Top technology
Linux 13140
Google 12536
Microsoft 12379
Oracle 6843
Apple 6692
Adobe 6387
Ibm 6336
Cisco 5759
Debian 3919
Mozilla 2895
Apache 2864
Redhat 2592
MEDIUM 5.5
CVE-2018-8378EPSS 6%
An information disclosure vulnerability exists when Microsoft Office software reads out of bound memory due to an uninitialized variable, which could…
Excel Viewer
Patch available
MEDIUM 5.5
CVE-2018-8382EPSS 6%
An information disclosure vulnerability exists when Microsoft Excel improperly discloses the contents of its memory, aka "Microsoft Excel Information…
Excel
Patch available
HIGH 7.8
CVE-2018-8375EPSS 16%
A remote code execution vulnerability exists in Microsoft Excel software when the software fails to properly handle objects in memory, aka "Microsoft…
Excel
Patch available
HIGH 7.5
CVE-2018-8359EPSS 15%
A remote code execution vulnerability exists in the way that the ChakraCore scripting engine handles objects in memory, aka "Scripting Engine Memory …
Chakracore
Patch available
HIGH 7.5
CVE-2018-8360EPSS 8%
An information disclosure vulnerability exists in Microsoft .NET Framework that could allow an attacker to access information in multi-tenant environ…
.net Framework
Patch available
HIGH 7.5
CVE-2018-8372EPSS 24%
A remote code execution vulnerability exists in the way the scripting engine handles objects in memory in Microsoft browsers, aka "Scripting Engine M…
Internet Explorer
Patch available
HIGH 7.5
CVE-2018-8373 KEVEPSS 54%
A remote code execution vulnerability exists in the way that the scripting engine handles objects in memory in Internet Explorer, aka "Scripting Engi…
Internet Explorer
Patch available
HIGH 8.8
CVE-2018-8349EPSS 21%
A remote code execution vulnerability exists in "Microsoft COM for Windows" when it fails to properly handle serialized objects, aka "Microsoft COM f…
Windows 10
Mitigation only
HIGH 8.8
CVE-2018-8350EPSS 17%
A remote code execution vulnerability exists when Microsoft Windows PDF Library improperly handles objects in memory, aka "Windows PDF Remote Code Ex…
Windows 10
Patch available
HIGH 8.3
CVE-2018-8357EPSS 7%
An elevation of privilege vulnerability exists in Microsoft browsers allowing sandbox escape, aka "Microsoft Browser Elevation of Privilege Vulnerabi…
Internet Explorer
Patch available
HIGH 7.5
CVE-2018-8355EPSS 63%
A remote code execution vulnerability exists in the way the scripting engine handles objects in memory in Microsoft browsers, aka "Scripting Engine M…
Internet Explorer
Patch available
MEDIUM 6.5
CVE-2018-8351EPSS 6%
An information disclosure vulnerability exists when affected Microsoft browsers improperly allow cross-frame interaction, aka "Microsoft Browser Info…
Internet Explorer
Patch available
HIGH 8.8
CVE-2018-8344EPSS 19%
A remote code execution vulnerability exists when the Windows font library improperly handles specially crafted embedded fonts, aka "Microsoft Graphi…
Windows 10
Mitigation only
HIGH 7.8
CVE-2018-8343
An elevation of privilege vulnerability exists in the Network Driver Interface Specification (NDIS) when ndis.sys fails to check the length of a buff…
Windows 10
Mitigation only
HIGH 7.8
CVE-2018-8347
An elevation of privilege vulnerability exists in Microsoft Windows when the Windows kernel fails to properly handle parsing of certain symbolic link…
Windows 10
Patch available
HIGH 7.5
CVE-2018-8345EPSS 14%
A remote code execution vulnerability exists in Microsoft Windows that could allow remote code execution if a .LNK file is processed, aka "LNK Remote…
Windows 10
Mitigation only
CRITICAL 9.8
CVE-2018-8273EPSS 29%
A buffer overflow vulnerability exists in the Microsoft SQL Server that could allow remote code execution on an affected system, aka "Microsoft SQL S…
Sql Server
Patch available
CRITICAL 9.8
CVE-2018-8302EPSS 23%
A remote code execution vulnerability exists in Microsoft Exchange software when the software fails to properly handle objects in memory, aka "Micros…
Exchange Server
Patch available
HIGH 7.5
CVE-2018-8266EPSS 24%
A remote code execution vulnerability exists in the way that the Chakra scripting engine handles objects in memory in Microsoft Edge, aka "Chakra Scr…
Chakracore
after 1.10.1
HIGH 7.0
CVE-2018-8339
An elevation of privilege vulnerability exists in the Windows Installer when the Windows Installer fails to properly sanitize input leading to an ins…
Windows 10
Mitigation only
MEDIUM 6.5
CVE-2018-8340EPSS 7%
A security feature bypass vulnerability exists when Active Directory Federation Services (AD FS) improperly handles multi-factor authentication reque…
Windows Server 2012
Patch available
MEDIUM 5.3
CVE-2018-8200
A security feature bypass vulnerability exists in Device Guard that could allow an attacker to inject malicious code into a Windows PowerShell sessio…
Windows 10
Patch available
MEDIUM 5.3
CVE-2018-8204
A security feature bypass vulnerability exists in Device Guard that could allow an attacker to inject malicious code into a Windows PowerShell sessio…
Windows 10
Patch available
HIGH 7.8
CVE-2018-0952EPSS 8%
An Elevation of Privilege vulnerability exists when Diagnostics Hub Standard Collector allows file creation in arbitrary locations, aka "Diagnostic H…
Visual Studio 2015
Patch available
CRITICAL 9.8
CVE-2018-8319EPSS 6%
A Security Feature Bypass vulnerability exists in MSR JavaScript Cryptography Library that is caused by incorrect arithmetic computations, aka "MSR J…
Research Javascript Cryptography Library
Patch available
CRITICAL 9.8
CVE-2018-8327EPSS 21%
A remote code execution vulnerability exists in PowerShell Editor Services, aka "PowerShell Editor Services Remote Code Execution Vulnerability." Thi…
Powershell
1.7.0+
HIGH 8.8
CVE-2018-8311EPSS 16%
A remote code execution vulnerability exists when Skype for Business and Microsoft Lync clients fail to properly sanitize specially crafted content, …
Lync
Mitigation only
HIGH 7.8
CVE-2018-8312EPSS 18%
A remote code execution vulnerability exists when Microsoft Access fails to properly handle objects in memory, aka "Microsoft Access Remote Code Exec…
Access
Patch available
HIGH 7.8
CVE-2018-8313
An elevation of privilege vulnerability exists in the way that the Windows Kernel API enforces permissions, aka "Windows Elevation of Privilege Vulne…
Windows 10
Patch available
HIGH 7.5
CVE-2018-8310EPSS 5%
A tampering vulnerability exists when Microsoft Outlook does not properly handle specific attachment types when rendering HTML emails, aka "Microsoft…
Office
Patch available