Vulnerability index

Browse CVEs

10,000+ matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

HIGH 7.5 CVE-2018-8171EPSS 9% A Security Feature Bypass vulnerability exists in ASP.NET when the number of incorrect login attempts is not validated, aka "ASP.NET Security Feature… Asp.net Core Patch available Fix from $1,9502018-07-11 HIGH 7.5 CVE-2018-8206EPSS 10% A denial of service vulnerability exists when Windows improperly handles File Transfer Protocol (FTP) connections, aka "Windows FTP Server Denial of … Windows 10 Patch available Fix from $1,9502018-07-11 HIGH 7.5 CVE-2018-8262EPSS 19% A remote code execution vulnerability exists when Microsoft Edge improperly accesses objects in memory, aka "Microsoft Edge Memory Corruption Vulnera… Edge Patch available Fix from $1,9502018-07-11 HIGH 7.5 CVE-2018-8274EPSS 19% A remote code execution vulnerability exists when Microsoft Edge improperly accesses objects in memory, aka "Microsoft Edge Memory Corruption Vulnera… Edge Patch available Fix from $1,9502018-07-11 HIGH 7.5 CVE-2018-8275EPSS 19% A remote code execution vulnerability exists when Microsoft Edge improperly accesses objects in memory, aka "Microsoft Edge Memory Corruption Vulnera… Edge after 1.10.0 Fix from $1,9502018-07-11 HIGH 7.5 CVE-2018-8279EPSS 65% A remote code execution vulnerability exists when Microsoft Edge improperly accesses objects in memory, aka "Microsoft Edge Memory Corruption Vulnera… Edge after 1.10.0 Fix from $1,9502018-07-11 MEDIUM 6.5 CVE-2018-8276 A security feature bypass vulnerability exists in the Microsoft Chakra scripting engine that allows Control Flow Guard (CFG) to be bypassed, aka "Scr… Edge Patch available Fix from $1,6002018-07-11 MEDIUM 6.1 CVE-2018-8278EPSS 7% A spoofing vulnerability exists when Microsoft Edge improperly handles specific HTML content, aka "Microsoft Edge Spoofing Vulnerability." This affec… Edge Patch available Fix from $1,6002018-07-11 MEDIUM 5.3 CVE-2018-8222 A security feature bypass vulnerability exists in Device Guard that could allow an attacker to inject malicious code into a Windows PowerShell sessio… Windows 10 Patch available Fix from $1,6002018-07-11 CRITICAL 9.8 CVE-2018-12571EPSS 27% uniquesig0/InternalSite/InitParams.aspx in Microsoft Forefront Unified Access Gateway 2010 allows remote attackers to trigger outbound DNS queries fo… Forefront Unified Access Gateway No fix yet Fix from $2,3002018-07-05 HIGH 7.8 CVE-2018-0592 Untrusted search path vulnerability in Microsoft OneDrive allows an attacker to gain privileges via a Trojan horse DLL in an unspecified directory. Onedrive Mitigation only Fix from $1,9502018-06-26 HIGH 7.8 CVE-2018-0593 Untrusted search path vulnerability in the installer of Microsoft OneDrive allows an attacker to gain privileges via a Trojan horse DLL in an unspeci… Onedrive Mitigation only Fix from $1,9502018-06-26 HIGH 7.8 CVE-2018-0594 Untrusted search path vulnerability in Skype for Windows allows an attacker to gain privileges via a Trojan horse DLL in an unspecified directory. Skype Mitigation only Fix from $1,9502018-06-26 HIGH 7.8 CVE-2018-0595 Untrusted search path vulnerability in the installer of Skype for Windows allows an attacker to gain privileges via a Trojan horse DLL in an unspecif… Skype Mitigation only Fix from $1,9502018-06-26 HIGH 7.8 CVE-2018-0596 Untrusted search path vulnerability in the installer of Visual Studio Community allows an attacker to gain privileges via a Trojan horse DLL in an un… Visual Studio Community Mitigation only Fix from $1,9502018-06-26 HIGH 7.8 CVE-2018-0597 Untrusted search path vulnerability in the installer of Visual Studio Code allows an attacker to gain privileges via a Trojan horse DLL in an unspeci… Visual Studio Code Mitigation only Fix from $1,9502018-06-26 HIGH 7.8 CVE-2018-0598EPSS 9% Untrusted search path vulnerability in Self-extracting archive files created by IExpress bundled with Microsoft Windows allows an attacker to gain pr… Windows Mitigation only Fix from $1,9502018-06-26 HIGH 7.8 CVE-2018-0599 Untrusted search path vulnerability in the installer of Visual C++ Redistributable allows an attacker to gain privileges via a Trojan horse DLL in an… Windows Patch available Fix from $1,9502018-06-26 HIGH 7.8 CVE-2018-8245EPSS 15% A remote code execution vulnerability exists when Microsoft Publisher fails to utilize features that lock down the Local Machine zone when instantiat… Publisher Patch available Fix from $1,9502018-06-14 HIGH 7.8 CVE-2018-8248EPSS 21% A remote code execution vulnerability exists in Microsoft Excel software when the software fails to properly handle objects in memory, aka "Microsoft… Office Patch available Fix from $1,9502018-06-14 HIGH 7.5 CVE-2018-8236EPSS 14% A remote code execution vulnerability exists when Microsoft Edge improperly accesses objects in memory, aka "Microsoft Edge Memory Corruption Vulnera… Edge Patch available Fix from $1,9502018-06-14 HIGH 7.5 CVE-2018-8243EPSS 12% A remote code execution vulnerability exists in the way that the ChakraCore scripting engine handles objects in memory, aka "Scripting Engine Memory … Chakracore Patch available Fix from $1,9502018-06-14 HIGH 7.5 CVE-2018-8251EPSS 8% A memory corruption vulnerability exists when Windows Media Foundation improperly handles objects in memory, aka "Media Foundation Memory Corruption … Windows 10 Patch available Fix from $1,9502018-06-14 MEDIUM 6.5 CVE-2018-8244 An elevation of privilege vulnerability exists when Microsoft Outlook does not validate attachment headers properly, aka "Microsoft Outlook Elevation… Office Patch available Fix from $1,6002018-06-14 MEDIUM 5.5 CVE-2018-8239EPSS 46% An information disclosure vulnerability exists when the Windows GDI component improperly discloses the contents of its memory, aka "Windows GDI Infor… Windows 10 Patch available Fix from $1,6002018-06-14 MEDIUM 5.5 CVE-2018-8246EPSS 9% An information disclosure vulnerability exists when Microsoft Excel improperly discloses the contents of its memory, aka "Microsoft Excel Information… Excel Patch available Fix from $1,6002018-06-14 MEDIUM 5.4 CVE-2018-8247 An elevation of privilege vulnerability exists when Office Web Apps Server 2013 and Office Online Server fail to properly handle web requests, aka "M… Office Online Server Patch available Fix from $1,6002018-06-14 MEDIUM 5.4 CVE-2018-8252 An elevation of privilege vulnerability exists when Microsoft SharePoint Server does not properly sanitize a specially crafted web request to an affe… Sharepoint Foundation Patch available Fix from $1,6002018-06-14 MEDIUM 5.4 CVE-2018-8254 An elevation of privilege vulnerability exists when Microsoft SharePoint Server does not properly sanitize a specially crafted web request to an affe… Project Server Patch available Fix from $1,6002018-06-14 HIGH 8.8 CVE-2018-8219 An elevation of privilege vulnerability exists when Windows Hyper-V instruction emulation fails to properly enforce privilege levels, aka "Hypervisor… Windows 10 Patch available Fix from $1,9502018-06-14