VYPR

Windows

by Microsoft

CVEs (2,653)

  • CVE-2025-21242MedJan 14, 2025
    risk 0.38cvss 5.9epss 0.02

    Windows Kerberos Information Disclosure Vulnerability

  • CVE-2024-21344MedFeb 13, 2024
    risk 0.38cvss 5.9epss 0.02

    Windows Network Address Translation (NAT) Denial of Service Vulnerability

  • CVE-2024-21343MedFeb 13, 2024
    risk 0.38cvss 5.9epss 0.02

    Windows Network Address Translation (NAT) Denial of Service Vulnerability

  • CVE-2023-24900MedMay 9, 2023
    risk 0.38cvss 5.9epss 0.01

    Windows NTLM Security Support Provider Information Disclosure Vulnerability

  • CVE-2022-41116MedNov 9, 2022
    risk 0.38cvss 5.9epss 0.01

    Windows Point-to-Point Tunneling Protocol Denial of Service Vulnerability

  • CVE-2020-1152MedSep 11, 2020
    risk 0.38cvss 5.8epss 0.01

    An elevation of privilege vulnerability exists when Windows improperly handles calls to Win32k.sys. An attacker who successfully exploited the vulnerability could gain elevated privileges on a targeted system. To exploit the vulnerability, an attacker would have to log…

  • CVE-2019-0716MedAug 14, 2019
    risk 0.38cvss 5.8epss 0.04

    A denial of service vulnerability exists when Windows improperly handles objects in memory. An attacker who successfully exploited the vulnerability could cause a target system to stop responding. To exploit this vulnerability, an attacker would have to log on to an affected…

  • CVE-2019-1040MedJun 12, 2019
    risk 0.38cvss 5.3epss 0.48

    A tampering vulnerability exists in Microsoft Windows when a man-in-the-middle attacker is able to successfully bypass the NTLM MIC (Message Integrity Check) protection. An attacker who successfully exploited this vulnerability could gain the ability to downgrade NTLM security…

  • CVE-2017-11830MedNov 15, 2017
    risk 0.38cvss 5.3epss 0.03

    Device Guard in Windows 10 Gold, 1511, 1607, 1703, and 1709, Windows Server 2016, and Windows Server, version 1709 allows an attacker to make an unsigned file appear to be signed, due to a security feature bypass, aka "Device Guard Security Feature Bypass Vulnerability".

  • CVE-2017-0191MedApr 12, 2017
    risk 0.38cvss 5.8epss 0.05

    A denial of service vulnerability exists in the way that Windows 7, Windows 8.1, Windows 10, Windows Server 2008 R2, Windows Server 2012, Windows Server 2012 R2, and Windows Server 2016 handles objects in memory. An attacker who successfully exploited the vulnerability could…

  • CVE-2016-3263MedOct 14, 2016
    risk 0.38cvss 5.5epss 0.32

    Graphics Device Interface (aka GDI or GDI+) in Microsoft Windows Vista SP2; Windows Server 2008 SP2 and R2 SP1; Windows 7 SP1; Windows 8.1; Windows Server 2012 Gold and R2; Windows RT 8.1; Windows 10 Gold, 1511, and 1607; Office 2007 SP3; Office 2010 SP2; Word Viewer; Skype for…

  • CVE-2016-3262MedOct 14, 2016
    risk 0.38cvss 5.5epss 0.32

    Graphics Device Interface (aka GDI or GDI+) in Microsoft Windows Vista SP2; Windows Server 2008 SP2 and R2 SP1; Windows 7 SP1; Windows 8.1; Windows Server 2012 Gold and R2; Windows RT 8.1; Windows 10 Gold, 1511, and 1607; Office 2007 SP3; Office 2010 SP2; Word Viewer; Skype for…

  • CVE-2016-3215MedJun 16, 2016
    risk 0.38cvss 5.5epss 0.34

    Microsoft Windows 8.1, Windows Server 2012 Gold and R2, Windows 10 1511, and Microsoft Edge allow remote attackers to obtain sensitive information from process memory via a crafted PDF document, aka "Windows PDF Information Disclosure Vulnerability," a different vulnerability…

  • CVE-2024-21430MedMar 12, 2024
    risk 0.37cvss 5.7epss 0.01

    Windows USB Attached SCSI (UAS) Protocol Remote Code Execution Vulnerability

  • CVE-2020-1599MedNov 11, 2020
    risk 0.37cvss 5.5epss 0.19

    Windows Spoofing Vulnerability

  • CVE-2017-11853MedNov 15, 2017
    risk 0.37cvss 5.5epss 0.11

    Windows kernel in Windows 7 SP1, Windows Server 2008 SP2 and R2 SP1, Windows 8.1 and RT 8.1, Server 2012 and R2, Windows 10 Gold, 1511, 1607, 1703, and 1709, Windows Server 2016, and Windows Server, version 1709 allows an attacker to log in and run a specially crafted…

  • CVE-2017-11816MedOct 13, 2017
    risk 0.37cvss 5.5epss 0.20

    The Microsoft Windows Graphics Device Interface (GDI) on Microsoft Windows Server 2008 SP2 and R2 SP1, Windows 7 SP1, Windows 8.1, Windows Server 2012 Gold and R2, Windows RT 8.1, Windows 10 Gold, 1511, 1607, and 1703, and Windows Server 2016 allows an information disclosure…

  • CVE-2017-8710MedSep 13, 2017
    risk 0.37cvss 5.5epss 0.10

    The Microsoft Common Console Document (.msc) in Microsoft Windows 7 SP1, Windows Server 2008 SP2 and R2 SP1 allows an attacker to read arbitrary files via an XML external entity (XXE) declaration, due to the way that the Microsoft Common Console Document (.msc) parses XML input…

  • CVE-2017-0007MedMar 17, 2017
    risk 0.37cvss 5.5epss 0.11

    Device Guard in Microsoft Windows 10 Gold, 1511, 1607, and Windows Server 2016 allows remote attackers to modify PowerShell script without invalidating associated signatures, aka "PowerShell Security Feature Bypass Vulnerability."

  • CVE-2026-61347MedAug 11, 2026
    risk 0.36cvss 5.5epss 0.00

    Buffer over-read in Windows Event Logging Service allows an authorized attacker to disclose information locally.

Page 75 of 133