VYPR

Windows 10 1909

by Microsoft

CVEs (4,279)

  • CVE-2021-28444MedApr 13, 2021
    risk 0.37cvss 5.7epss 0.02

    Windows Hyper-V Security Feature Bypass Vulnerability

  • CVE-2021-27079MedApr 13, 2021
    risk 0.37cvss 5.7epss 0.03

    Windows Media Photo Codec Information Disclosure Vulnerability

  • CVE-2021-1708MedJan 12, 2021
    risk 0.37cvss 5.7epss 0.03

    Windows GDI+ Information Disclosure Vulnerability

  • CVE-2020-1599MedNov 11, 2020
    risk 0.37cvss 5.5epss 0.19

    Windows Spoofing Vulnerability

  • CVE-2020-15707MedJul 29, 2020
    risk 0.37cvss 5.7epss 0.02

    Integer overflows were discovered in the functions grub_cmd_initrd and grub_initrd_init in the efilinux component of GRUB2, as shipped in Debian, Red Hat, and Ubuntu (the functionality is not included in GRUB2 upstream), leading to a heap-based buffer overflow. These could be…

  • CVE-2019-1171MedAug 14, 2019
    risk 0.37cvss 5.6epss 0.01

    An information disclosure vulnerability exists in SymCrypt during the OAEP decryption stage. An attacker who successfully exploited this vulnerability could obtain information to further compromise the user’s system. To exploit this vulnerability, an attacker would have to log…

  • CVE-2018-8472MedOct 10, 2018
    risk 0.37cvss 5.5epss 0.19

    An information disclosure vulnerability exists in the way that the Windows Graphics Device Interface (GDI) handles objects in memory, allowing an attacker to retrieve information from a targeted system, aka "Windows GDI Information Disclosure Vulnerability." This affects Windows…

  • CVE-2018-0888MedMar 14, 2018
    risk 0.37cvss 5.6epss 0.01

    The Microsoft Hyper-V Network Switch in 64-bit versions of Microsoft Windows Server 2008 SP2 and R2 SP1, Windows 7 SP1, Windows 8.1, Windows Server 2012 and R2, Windows 10 Gold, 1511, 1607, 1703, and 1709, Windows Server 2016 and Windows Server, version 1709 allows an…

  • CVE-2017-11853MedNov 15, 2017
    risk 0.37cvss 5.5epss 0.11

    Windows kernel in Windows 7 SP1, Windows Server 2008 SP2 and R2 SP1, Windows 8.1 and RT 8.1, Server 2012 and R2, Windows 10 Gold, 1511, 1607, 1703, and 1709, Windows Server 2016, and Windows Server, version 1709 allows an attacker to log in and run a specially crafted…

  • CVE-2017-11816MedOct 13, 2017
    risk 0.37cvss 5.5epss 0.20

    The Microsoft Windows Graphics Device Interface (GDI) on Microsoft Windows Server 2008 SP2 and R2 SP1, Windows 7 SP1, Windows 8.1, Windows Server 2012 Gold and R2, Windows RT 8.1, Windows 10 Gold, 1511, 1607, and 1703, and Windows Server 2016 allows an information disclosure…

  • CVE-2017-0215MedJun 15, 2017
    risk 0.37cvss 5.3epss 0.36

    Microsoft Windows 10 1607 and Windows Server 2016 allow an attacker to exploit a security feature bypass vulnerability in Device Guard that could allow the attacker to inject malicious code into a Windows PowerShell session, aka "Device Guard Code Integrity Policy Security…

  • CVE-2017-0007MedMar 17, 2017
    risk 0.37cvss 5.5epss 0.11

    Device Guard in Microsoft Windows 10 Gold, 1511, 1607, and Windows Server 2016 allows remote attackers to modify PowerShell script without invalidating associated signatures, aka "PowerShell Security Feature Bypass Vulnerability."

  • CVE-2025-62209MedNov 11, 2025
    risk 0.36cvss 5.5epss 0.01

    Insertion of sensitive information into log file in Windows License Manager allows an authorized attacker to disclose information locally.

  • CVE-2025-62208MedNov 11, 2025
    risk 0.36cvss 5.5epss 0.01

    Insertion of sensitive information into log file in Windows License Manager allows an authorized attacker to disclose information locally.

  • CVE-2025-59253MedOct 14, 2025
    risk 0.36cvss 5.5epss 0.00

    Improper access control in Microsoft Windows Search Component allows an authorized attacker to deny service locally.

  • CVE-2025-59211MedOct 14, 2025
    risk 0.36cvss 5.5epss 0.01

    Exposure of sensitive information to an unauthorized actor in Windows Push Notification Core allows an authorized attacker to disclose information locally.

  • CVE-2025-59209MedOct 14, 2025
    risk 0.36cvss 5.5epss 0.00

    Exposure of sensitive information to an unauthorized actor in Windows Push Notification Core allows an authorized attacker to disclose information locally.

  • CVE-2025-59203MedOct 14, 2025
    risk 0.36cvss 5.5epss 0.00

    Insertion of sensitive information into log file in Windows StateRepository API allows an authorized attacker to disclose information locally.

  • CVE-2025-59197MedOct 14, 2025
    risk 0.36cvss 5.5epss 0.00

    Insertion of sensitive information into log file in Windows ETL Channel allows an authorized attacker to disclose information locally.

  • CVE-2025-59190MedOct 14, 2025
    risk 0.36cvss 5.5epss 0.00

    Improper input validation in Microsoft Windows Search Component allows an unauthorized attacker to deny service locally.

Page 175 of 214