5.5
CVE-2019-1289
An elevation of privilege vulnerability exists when the Windows Update Delivery Optimization does not properly enforce file share permissions, aka 'W…
Windows 10
Patch available
MEDIUM 5.5
CVE-2019-1293
An information disclosure vulnerability exists in Windows when the Windows SMB Client kernel-mode driver fails to properly handle objects in memory, …
Windows 10
Patch available
HIGH 7.8
CVE-2019-1267
An elevation of privilege vulnerability exists in Microsoft Compatibility Appraiser where a configuration file, with local privileges, is vulnerable …
Windows 10
Patch available
HIGH 7.8
CVE-2019-1268
An elevation of privilege exists when Winlogon does not properly handle file path information, aka 'Winlogon Elevation of Privilege Vulnerability'.
Windows 10
Patch available
HIGH 7.8
CVE-2019-1269
An elevation of privilege vulnerability exists when Windows improperly handles calls to Advanced Local Procedure Call (ALPC).An attacker who successf…
Windows 10
Patch available
HIGH 7.8
CVE-2019-1271
An elevation of privilege exists in hdAudio.sys which may lead to an out of band write, aka 'Windows Media Elevation of Privilege Vulnerability'.
Windows 10
Patch available
HIGH 7.8
CVE-2019-1272
An elevation of privilege vulnerability exists when Windows improperly handles calls to Advanced Local Procedure Call (ALPC).An attacker who successf…
Windows 10
Patch available
HIGH 7.8
CVE-2019-1277
An elevation of privilege vulnerability exists in Windows Audio Service when a malformed parameter is processed, aka 'Windows Audio Service Elevation…
Windows 10
Patch available
HIGH 7.8
CVE-2019-1278
An elevation of privilege vulnerability exists in the way that the unistore.dll handles objects in memory, aka 'Windows Elevation of Privilege Vulner…
Windows 10
Patch available
HIGH 7.8
CVE-2019-1280EPSS 19%
A remote code execution vulnerability exists in Microsoft Windows that could allow remote code execution if a .LNK file is processed.An attacker who …
Windows 10
Patch available
MEDIUM 6.1
CVE-2019-1266
A spoofing vulnerability exists in Microsoft Exchange Server when Outlook Web App (OWA) fails to properly handle web requests, aka 'Microsoft Exchang…
Exchange Server
Patch available
MEDIUM 5.5
CVE-2019-1270
An elevation of privilege vulnerability exists in Windows store installer where WindowsApps directory is vulnerable to symbolic link attack, aka 'Mic…
Windows 10
Patch available
MEDIUM 5.5
CVE-2019-1274
An information disclosure vulnerability exists when the Windows kernel fails to properly initialize a memory address, aka 'Windows Kernel Information…
Windows 10
Patch available
MEDIUM 5.5
CVE-2019-1282
An information disclosure exists in the Windows Common Log File System (CLFS) driver when it fails to properly handle sandbox checks, aka 'Windows Co…
Windows 10
Patch available
MEDIUM 5.4
CVE-2019-1273
A cross-site-scripting (XSS) vulnerability exists when Active Directory Federation Services (ADFS) does not properly sanitize certain error messages,…
Windows 10
Patch available
HIGH 8.8
CVE-2019-1257EPSS 12%
A remote code execution vulnerability exists in Microsoft SharePoint when the software fails to check the source markup of an application package, ak…
Sharepoint Enterprise Server
Patch available
HIGH 8.8
CVE-2019-1259
A spoofing vulnerability exists in Microsoft SharePoint when it improperly handles requests to authorize applications, resulting in cross-site reques…
Sharepoint Foundation
Patch available
HIGH 8.8
CVE-2019-1261
A spoofing vulnerability exists in Microsoft SharePoint when it improperly handles requests to authorize applications, resulting in cross-site reques…
Sharepoint Enterprise Server
Patch available