Vulnerability index

Browse CVEs

10,000+ matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

MEDIUM 5.4 CVE-2019-1305 A Cross-site Scripting (XSS) vulnerability exists when Team Foundation Server does not properly sanitize user provided input, aka 'Team Foundation Se… Team Foundation Server Patch available Fix from $1,6002019-09-11 HIGH 8.8 CVE-2019-1290EPSS 12% A remote code execution vulnerability exists in the Windows Remote Desktop Client when a user connects to a malicious server, aka 'Remote Desktop Cli… Windows 10 Patch available Fix from $1,9502019-09-11 HIGH 8.8 CVE-2019-1291EPSS 12% A remote code execution vulnerability exists in the Windows Remote Desktop Client when a user connects to a malicious server, aka 'Remote Desktop Cli… Windows 10 Patch available Fix from $1,9502019-09-11 HIGH 8.8 CVE-2019-1295EPSS 8% A remote code execution vulnerability exists in Microsoft SharePoint where APIs aren't properly protected from unsafe data input, aka 'Microsoft Shar… Sharepoint Enterprise Server Patch available Fix from $1,9502019-09-11 HIGH 8.8 CVE-2019-1296EPSS 8% A remote code execution vulnerability exists in Microsoft SharePoint where APIs aren't properly protected from unsafe data input, aka 'Microsoft Shar… Sharepoint Enterprise Server Patch available Fix from $1,9502019-09-11 HIGH 8.8 CVE-2019-1297 KEVEPSS 22% A remote code execution vulnerability exists in Microsoft Excel software when the software fails to properly handle objects in memory, aka 'Microsoft… Excel Patch available Fix from $1,9502019-09-11 HIGH 7.8 CVE-2019-1285 An elevation of privilege vulnerability exists in Windows when the Win32k component fails to properly handle objects in memory, aka 'Win32k Elevation… Windows 10 Patch available Fix from $1,9502019-09-11 HIGH 7.8 CVE-2019-1287 An elevation of privilege vulnerability exists in the way that the Windows Network Connectivity Assistant handles objects in memory, aka 'Windows Net… Windows 10 Patch available Fix from $1,9502019-09-11 HIGH 7.5 CVE-2019-1298EPSS 9% A remote code execution vulnerability exists in the way that the Chakra scripting engine handles objects in memory in Microsoft Edge, aka 'Chakra Scr… Edge 1.11.13+ Fix from $1,9502019-09-11 HIGH 7.5 CVE-2019-1300EPSS 9% A remote code execution vulnerability exists in the way that the Chakra scripting engine handles objects in memory in Microsoft Edge, aka 'Chakra Scr… Edge 1.11.13+ Fix from $1,9502019-09-11 MEDIUM 6.5 CVE-2019-1286EPSS 6% An information disclosure vulnerability exists when the Windows GDI component improperly discloses the contents of its memory, aka 'Windows GDI Infor… Windows 10 Patch available Fix from $1,6002019-09-11 MEDIUM 6.5 CVE-2019-1299EPSS 6% An information disclosure vulnerability exists when Microsoft Edge based on Edge HTML improperly handles objects in memory, aka 'Microsoft Edge based… Edge Patch available Fix from $1,6002019-09-11 MEDIUM 5.5 CVE-2019-1289 An elevation of privilege vulnerability exists when the Windows Update Delivery Optimization does not properly enforce file share permissions, aka 'W… Windows 10 Patch available Fix from $1,6002019-09-11 MEDIUM 5.5 CVE-2019-1293 An information disclosure vulnerability exists in Windows when the Windows SMB Client kernel-mode driver fails to properly handle objects in memory, … Windows 10 Patch available Fix from $1,6002019-09-11 HIGH 7.8 CVE-2019-1267 An elevation of privilege vulnerability exists in Microsoft Compatibility Appraiser where a configuration file, with local privileges, is vulnerable … Windows 10 Patch available Fix from $1,9502019-09-11 HIGH 7.8 CVE-2019-1268 An elevation of privilege exists when Winlogon does not properly handle file path information, aka 'Winlogon Elevation of Privilege Vulnerability'. Windows 10 Patch available Fix from $1,9502019-09-11 HIGH 7.8 CVE-2019-1269 An elevation of privilege vulnerability exists when Windows improperly handles calls to Advanced Local Procedure Call (ALPC).An attacker who successf… Windows 10 Patch available Fix from $1,9502019-09-11 HIGH 7.8 CVE-2019-1271 An elevation of privilege exists in hdAudio.sys which may lead to an out of band write, aka 'Windows Media Elevation of Privilege Vulnerability'. Windows 10 Patch available Fix from $1,9502019-09-11 HIGH 7.8 CVE-2019-1272 An elevation of privilege vulnerability exists when Windows improperly handles calls to Advanced Local Procedure Call (ALPC).An attacker who successf… Windows 10 Patch available Fix from $1,9502019-09-11 HIGH 7.8 CVE-2019-1277 An elevation of privilege vulnerability exists in Windows Audio Service when a malformed parameter is processed, aka 'Windows Audio Service Elevation… Windows 10 Patch available Fix from $1,9502019-09-11 HIGH 7.8 CVE-2019-1278 An elevation of privilege vulnerability exists in the way that the unistore.dll handles objects in memory, aka 'Windows Elevation of Privilege Vulner… Windows 10 Patch available Fix from $1,9502019-09-11 HIGH 7.8 CVE-2019-1280EPSS 19% A remote code execution vulnerability exists in Microsoft Windows that could allow remote code execution if a .LNK file is processed.An attacker who … Windows 10 Patch available Fix from $1,9502019-09-11 MEDIUM 6.1 CVE-2019-1266 A spoofing vulnerability exists in Microsoft Exchange Server when Outlook Web App (OWA) fails to properly handle web requests, aka 'Microsoft Exchang… Exchange Server Patch available Fix from $1,6002019-09-11 MEDIUM 5.5 CVE-2019-1270 An elevation of privilege vulnerability exists in Windows store installer where WindowsApps directory is vulnerable to symbolic link attack, aka 'Mic… Windows 10 Patch available Fix from $1,6002019-09-11 MEDIUM 5.5 CVE-2019-1274 An information disclosure vulnerability exists when the Windows kernel fails to properly initialize a memory address, aka 'Windows Kernel Information… Windows 10 Patch available Fix from $1,6002019-09-11 MEDIUM 5.5 CVE-2019-1282 An information disclosure exists in the Windows Common Log File System (CLFS) driver when it fails to properly handle sandbox checks, aka 'Windows Co… Windows 10 Patch available Fix from $1,6002019-09-11 MEDIUM 5.4 CVE-2019-1273 A cross-site-scripting (XSS) vulnerability exists when Active Directory Federation Services (ADFS) does not properly sanitize certain error messages,… Windows 10 Patch available Fix from $1,6002019-09-11 HIGH 8.8 CVE-2019-1257EPSS 12% A remote code execution vulnerability exists in Microsoft SharePoint when the software fails to check the source markup of an application package, ak… Sharepoint Enterprise Server Patch available Fix from $1,9502019-09-11 HIGH 8.8 CVE-2019-1259 A spoofing vulnerability exists in Microsoft SharePoint when it improperly handles requests to authorize applications, resulting in cross-site reques… Sharepoint Foundation Patch available Fix from $1,9502019-09-11 HIGH 8.8 CVE-2019-1261 A spoofing vulnerability exists in Microsoft SharePoint when it improperly handles requests to authorize applications, resulting in cross-site reques… Sharepoint Enterprise Server Patch available Fix from $1,9502019-09-11