Windows
by Microsoft
CVEs (2,653)
| CVE | Vendor / Product | Sev | Risk | CVSS | EPSS | KEV | Published | Description |
|---|---|---|---|---|---|---|---|---|
| CVE-2021-36972 | Med | 0.36 | 5.5 | 0.01 | Sep 15, 2021 | Windows SMB Information Disclosure Vulnerability | ||
| CVE-2021-36969 | Med | 0.36 | 5.5 | 0.01 | Sep 15, 2021 | Windows Redirected Drive Buffering SubSystem Driver Information Disclosure Vulnerability | ||
| CVE-2021-36959 | Med | 0.36 | 5.5 | 0.01 | Sep 15, 2021 | Windows Authenticode Spoofing Vulnerability | ||
| CVE-2021-34496 | Med | 0.36 | 5.5 | 0.02 | Jul 14, 2021 | Windows GDI Information Disclosure Vulnerability | ||
| CVE-2021-33782 | Med | 0.36 | 5.5 | 0.02 | Jul 14, 2021 | Windows Authenticode Spoofing Vulnerability | ||
| CVE-2021-31970 | Med | 0.36 | 5.5 | 0.01 | Jun 8, 2021 | Windows TCP/IP Driver Security Feature Bypass Vulnerability | ||
| CVE-2021-31184 | Med | 0.36 | 5.5 | 0.02 | May 11, 2021 | Microsoft Windows Infrared Data Association (IrDA) Information Disclosure Vulnerability | ||
| CVE-2021-28435 | Med | 0.36 | 5.5 | 0.01 | Apr 13, 2021 | Windows Event Tracing Information Disclosure Vulnerability | ||
| CVE-2021-1699 | Med | 0.36 | 5.5 | 0.02 | Jan 12, 2021 | Windows (modem.sys) Information Disclosure Vulnerability | ||
| CVE-2020-17138 | Med | 0.36 | 5.5 | 0.01 | Dec 10, 2020 | Windows Error Reporting Information Disclosure Vulnerability | ||
| CVE-2020-17094 | Med | 0.36 | 5.5 | 0.01 | Dec 10, 2020 | Windows Error Reporting Information Disclosure Vulnerability | ||
| CVE-2020-17030 | Med | 0.36 | 5.5 | 0.01 | Nov 11, 2020 | Windows MSCTF Server Information Disclosure Vulnerability | ||
| CVE-2020-1426 | Med | 0.36 | 5.5 | 0.01 | Jul 14, 2020 | An information disclosure vulnerability exists when the Windows kernel improperly handles objects in memory, aka 'Windows Kernel Information Disclosure Vulnerability'. This CVE ID is unique from CVE-2020-1367, CVE-2020-1389, CVE-2020-1419. | ||
| CVE-2020-1420 | Med | 0.36 | 5.5 | 0.01 | Jul 14, 2020 | An information disclosure vulnerability exists when Windows Error Reporting improperly handles file operations.To exploit this vulnerability, an attacker would first have to gain execution on the victim system, aka 'Windows Error Reporting Information Disclosure Vulnerability'. | ||
| CVE-2020-1419 | Med | 0.36 | 5.5 | 0.01 | Jul 14, 2020 | An information disclosure vulnerability exists when the Windows kernel fails to properly initialize a memory address, aka 'Windows Kernel Information Disclosure Vulnerability'. This CVE ID is unique from CVE-2020-1367, CVE-2020-1389, CVE-2020-1426. | ||
| CVE-2020-1389 | Med | 0.36 | 5.5 | 0.01 | Jul 14, 2020 | An information disclosure vulnerability exists when the Windows kernel fails to properly initialize a memory address, aka 'Windows Kernel Information Disclosure Vulnerability'. This CVE ID is unique from CVE-2020-1367, CVE-2020-1419, CVE-2020-1426. | ||
| CVE-2020-1386 | Med | 0.36 | 5.5 | 0.01 | Jul 14, 2020 | An information vulnerability exists when Windows Connected User Experiences and Telemetry Service improperly discloses file information, aka 'Connected User Experiences and Telemetry Service Information Disclosure Vulnerability'. | ||
| CVE-2020-1367 | Med | 0.36 | 5.5 | 0.01 | Jul 14, 2020 | An information disclosure vulnerability exists when the Windows kernel improperly handles objects in memory, aka 'Windows Kernel Information Disclosure Vulnerability'. This CVE ID is unique from CVE-2020-1389, CVE-2020-1419, CVE-2020-1426. | ||
| CVE-2020-1361 | Med | 0.36 | 5.5 | 0.01 | Jul 14, 2020 | An information disclosure vulnerability exists in the way that the WalletService handles memory.To exploit the vulnerability, an attacker would first need code execution on a victim system, aka 'Windows WalletService Information Disclosure Vulnerability'. | ||
| CVE-2020-1358 | Med | 0.36 | 5.5 | 0.01 | Jul 14, 2020 | An information disclosure vulnerability exists when the Windows Resource Policy component improperly handles memory.To exploit this vulnerability, an attacker would first have to gain execution on the victim system, aka 'Windows Resource Policy Information Disclosure… |
- risk 0.36cvss 5.5epss 0.01
Windows SMB Information Disclosure Vulnerability
- risk 0.36cvss 5.5epss 0.01
Windows Redirected Drive Buffering SubSystem Driver Information Disclosure Vulnerability
- risk 0.36cvss 5.5epss 0.01
Windows Authenticode Spoofing Vulnerability
- risk 0.36cvss 5.5epss 0.02
Windows GDI Information Disclosure Vulnerability
- risk 0.36cvss 5.5epss 0.02
Windows Authenticode Spoofing Vulnerability
- risk 0.36cvss 5.5epss 0.01
Windows TCP/IP Driver Security Feature Bypass Vulnerability
- risk 0.36cvss 5.5epss 0.02
Microsoft Windows Infrared Data Association (IrDA) Information Disclosure Vulnerability
- risk 0.36cvss 5.5epss 0.01
Windows Event Tracing Information Disclosure Vulnerability
- risk 0.36cvss 5.5epss 0.02
Windows (modem.sys) Information Disclosure Vulnerability
- risk 0.36cvss 5.5epss 0.01
Windows Error Reporting Information Disclosure Vulnerability
- risk 0.36cvss 5.5epss 0.01
Windows Error Reporting Information Disclosure Vulnerability
- risk 0.36cvss 5.5epss 0.01
Windows MSCTF Server Information Disclosure Vulnerability
- risk 0.36cvss 5.5epss 0.01
An information disclosure vulnerability exists when the Windows kernel improperly handles objects in memory, aka 'Windows Kernel Information Disclosure Vulnerability'. This CVE ID is unique from CVE-2020-1367, CVE-2020-1389, CVE-2020-1419.
- risk 0.36cvss 5.5epss 0.01
An information disclosure vulnerability exists when Windows Error Reporting improperly handles file operations.To exploit this vulnerability, an attacker would first have to gain execution on the victim system, aka 'Windows Error Reporting Information Disclosure Vulnerability'.
- risk 0.36cvss 5.5epss 0.01
An information disclosure vulnerability exists when the Windows kernel fails to properly initialize a memory address, aka 'Windows Kernel Information Disclosure Vulnerability'. This CVE ID is unique from CVE-2020-1367, CVE-2020-1389, CVE-2020-1426.
- risk 0.36cvss 5.5epss 0.01
An information disclosure vulnerability exists when the Windows kernel fails to properly initialize a memory address, aka 'Windows Kernel Information Disclosure Vulnerability'. This CVE ID is unique from CVE-2020-1367, CVE-2020-1419, CVE-2020-1426.
- risk 0.36cvss 5.5epss 0.01
An information vulnerability exists when Windows Connected User Experiences and Telemetry Service improperly discloses file information, aka 'Connected User Experiences and Telemetry Service Information Disclosure Vulnerability'.
- risk 0.36cvss 5.5epss 0.01
An information disclosure vulnerability exists when the Windows kernel improperly handles objects in memory, aka 'Windows Kernel Information Disclosure Vulnerability'. This CVE ID is unique from CVE-2020-1389, CVE-2020-1419, CVE-2020-1426.
- risk 0.36cvss 5.5epss 0.01
An information disclosure vulnerability exists in the way that the WalletService handles memory.To exploit the vulnerability, an attacker would first need code execution on a victim system, aka 'Windows WalletService Information Disclosure Vulnerability'.
- risk 0.36cvss 5.5epss 0.01
An information disclosure vulnerability exists when the Windows Resource Policy component improperly handles memory.To exploit this vulnerability, an attacker would first have to gain execution on the victim system, aka 'Windows Resource Policy Information Disclosure…
Page 77 of 133