Vulnerability index

Browse CVEs

10,000+ matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

MEDIUM 5.5 CVE-2018-8486 An information disclosure vulnerability exists when DirectX improperly handles objects in memory, aka "DirectX Information Disclosure Vulnerability."… Windows 10 Patch available Fix from $1,6002018-10-10 MEDIUM 5.4 CVE-2018-8480 An elevation of privilege vulnerability exists when Microsoft SharePoint Server does not properly sanitize a specially crafted web request to an affe… Sharepoint Enterprise Server 2016 Patch available Fix from $1,6002018-10-10 MEDIUM 5.4 CVE-2018-8488 An elevation of privilege vulnerability exists when Microsoft SharePoint Server does not properly sanitize a specially crafted web request to an affe… Sharepoint Enterprise Server Patch available Fix from $1,6002018-10-10 MEDIUM 5.3 CVE-2018-8492 A security feature bypass vulnerability exists in Device Guard that could allow an attacker to inject malicious code into a Windows PowerShell sessio… Windows 10 Patch available Fix from $1,6002018-10-10 HIGH 7.8 CVE-2018-8423EPSS 28% A remote code execution vulnerability exists in the Microsoft JET Database Engine, aka "Microsoft JET Database Engine Remote Code Execution Vulnerabi… Windows 10 Patch available Fix from $1,9502018-10-10 HIGH 7.8 CVE-2018-8432EPSS 18% A remote code execution vulnerability exists in the way that Microsoft Graphics Components handle objects in memory, aka "Microsoft Graphics Componen… Excel Viewer Patch available Fix from $1,9502018-10-10 HIGH 7.8 CVE-2018-8453 KEVEPSS 70% An elevation of privilege vulnerability exists in Windows when the Win32k component fails to properly handle objects in memory, aka "Win32k Elevation… Windows 10 1507 Patch available Fix from $1,9502018-10-10 HIGH 7.5 CVE-2018-8473EPSS 15% A remote code execution vulnerability exists when Microsoft Edge improperly accesses objects in memory, aka "Microsoft Edge Memory Corruption Vulnera… Chakracore Patch available Fix from $1,9502018-10-10 MEDIUM 5.5 CVE-2018-8427 An information disclosure vulnerability exists in the way that Microsoft Graphics Components handle objects in memory, aka "Microsoft Graphics Compon… Excel Viewer Patch available Fix from $1,6002018-10-10 MEDIUM 5.5 CVE-2018-8472EPSS 20% An information disclosure vulnerability exists in the way that the Windows Graphics Device Interface (GDI) handles objects in memory, allowing an att… Windows 10 Patch available Fix from $1,6002018-10-10 MEDIUM 5.4 CVE-2018-8448 An elevation of privilege vulnerability exists when Microsoft Exchange Outlook Web Access (OWA) fails to properly handle web requests, aka "Microsoft… Exchange Server Patch available Fix from $1,6002018-10-10 HIGH 7.8 CVE-2018-8265EPSS 24% A remote code execution vulnerability exists in the way Microsoft Exchange software parses specially crafted email messages, aka "Microsoft Exchange … Exchange Server Patch available Fix from $1,9502018-10-10 HIGH 7.8 CVE-2018-8329 An Elevation of Privilege vulnerability exists in Windows Subsystem for Linux when it fails to properly handle objects in memory, aka "Linux On Windo… Windows 10 Patch available Fix from $1,9502018-10-10 HIGH 7.8 CVE-2018-8411 An elevation of privilege vulnerability exists when NTFS improperly checks access, aka "NTFS Elevation of Privilege Vulnerability." This affects Wind… Windows 10 Patch available Fix from $1,9502018-10-10 HIGH 7.8 CVE-2018-8413EPSS 37% A remote code execution vulnerability exists when "Windows Theme API" does not properly decompress files, aka "Windows Theme API Remote Code Executio… Windows 10 Patch available Fix from $1,9502018-10-10 HIGH 7.5 CVE-2018-8292EPSS 12% An information disclosure vulnerability exists in .NET Core when authentication information is inadvertently exposed in a redirect, aka ".NET Core In… Asp.net Core Patch available Fix from $1,9502018-10-10 HIGH 7.0 CVE-2018-8333 An Elevation of Privilege vulnerability exists in Filter Manager when it improperly handles objects in memory, aka "Microsoft Filter Manager Elevatio… Windows 10 Patch available Fix from $1,9502018-10-10 MEDIUM 5.5 CVE-2018-8330 An information disclosure vulnerability exists when the Windows kernel improperly handles objects in memory, aka "Windows Kernel Information Disclosu… Windows 10 Patch available Fix from $1,6002018-10-10 HIGH 8.6 CVE-2018-16793EPSS 11% Rollup 18 for Microsoft Exchange Server 2010 SP3 and previous versions has an SSRF vulnerability via the username parameter in /owa/auth/logon.aspx i… Exchange Server No fix yet Fix from $1,9502018-09-21 HIGH 8.6 CVE-2018-16794EPSS 8% Microsoft ADFS 4.0 Windows Server 2016 and previous (Active Directory Federation Services) has an SSRF vulnerability via the txtBoxEmail parameter in… Active Directory Federation Services after 4.0 Fix from $1,9502018-09-18 HIGH 8.8 CVE-2018-8475EPSS 14% A remote code execution vulnerability exists when Windows does not properly handle specially crafted image files, aka "Windows Remote Code Execution … Windows 10 Patch available Fix from $1,9502018-09-13 HIGH 7.5 CVE-2018-8474EPSS 55% A security feature bypass vulnerability exists when Lync for Mac 2011 fails to properly sanitize specially crafted messages, aka "Lync for Mac 2011 S… Lync For Mac No fix yet Fix from $1,9502018-09-13 MEDIUM 5.6 CVE-2018-8479 A spoofing vulnerability exists for the Azure IoT Device Provisioning for the C SDK library using the HTTP protocol on Windows platform, aka "Azure I… C Software Development Kit Patch available Fix from $1,6002018-09-13 HIGH 7.8 CVE-2018-8462 An elevation of privilege vulnerability exists when the DirectX Graphics Kernel (DXGKRNL) driver improperly handles objects in memory, aka "DirectX G… Windows 10 Patch available Fix from $1,9502018-09-13 HIGH 7.5 CVE-2018-8464EPSS 48% An remote code execution vulnerability exists when Microsoft Edge PDF Reader improperly handles objects in memory, aka "Microsoft Edge PDF Remote Cod… Edge Patch available Fix from $1,9502018-09-13 HIGH 7.5 CVE-2018-8465EPSS 15% A remote code execution vulnerability exists in the way that the Chakra scripting engine handles objects in memory in Microsoft Edge, aka "Chakra Scr… Edge Patch available Fix from $1,9502018-09-13 HIGH 7.5 CVE-2018-8466EPSS 64% A remote code execution vulnerability exists in the way that the Chakra scripting engine handles objects in memory in Microsoft Edge, aka "Chakra Scr… Chakracore after 1.10.1 Fix from $1,9502018-09-13 HIGH 7.5 CVE-2018-8467EPSS 64% A remote code execution vulnerability exists in the way that the Chakra scripting engine handles objects in memory in Microsoft Edge, aka "Chakra Scr… Chakracore Patch available Fix from $1,9502018-09-13 HIGH 7.4 CVE-2018-8463EPSS 13% An elevation of privilege vulnerability exists in Microsoft Edge that could allow an attacker to escape from the AppContainer sandbox in the browser,… Edge Patch available Fix from $1,9502018-09-13 HIGH 7.4 CVE-2018-8469EPSS 13% An elevation of privilege vulnerability exists in Microsoft Edge that could allow an attacker to escape from the AppContainer sandbox in the browser,… Edge Patch available Fix from $1,9502018-09-13