VYPR

Windows Server 2019

by Microsoft

CVEs (4,947)

  • CVE-2020-1367MedJul 14, 2020
    risk 0.36cvss 5.5epss 0.01

    An information disclosure vulnerability exists when the Windows kernel improperly handles objects in memory, aka 'Windows Kernel Information Disclosure Vulnerability'. This CVE ID is unique from CVE-2020-1389, CVE-2020-1419, CVE-2020-1426.

  • CVE-2020-1361MedJul 14, 2020
    risk 0.36cvss 5.5epss 0.01

    An information disclosure vulnerability exists in the way that the WalletService handles memory.To exploit the vulnerability, an attacker would first need code execution on a victim system, aka 'Windows WalletService Information Disclosure Vulnerability'.

  • CVE-2020-1358MedJul 14, 2020
    risk 0.36cvss 5.5epss 0.01

    An information disclosure vulnerability exists when the Windows Resource Policy component improperly handles memory.To exploit this vulnerability, an attacker would first have to gain execution on the victim system, aka 'Windows Resource Policy Information Disclosure…

  • CVE-2020-1351MedJul 14, 2020
    risk 0.36cvss 5.5epss 0.01

    An information disclosure vulnerability exists when the Windows Graphics component improperly handles objects in memory, aka 'Microsoft Graphics Component Information Disclosure Vulnerability'.

  • CVE-2020-1330MedJul 14, 2020
    risk 0.36cvss 5.5epss 0.01

    An information disclosure vulnerability exists when Windows Mobile Device Management (MDM) Diagnostics improperly handles junctions, aka 'Windows Mobile Device Management Diagnostics Information Disclosure Vulnerability'.

  • CVE-2020-1296MedJun 9, 2020
    risk 0.36cvss 5.5epss 0.01

    A vulnerability exists in the way the Windows Diagnostics & feedback settings app handles objects in memory, aka 'Windows Diagnostics & feedback Information Disclosure Vulnerability'.

  • CVE-2020-1290MedJun 9, 2020
    risk 0.36cvss 5.5epss 0.01

    An information disclosure vulnerability exists when the win32k component improperly provides kernel information, aka 'Win32k Information Disclosure Vulnerability'.

  • CVE-2020-1263MedJun 9, 2020
    risk 0.36cvss 5.5epss 0.01

    An information disclosure vulnerability exists in the way Windows Error Reporting (WER) handles objects in memory, aka 'Windows Error Reporting Information Disclosure Vulnerability'. This CVE ID is unique from CVE-2020-1261.

  • CVE-2020-1261MedJun 9, 2020
    risk 0.36cvss 5.5epss 0.01

    An information disclosure vulnerability exists in the way Windows Error Reporting (WER) handles objects in memory, aka 'Windows Error Reporting Information Disclosure Vulnerability'. This CVE ID is unique from CVE-2020-1263.

  • CVE-2020-1194MedJun 9, 2020
    risk 0.36cvss 5.5epss 0.01

    A denial of service vulnerability exists when Windows Registry improperly handles filesystem operations, aka 'Windows Registry Denial of Service Vulnerability'.

  • CVE-2020-1160MedJun 9, 2020
    risk 0.36cvss 5.5epss 0.02

    An information disclosure vulnerability exists when the Microsoft Windows Graphics Component improperly handles objects in memory, aka 'Microsoft Graphics Component Information Disclosure Vulnerability'.

  • CVE-2020-1141MedMay 21, 2020
    risk 0.36cvss 5.5epss 0.02

    An information disclosure vulnerability exists in the way that the Windows Graphics Device Interface (GDI) handles objects in memory, allowing an attacker to retrieve information from a targeted system. By itself, the information disclosure does not allow arbitrary code…

  • CVE-2020-1131MedMay 21, 2020
    risk 0.36cvss 5.5epss 0.01

    An elevation of privilege vulnerability exists when the Windows State Repository Service improperly handles objects in memory. An attacker who successfully exploited this vulnerability could run arbitrary code in an elevated context. An attacker could exploit this vulnerability…

  • CVE-2020-1123MedMay 21, 2020
    risk 0.36cvss 5.5epss 0.01

    A denial of service vulnerability exists when Connected User Experiences and Telemetry Service improperly handles file operations. An attacker who successfully exploited this vulnerability could cause a system to stop responding. To exploit the vulnerability, an attacker would…

  • CVE-2020-1116MedMay 21, 2020
    risk 0.36cvss 5.5epss 0.01

    An information disclosure vulnerability exists when the Windows Client Server Run-Time Subsystem (CSRSS) fails to properly handle objects in memory. An attacker who successfully exploited the vulnerability could obtain information to further compromise the user’s system. To…

  • CVE-2020-1084MedMay 21, 2020
    risk 0.36cvss 5.5epss 0.01

    A Denial Of Service vulnerability exists when Connected User Experiences and Telemetry Service fails to validate certain function values. An attacker who successfully exploited this vulnerability could deny dependent security feature functionality. To exploit this vulnerability,…

  • CVE-2020-1076MedMay 21, 2020
    risk 0.36cvss 5.5epss 0.01

    A denial of service vulnerability exists when Windows improperly handles objects in memory. An attacker who successfully exploited the vulnerability could cause a target system to stop responding. To exploit this vulnerability, an attacker would have to log on to an affected…

  • CVE-2020-1075MedMay 21, 2020
    risk 0.36cvss 5.5epss 0.01

    An information disclosure vulnerability exists when Windows Subsystem for Linux improperly handles objects in memory. An attacker who successfully exploited this vulnerability could obtain information to further compromise the user’s system. A attacker could exploit this…

  • CVE-2020-1072MedMay 21, 2020
    risk 0.36cvss 5.5epss 0.01

    An information disclosure vulnerability exists when the Windows kernel improperly handles objects in memory. An attacker who successfully exploited this vulnerability could obtain information to further compromise the user’s system. To exploit this vulnerability, an attacker…

  • CVE-2020-1055MedMay 21, 2020
    risk 0.36cvss 5.5epss 0.02

    A cross-site-scripting (XSS) vulnerability exists when Active Directory Federation Services (ADFS) does not properly sanitize user inputs. An un-authenticated attacker could exploit the vulnerability by sending a specially crafted request to an affected ADFS server. The attacker…

Page 218 of 248