Vulnerability index

Browse CVEs

10,000+ matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

HIGH 7.5 CVE-2019-0603EPSS 18% A remote code execution vulnerability exists in the way that Windows Deployment Services TFTP Server handles objects in memory. An attacker who succe… Windows 10 Patch available Fix from $1,9502019-04-08 HIGH 7.5 CVE-2019-0609EPSS 10% A remote code execution vulnerability exists in the way the scripting engine handles objects in memory in Microsoft browsers, aka 'Scripting Engine M… Chakracore 1.11.7+ Fix from $1,9502019-04-08 HIGH 7.5 CVE-2019-0611EPSS 10% A remote code execution vulnerability exists in the way that the Chakra scripting engine handles objects in memory in Microsoft Edge, aka 'Chakra Scr… Chakracore 1.11.7+ Fix from $1,9502019-04-08 MEDIUM 6.5 CVE-2019-0614EPSS 5% An information disclosure vulnerability exists when the Windows GDI component improperly discloses the contents of its memory, aka 'Windows GDI Infor… Windows 10 Patch available Fix from $1,6002019-04-08 MEDIUM 5.3 CVE-2019-0612EPSS 10% A security feature bypass vulnerability exists when Click2Play protection in Microsoft Edge improperly handles flash objects. By itself, this bypass … Edge Patch available Fix from $1,6002019-04-08 HIGH 7.8 CVE-2019-5922 Untrusted search path vulnerability in The installer of Microsoft Teams allows an attacker to gain privileges via a Trojan horse DLL in an unspecifie… Teams Mitigation only Fix from $1,9502019-03-12 HIGH 7.5 CVE-2019-5917EPSS 20% azure-umqtt-c (available through GitHub prior to 2017 October 6) allows remote attackers to cause a denial of service via unspecified vectors. Azure Umqtt C 2017-10-06+ Fix from $1,9502019-03-12 CRITICAL 9.8 CVE-2019-0729 An Elevation of Privilege vulnerability exists in the way Azure IoT Java SDK generates symmetric keys for encryption, allowing an attacker to predict… Java Software Development Kit Patch available Fix from $2,3002019-03-05 HIGH 8.8 CVE-2019-0662EPSS 15% A remote code execution vulnerability exists in the way that the Windows Graphics Device Interface (GDI) handles objects in the memory, aka 'GDI+ Rem… Windows 10 Patch available Fix from $1,9502019-03-05 HIGH 8.8 CVE-2019-0668 An elevation of privilege vulnerability exists when Microsoft SharePoint Server does not properly sanitize a specially crafted web request to an affe… Sharepoint Enterprise Server Patch available Fix from $1,9502019-03-05 HIGH 8.1 CVE-2019-0724EPSS 24% An elevation of privilege vulnerability exists in Microsoft Exchange Server, aka 'Microsoft Exchange Server Elevation of Privilege Vulnerability'. Th… Exchange Server Patch available Fix from $1,9502019-03-05 HIGH 7.8 CVE-2019-0671EPSS 14% A remote code execution vulnerability exists when the Microsoft Office Access Connectivity Engine improperly handles objects in memory, aka 'Microsof… Office Patch available Fix from $1,9502019-03-05 HIGH 7.8 CVE-2019-0672EPSS 14% A remote code execution vulnerability exists when the Microsoft Office Access Connectivity Engine improperly handles objects in memory, aka 'Microsof… Office Patch available Fix from $1,9502019-03-05 HIGH 7.8 CVE-2019-0673EPSS 14% A remote code execution vulnerability exists when the Microsoft Office Access Connectivity Engine improperly handles objects in memory, aka 'Microsof… Office Patch available Fix from $1,9502019-03-05 HIGH 7.8 CVE-2019-0674EPSS 16% A remote code execution vulnerability exists when the Microsoft Office Access Connectivity Engine improperly handles objects in memory, aka 'Microsof… Office Patch available Fix from $1,9502019-03-05 HIGH 7.8 CVE-2019-0675EPSS 14% A remote code execution vulnerability exists when the Microsoft Office Access Connectivity Engine improperly handles objects in memory, aka 'Microsof… Office Patch available Fix from $1,9502019-03-05 HIGH 7.8 CVE-2019-0728EPSS 24% A remote code execution vulnerability exists in Visual Studio Code when it process environment variables after opening a project, aka 'Visual Studio … Visual Studio Code Patch available Fix from $1,9502019-03-05 HIGH 7.5 CVE-2019-0741EPSS 6% An information disclosure vulnerability exists in the way Azure IoT Java SDK logs sensitive information, aka 'Azure IoT Java SDK Information Disclosu… Java Software Development Kit Patch available Fix from $1,9502019-03-05 HIGH 7.4 CVE-2019-0686 An elevation of privilege vulnerability exists in Microsoft Exchange Server, aka 'Microsoft Exchange Server Elevation of Privilege Vulnerability'. Th… Exchange Server Patch available Fix from $1,9502019-03-05 HIGH 7.0 CVE-2019-0656 An elevation of privilege vulnerability exists when the Windows kernel fails to properly handle objects in memory, aka 'Windows Kernel Elevation of P… Windows 10 Patch available Fix from $1,9502019-03-05 HIGH 7.0 CVE-2019-0659 An elevation of privilege vulnerability exists when the Storage Service improperly handles file operations, aka 'Windows Storage Service Elevation of… Windows 10 Patch available Fix from $1,9502019-03-05 MEDIUM 6.5 CVE-2019-0658EPSS 6% An information disclosure vulnerability exists when the scripting engine does not properly handle objects in memory in Microsoft Edge, aka 'Scripting… Edge 1.11.6+ Fix from $1,6002019-03-05 MEDIUM 6.5 CVE-2019-0660EPSS 6% An information disclosure vulnerability exists when the Windows GDI component improperly discloses the contents of its memory, aka 'Windows GDI Infor… Windows 10 Patch available Fix from $1,6002019-03-05 MEDIUM 6.5 CVE-2019-0664EPSS 6% An information disclosure vulnerability exists when the Windows GDI component improperly discloses the contents of its memory, aka 'Windows GDI Infor… Windows 7 Patch available Fix from $1,6002019-03-05 MEDIUM 6.5 CVE-2019-0669EPSS 5% An information disclosure vulnerability exists when Microsoft Excel improperly discloses the contents of its memory, aka 'Microsoft Excel Information… Excel Patch available Fix from $1,6002019-03-05 MEDIUM 6.5 CVE-2019-0676 KEVEPSS 8% An information disclosure vulnerability exists when Internet Explorer improperly handles objects in memory.An attacker who successfully exploited thi… Internet Explorer Patch available Fix from $1,6002019-03-05 MEDIUM 6.1 CVE-2019-0670 A spoofing vulnerability exists in Microsoft SharePoint when the application does not properly parse HTTP content, aka 'Microsoft SharePoint Spoofing… Sharepoint Enterprise Server Patch available Fix from $1,6002019-03-05 MEDIUM 5.9 CVE-2019-0657 A vulnerability exists in certain .Net Framework API's and Visual Studio in the way they parse URL's, aka '.NET Framework and Visual Studio Spoofing … .net Core Patch available Fix from $1,6002019-03-05 MEDIUM 5.5 CVE-2019-0663 An information disclosure vulnerability exists when the Windows kernel improperly initializes objects in memory.To exploit this vulnerability, an aut… Windows 10 Patch available Fix from $1,6002019-03-05 MEDIUM 5.4 CVE-2019-0742 A Cross-site Scripting (XSS) vulnerability exists when Team Foundation Server does not properly sanitize user provided input, aka 'Team Foundation Se… Team Foundation Server Patch available Fix from $1,6002019-03-05