VYPR

Windows 7

by Microsoft

CVEs (2,374)

  • CVE-2020-0683HigKEVFeb 11, 2020
    risk 0.66cvss 7.8epss 0.08

    An elevation of privilege vulnerability exists in the Windows Installer when MSI packages process symbolic links, aka 'Windows Installer Elevation of Privilege Vulnerability'. This CVE ID is unique from CVE-2020-0686.

  • CVE-2019-1132HigKEVJul 15, 2019
    risk 0.66cvss 7.8epss 0.10

    An elevation of privilege vulnerability exists in Windows when the Win32k component fails to properly handle objects in memory, aka 'Win32k Elevation of Privilege Vulnerability'.

  • CVE-2019-0863HigKEVMay 16, 2019
    risk 0.66cvss 7.8epss 0.05

    An elevation of privilege vulnerability exists in the way Windows Error Reporting (WER) handles files, aka 'Windows Error Reporting Elevation of Privilege Vulnerability'.

  • CVE-2017-8589CriJul 11, 2017
    risk 0.66cvss 9.8epss 0.26

    Microsoft Windows 7 SP1, Windows Server 2008 SP2 and R2 SP1, Windows 8.1 and Windows RT 8.1, Windows Server 2012 and R2, Windows 10 Gold, 1511, 1607, 1703, and Windows Server 2016 allows a remote code execution vulnerability due to the way that Windows Search handles objects in…

  • CVE-2016-3213HigJun 16, 2016
    risk 0.66cvss 8.8epss 0.67

    The Web Proxy Auto Discovery (WPAD) protocol implementation in Microsoft Windows Vista SP2, Windows Server 2008 SP2 and R2 SP1, Windows 7 SP1, Windows 8.1, Windows Server 2012 Gold and R2, Windows RT 8.1, Windows 10 Gold and 1511, and Internet Explorer 9 through 11 has an…

  • CVE-2015-2387HigKEVJul 14, 2015
    risk 0.66cvss 7.8epss 0.35

    ATMFD.DLL in the Adobe Type Manager Font Driver in Microsoft Windows Server 2003 SP2, Windows Vista SP2, Windows Server 2008 SP2 and R2 SP1, Windows 7 SP1, Windows 8, Windows 8.1, Windows Server 2012 Gold and R2, and Windows RT Gold and 8.1 allows local users to gain privileges…

  • CVE-2010-4398HigKEVDec 6, 2010
    risk 0.66cvss 7.8epss 0.09

    Stack-based buffer overflow in the RtlQueryRegistryValues function in win32k.sys in Microsoft Windows XP SP2 and SP3, Windows Server 2003 SP2, Windows Vista SP1 and SP2, Windows Server 2008 Gold, SP2, and R2, and Windows 7 allows local users to gain privileges, and bypass the…

  • CVE-2022-37969HigKEVSep 13, 2022
    risk 0.65cvss 7.8epss 0.28

    Windows Common Log File System Driver Elevation of Privilege Vulnerability

  • CVE-2022-26925HigKEVMay 10, 2022
    risk 0.65cvss 8.1epss 0.11

    Windows LSA Spoofing Vulnerability

  • CVE-2021-33742HigKEVJun 8, 2021
    risk 0.65cvss 7.5epss 0.59

    Windows MSHTML Platform Remote Code Execution Vulnerability

  • CVE-2021-24094CriFeb 25, 2021
    risk 0.65cvss 9.8epss 0.22

    Windows TCP/IP Remote Code Execution Vulnerability

  • CVE-2020-1467CriAug 17, 2020
    risk 0.65cvss 10.0epss 0.04

    An elevation of privilege vulnerability exists when Windows improperly handles hard links. An attacker who successfully exploited this vulnerability could overwrite a targeted file leading to an elevated status. To exploit this vulnerability, an attacker would first have to log…

  • CVE-2020-1112CriMay 21, 2020
    risk 0.65cvss 9.9epss 0.04

    An elevation of privilege vulnerability exists when the Windows Background Intelligent Transfer Service (BITS) IIS module improperly handles uploaded content, aka 'Windows Background Intelligent Transfer Service Elevation of Privilege Vulnerability'.

  • CVE-2019-1384CriNov 12, 2019
    risk 0.65cvss 9.9epss 0.06

    A security feature bypass vulnerability exists where a NETLOGON message is able to obtain the session key and sign messages.To exploit this vulnerability, an attacker could send a specially crafted authentication request, aka 'Microsoft Windows Security Feature Bypass…

  • CVE-2019-1365CriOct 10, 2019
    risk 0.65cvss 9.9epss 0.04

    An elevation of privilege vulnerability exists when Microsoft IIS Server fails to check the length of a buffer prior to copying memory to it.An attacker who successfully exploited this vulnerability can allow an unprivileged function ran by the user to execute code in the…

  • CVE-2019-1182CriAug 14, 2019
    risk 0.65cvss 9.8epss 0.14

    A remote code execution vulnerability exists in Remote Desktop Services – formerly known as Terminal Services – when an unauthenticated attacker connects to the target system using RDP and sends specially crafted requests. This vulnerability is pre-authentication and…

  • CVE-2017-0089HigMar 17, 2017
    risk 0.65cvss 8.8epss 0.57

    Uniscribe in Microsoft Windows Vista SP2, Windows Server 2008 SP2 and R2 SP1, and Windows 7 SP1 allows remote attackers to execute arbitrary code via a crafted web site, aka "Uniscribe Remote Code Execution Vulnerability." This vulnerability is different from those described in…

  • CVE-2022-35744CriMay 31, 2023
    risk 0.64cvss 9.8epss 0.02

    Windows Point-to-Point Protocol (PPP) Remote Code Execution Vulnerability

  • CVE-2022-34722CriSep 13, 2022
    risk 0.64cvss 9.8epss 0.02

    Windows Internet Key Exchange (IKE) Protocol Extensions Remote Code Execution Vulnerability

  • CVE-2022-30133CriAug 9, 2022
    risk 0.64cvss 9.8epss 0.03

    Windows Point-to-Point Protocol (PPP) Remote Code Execution Vulnerability

Page 5 of 119