Top technology
Linux 13140
Google 12536
Microsoft 12379
Oracle 6843
Apple 6692
Adobe 6387
Ibm 6336
Cisco 5759
Debian 3919
Mozilla 2895
Apache 2864
Redhat 2592
MEDIUM 5.5
CVE-2018-8486
An information disclosure vulnerability exists when DirectX improperly handles objects in memory, aka "DirectX Information Disclosure Vulnerability."…
Windows 10
Patch available
MEDIUM 5.4
CVE-2018-8480
An elevation of privilege vulnerability exists when Microsoft SharePoint Server does not properly sanitize a specially crafted web request to an affe…
Sharepoint Enterprise Server 2016
Patch available
MEDIUM 5.4
CVE-2018-8488
An elevation of privilege vulnerability exists when Microsoft SharePoint Server does not properly sanitize a specially crafted web request to an affe…
Sharepoint Enterprise Server
Patch available
MEDIUM 5.3
CVE-2018-8492
A security feature bypass vulnerability exists in Device Guard that could allow an attacker to inject malicious code into a Windows PowerShell sessio…
Windows 10
Patch available
HIGH 7.8
CVE-2018-8423EPSS 28%
A remote code execution vulnerability exists in the Microsoft JET Database Engine, aka "Microsoft JET Database Engine Remote Code Execution Vulnerabi…
Windows 10
Patch available
HIGH 7.8
CVE-2018-8432EPSS 18%
A remote code execution vulnerability exists in the way that Microsoft Graphics Components handle objects in memory, aka "Microsoft Graphics Componen…
Excel Viewer
Patch available
HIGH 7.8
CVE-2018-8453 KEVEPSS 70%
An elevation of privilege vulnerability exists in Windows when the Win32k component fails to properly handle objects in memory, aka "Win32k Elevation…
Windows 10 1507
Patch available
HIGH 7.5
CVE-2018-8473EPSS 15%
A remote code execution vulnerability exists when Microsoft Edge improperly accesses objects in memory, aka "Microsoft Edge Memory Corruption Vulnera…
Chakracore
Patch available
MEDIUM 5.5
CVE-2018-8427
An information disclosure vulnerability exists in the way that Microsoft Graphics Components handle objects in memory, aka "Microsoft Graphics Compon…
Excel Viewer
Patch available
MEDIUM 5.5
CVE-2018-8472EPSS 20%
An information disclosure vulnerability exists in the way that the Windows Graphics Device Interface (GDI) handles objects in memory, allowing an att…
Windows 10
Patch available
MEDIUM 5.4
CVE-2018-8448
An elevation of privilege vulnerability exists when Microsoft Exchange Outlook Web Access (OWA) fails to properly handle web requests, aka "Microsoft…
Exchange Server
Patch available
HIGH 7.8
CVE-2018-8265EPSS 24%
A remote code execution vulnerability exists in the way Microsoft Exchange software parses specially crafted email messages, aka "Microsoft Exchange …
Exchange Server
Patch available
HIGH 7.8
CVE-2018-8329
An Elevation of Privilege vulnerability exists in Windows Subsystem for Linux when it fails to properly handle objects in memory, aka "Linux On Windo…
Windows 10
Patch available
HIGH 7.8
CVE-2018-8411
An elevation of privilege vulnerability exists when NTFS improperly checks access, aka "NTFS Elevation of Privilege Vulnerability." This affects Wind…
Windows 10
Patch available
HIGH 7.8
CVE-2018-8413EPSS 37%
A remote code execution vulnerability exists when "Windows Theme API" does not properly decompress files, aka "Windows Theme API Remote Code Executio…
Windows 10
Patch available
HIGH 7.5
CVE-2018-8292EPSS 12%
An information disclosure vulnerability exists in .NET Core when authentication information is inadvertently exposed in a redirect, aka ".NET Core In…
Asp.net Core
Patch available
HIGH 7.0
CVE-2018-8333
An Elevation of Privilege vulnerability exists in Filter Manager when it improperly handles objects in memory, aka "Microsoft Filter Manager Elevatio…
Windows 10
Patch available
MEDIUM 5.5
CVE-2018-8330
An information disclosure vulnerability exists when the Windows kernel improperly handles objects in memory, aka "Windows Kernel Information Disclosu…
Windows 10
Patch available
HIGH 8.6
CVE-2018-16793EPSS 11%
Rollup 18 for Microsoft Exchange Server 2010 SP3 and previous versions has an SSRF vulnerability via the username parameter in /owa/auth/logon.aspx i…
Exchange Server
No fix yet
HIGH 8.6
CVE-2018-16794EPSS 8%
Microsoft ADFS 4.0 Windows Server 2016 and previous (Active Directory Federation Services) has an SSRF vulnerability via the txtBoxEmail parameter in…
Active Directory Federation Services
after 4.0
HIGH 8.8
CVE-2018-8475EPSS 14%
A remote code execution vulnerability exists when Windows does not properly handle specially crafted image files, aka "Windows Remote Code Execution …
Windows 10
Patch available
HIGH 7.5
CVE-2018-8474EPSS 55%
A security feature bypass vulnerability exists when Lync for Mac 2011 fails to properly sanitize specially crafted messages, aka "Lync for Mac 2011 S…
Lync For Mac
No fix yet
MEDIUM 5.6
CVE-2018-8479
A spoofing vulnerability exists for the Azure IoT Device Provisioning for the C SDK library using the HTTP protocol on Windows platform, aka "Azure I…
C Software Development Kit
Patch available
HIGH 7.8
CVE-2018-8462
An elevation of privilege vulnerability exists when the DirectX Graphics Kernel (DXGKRNL) driver improperly handles objects in memory, aka "DirectX G…
Windows 10
Patch available
HIGH 7.5
CVE-2018-8464EPSS 48%
An remote code execution vulnerability exists when Microsoft Edge PDF Reader improperly handles objects in memory, aka "Microsoft Edge PDF Remote Cod…
Edge
Patch available
HIGH 7.5
CVE-2018-8465EPSS 15%
A remote code execution vulnerability exists in the way that the Chakra scripting engine handles objects in memory in Microsoft Edge, aka "Chakra Scr…
Edge
Patch available
HIGH 7.5
CVE-2018-8466EPSS 64%
A remote code execution vulnerability exists in the way that the Chakra scripting engine handles objects in memory in Microsoft Edge, aka "Chakra Scr…
Chakracore
after 1.10.1
HIGH 7.5
CVE-2018-8467EPSS 64%
A remote code execution vulnerability exists in the way that the Chakra scripting engine handles objects in memory in Microsoft Edge, aka "Chakra Scr…
Chakracore
Patch available
HIGH 7.4
CVE-2018-8463EPSS 13%
An elevation of privilege vulnerability exists in Microsoft Edge that could allow an attacker to escape from the AppContainer sandbox in the browser,…
Edge
Patch available
HIGH 7.4
CVE-2018-8469EPSS 13%
An elevation of privilege vulnerability exists in Microsoft Edge that could allow an attacker to escape from the AppContainer sandbox in the browser,…
Edge
Patch available