VYPR

Windows 10 1809

by Microsoft

CVEs (3,857)

  • CVE-2020-0904MedSep 11, 2020
    risk 0.42cvss 6.5epss 0.01

    A denial of service vulnerability exists when Microsoft Hyper-V on a host server fails to properly validate specific malicious data from a user on a guest operating system. To exploit the vulnerability, an attacker who already has a privileged account on a guest…

  • CVE-2020-0890MedSep 11, 2020
    risk 0.42cvss 6.5epss 0.03

    A denial of service vulnerability exists when Microsoft Hyper-V on a host server fails to properly validate specific malicious data from a user on a guest operating system. To exploit the vulnerability, an attacker who already has a privileged account on a guest…

  • CVE-2019-1198MedAug 14, 2019
    risk 0.42cvss 6.5epss 0.02

    An elevation of privilege exists in SyncController.dll. An attacker who successfully exploited the vulnerability could run arbitrary code with elevated privileges. To exploit the vulnerability, an attacker could run a specially crafted application that could exploit the…

  • CVE-2019-1043MedJun 12, 2019
    risk 0.42cvss 6.4epss 0.03

    A remote code execution vulnerability exists in the way that comctl32.dll handles objects in memory. The vulnerability could corrupt memory in such a way that an attacker could execute arbitrary code in the context of the current user. An attacker who successfully exploited the…

  • CVE-2025-60723MedNov 11, 2025
    risk 0.41cvss 6.3epss 0.01

    Concurrent execution using shared resource with improper synchronization ('race condition') in Windows DirectX allows an authorized attacker to deny service over a network.

  • CVE-2025-48813MedOct 14, 2025
    risk 0.41cvss 6.3epss 0.00

    Use of a key past its expiration date in Virtual Secure Mode allows an authorized attacker to perform spoofing locally.

  • CVE-2024-28898MedApr 9, 2024
    risk 0.41cvss 6.3epss 0.01

    Secure Boot Security Feature Bypass Vulnerability

  • CVE-2022-21928MedJan 11, 2022
    risk 0.41cvss 6.3epss 0.01

    Windows Resilient File System (ReFS) Remote Code Execution Vulnerability

  • CVE-2021-34500MedJul 14, 2021
    risk 0.41cvss 6.3epss 0.03

    Windows Kernel Memory Information Disclosure Vulnerability

  • CVE-2021-33755MedJul 14, 2021
    risk 0.41cvss 6.3epss 0.03

    Windows Hyper-V Denial of Service Vulnerability

  • CVE-2020-16910MedOct 16, 2020
    risk 0.41cvss 6.2epss 0.03

    A security feature bypass vulnerability exists when Microsoft Windows fails to handle file creation permissions, which could allow an attacker to create files in a protected Unified Extensible Firmware Interface (UEFI) location. To exploit this vulnerability, an…

  • CVE-2019-1053MedJun 12, 2019
    risk 0.41cvss 6.3epss 0.01

    An elevation of privilege vulnerability exists when the Windows Shell fails to validate folder shortcuts. An attacker who successfully exploited the vulnerability could elevate privileges by escaping a sandbox. To exploit this vulnerability, an attacker would require…

  • CVE-2019-0986MedJun 12, 2019
    risk 0.41cvss 6.3epss 0.02

    An elevation of privilege vulnerability exists when the Windows User Profile Service (ProfSvc) improperly handles symlinks. An attacker who successfully exploited this vulnerability could delete files and folders in an elevated context. To exploit this vulnerability, an attacker…

  • CVE-2026-40380MedMay 12, 2026
    risk 0.40cvss 6.2epss 0.00

    Heap-based buffer overflow in Volume Manager Extension Driver allows an authorized attacker to execute code with a physical attack.

  • CVE-2026-32088MedApr 14, 2026
    risk 0.40cvss 6.1epss 0.00

    Concurrent execution using shared resource with improper synchronization ('race condition') in Windows Biometric Service allows an unauthorized attacker to bypass a security feature with a physical attack.

  • CVE-2026-32072MedApr 14, 2026
    risk 0.40cvss 6.2epss 0.00

    Improper authentication in Windows Active Directory allows an unauthorized attacker to perform spoofing locally.

  • CVE-2026-26169MedApr 14, 2026
    risk 0.40cvss 6.1epss 0.02

    Buffer over-read in Windows Kernel Memory allows an authorized attacker to disclose information locally.

  • CVE-2026-25169MedMar 10, 2026
    risk 0.40cvss 6.2epss 0.00

    Divide by zero in Microsoft Graphics Component allows an unauthorized attacker to deny service locally.

  • CVE-2026-25168MedMar 10, 2026
    risk 0.40cvss 6.2epss 0.00

    Null pointer dereference in Microsoft Graphics Component allows an unauthorized attacker to deny service locally.

  • CVE-2026-20821MedJan 13, 2026
    risk 0.40cvss 6.2epss 0.01

    Exposure of sensitive information to an unauthorized actor in Windows Remote Procedure Call allows an unauthorized attacker to disclose information locally.

Page 149 of 193