Windows 10 1809
by Microsoft
CVEs (3,841)
| CVE | Vendor / Product | Sev | Risk | CVSS | EPSS | KEV | Published | Description |
|---|---|---|---|---|---|---|---|---|
| CVE-2019-1385 | Hig | 0.69 | 7.8 | 0.04 | KEV | Nov 12, 2019 | An elevation of privilege vulnerability exists when the Windows AppX Deployment Extensions improperly performs privilege management, resulting in access to system files.To exploit this vulnerability, an authenticated attacker would need to run a specially crafted application to… | |
| CVE-2019-1315 | Hig | 0.69 | 7.8 | 0.03 | KEV | Oct 10, 2019 | An elevation of privilege vulnerability exists when Windows Error Reporting manager improperly handles hard links, aka 'Windows Error Reporting Manager Elevation of Privilege Vulnerability'. This CVE ID is unique from CVE-2019-1339, CVE-2019-1342. | |
| CVE-2019-1130 | Hig | 0.69 | 7.8 | 0.02 | KEV | Jul 15, 2019 | An elevation of privilege vulnerability exists when Windows AppX Deployment Service (AppXSVC) improperly handles hard links, aka 'Windows Elevation of Privilege Vulnerability'. This CVE ID is unique from CVE-2019-1129. | |
| CVE-2019-1129 | Hig | 0.69 | 7.8 | 0.02 | KEV | Jul 15, 2019 | An elevation of privilege vulnerability exists when Windows AppX Deployment Service (AppXSVC) improperly handles hard links, aka 'Windows Elevation of Privilege Vulnerability'. This CVE ID is unique from CVE-2019-1130. | |
| CVE-2019-1069 | Hig | 0.69 | 7.8 | 0.06 | KEV | Jun 12, 2019 | An elevation of privilege vulnerability exists in the way the Task Scheduler Service validates certain file operations. An attacker who successfully exploited the vulnerability could gain elevated privileges on a victim system. To exploit the vulnerability, an attacker would… | |
| CVE-2019-1064 | Hig | 0.69 | 7.8 | 0.07 | KEV | Jun 12, 2019 | An elevation of privilege vulnerability exists when Windows AppX Deployment Service (AppXSVC) improperly handles hard links. An attacker who successfully exploited this vulnerability could run processes in an elevated context. An attacker could then install programs; view,… | |
| CVE-2019-0803 | Hig | 0.69 | 7.8 | 0.45 | KEV | Apr 9, 2019 | An elevation of privilege vulnerability exists in Windows when the Win32k component fails to properly handle objects in memory, aka 'Win32k Elevation of Privilege Vulnerability'. This CVE ID is unique from CVE-2019-0685, CVE-2019-0859. | |
| CVE-2026-33824 | Cri | 0.68 | 9.8 | 0.56 | Apr 14, 2026 | Double free in Windows IKE Extension allows an unauthorized attacker to execute code over a network. | ||
| CVE-2024-49138 | Hig | 0.68 | 7.8 | 0.25 | KEV | Dec 12, 2024 | Windows Common Log File System Driver Elevation of Privilege Vulnerability | |
| CVE-2024-43572 | Hig | 0.68 | 7.8 | 0.67 | KEV | Oct 8, 2024 | Microsoft Management Console Remote Code Execution Vulnerability | |
| CVE-2024-38193 | Hig | 0.68 | 7.8 | 0.27 | KEV | Aug 13, 2024 | Windows Ancillary Function Driver for WinSock Elevation of Privilege Vulnerability | |
| CVE-2024-35250 | Hig | 0.68 | 7.8 | 0.25 | KEV | Jun 11, 2024 | Windows Kernel-Mode Driver Elevation of Privilege Vulnerability | |
| CVE-2023-36874 | Hig | 0.68 | 7.8 | 0.43 | KEV | Jul 11, 2023 | Windows Error Reporting Service Elevation of Privilege Vulnerability | |
| CVE-2023-29360 | Hig | 0.68 | 8.4 | 0.22 | KEV | Jun 14, 2023 | Microsoft Streaming Service Elevation of Privilege Vulnerability | |
| CVE-2022-34718 | Cri | 0.68 | 9.8 | 0.46 | Sep 13, 2022 | Windows TCP/IP Remote Code Execution Vulnerability | ||
| CVE-2022-34713 | Hig | 0.68 | 7.8 | 0.68 | KEV | Aug 9, 2022 | Microsoft Windows Support Diagnostic Tool (MSDT) Remote Code Execution Vulnerability | |
| CVE-2020-0938 | Hig | 0.68 | 7.8 | 0.69 | KEV | Apr 15, 2020 | A remote code execution vulnerability exists in Microsoft Windows when the Windows Adobe Type Manager Library improperly handles a specially-crafted multi-master font - Adobe Type 1 PostScript format.For all systems except Windows 10, an attacker who successfully exploited the… | |
| CVE-2020-0601 | Hig | 0.68 | 8.1 | 0.89 | KEV | Jan 14, 2020 | A spoofing vulnerability exists in the way Windows CryptoAPI (Crypt32.dll) validates Elliptic Curve Cryptography (ECC) certificates.An attacker could exploit the vulnerability by using a spoofed code-signing certificate to sign a malicious executable, making it appear the file… | |
| CVE-2024-38112 | Hig | 0.67 | 7.5 | 0.84 | KEV | Jul 9, 2024 | Windows MSHTML Platform Spoofing Vulnerability | |
| CVE-2024-30080 | Cri | 0.67 | 9.8 | 0.43 | Jun 11, 2024 | Microsoft Message Queuing (MSMQ) Remote Code Execution Vulnerability |
- risk 0.69cvss 7.8epss 0.04
An elevation of privilege vulnerability exists when the Windows AppX Deployment Extensions improperly performs privilege management, resulting in access to system files.To exploit this vulnerability, an authenticated attacker would need to run a specially crafted application to…
- risk 0.69cvss 7.8epss 0.03
An elevation of privilege vulnerability exists when Windows Error Reporting manager improperly handles hard links, aka 'Windows Error Reporting Manager Elevation of Privilege Vulnerability'. This CVE ID is unique from CVE-2019-1339, CVE-2019-1342.
- risk 0.69cvss 7.8epss 0.02
An elevation of privilege vulnerability exists when Windows AppX Deployment Service (AppXSVC) improperly handles hard links, aka 'Windows Elevation of Privilege Vulnerability'. This CVE ID is unique from CVE-2019-1129.
- risk 0.69cvss 7.8epss 0.02
An elevation of privilege vulnerability exists when Windows AppX Deployment Service (AppXSVC) improperly handles hard links, aka 'Windows Elevation of Privilege Vulnerability'. This CVE ID is unique from CVE-2019-1130.
- risk 0.69cvss 7.8epss 0.06
An elevation of privilege vulnerability exists in the way the Task Scheduler Service validates certain file operations. An attacker who successfully exploited the vulnerability could gain elevated privileges on a victim system. To exploit the vulnerability, an attacker would…
- risk 0.69cvss 7.8epss 0.07
An elevation of privilege vulnerability exists when Windows AppX Deployment Service (AppXSVC) improperly handles hard links. An attacker who successfully exploited this vulnerability could run processes in an elevated context. An attacker could then install programs; view,…
- risk 0.69cvss 7.8epss 0.45
An elevation of privilege vulnerability exists in Windows when the Win32k component fails to properly handle objects in memory, aka 'Win32k Elevation of Privilege Vulnerability'. This CVE ID is unique from CVE-2019-0685, CVE-2019-0859.
- risk 0.68cvss 9.8epss 0.56
Double free in Windows IKE Extension allows an unauthorized attacker to execute code over a network.
- risk 0.68cvss 7.8epss 0.25
Windows Common Log File System Driver Elevation of Privilege Vulnerability
- risk 0.68cvss 7.8epss 0.67
Microsoft Management Console Remote Code Execution Vulnerability
- risk 0.68cvss 7.8epss 0.27
Windows Ancillary Function Driver for WinSock Elevation of Privilege Vulnerability
- risk 0.68cvss 7.8epss 0.25
Windows Kernel-Mode Driver Elevation of Privilege Vulnerability
- risk 0.68cvss 7.8epss 0.43
Windows Error Reporting Service Elevation of Privilege Vulnerability
- risk 0.68cvss 8.4epss 0.22
Microsoft Streaming Service Elevation of Privilege Vulnerability
- risk 0.68cvss 9.8epss 0.46
Windows TCP/IP Remote Code Execution Vulnerability
- risk 0.68cvss 7.8epss 0.68
Microsoft Windows Support Diagnostic Tool (MSDT) Remote Code Execution Vulnerability
- risk 0.68cvss 7.8epss 0.69
A remote code execution vulnerability exists in Microsoft Windows when the Windows Adobe Type Manager Library improperly handles a specially-crafted multi-master font - Adobe Type 1 PostScript format.For all systems except Windows 10, an attacker who successfully exploited the…
- risk 0.68cvss 8.1epss 0.89
A spoofing vulnerability exists in the way Windows CryptoAPI (Crypt32.dll) validates Elliptic Curve Cryptography (ECC) certificates.An attacker could exploit the vulnerability by using a spoofed code-signing certificate to sign a malicious executable, making it appear the file…
- risk 0.67cvss 7.5epss 0.84
Windows MSHTML Platform Spoofing Vulnerability
- risk 0.67cvss 9.8epss 0.43
Microsoft Message Queuing (MSMQ) Remote Code Execution Vulnerability
Page 4 of 193