|
3851
|
3.3
2.1
|
LOW
Local
|
A security feature bypass exists when Device Guard incorrectly validates an untrusted file, aka "Device Guard Security Feature Bypass Vulnerability." This affects Windows Server 2016, Windows 10, Win…
|
CWE-367
Time-of-check Time-of-use (TOCTOU) Race Condition
|
CVE-2018-0966
|
cpe:2.3:o:microsoft:windows_server_2016:1709:* cpe:2.3:o:microsoft:windows_server_2016:-:*
|
|
|
|
|
2024-11-21 12:39
2018-04-12
|
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
3852
|
6.1
1.9
|
MEDIUM
Local
|
An information disclosure vulnerability exists when Windows Hyper-V on a host operating system fails to properly validate input from an authenticated user on a guest operating system, aka "Hyper-V In…
|
NVD-CWE-noinfo
|
CVE-2018-0964
|
cpe:2.3:o:microsoft:windows_server_2016:1709:*
|
|
|
|
|
2024-11-21 12:39
2018-04-12
|
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
3853
|
8.8
9.3
|
HIGH
Network
|
A remote code execution vulnerability exists when the Windows font library improperly handles specially crafted embedded fonts, aka "Microsoft Graphics Remote Code Execution Vulnerability." This affe…
|
CWE-20
Improper Input Validation
|
CVE-2018-1016
|
cpe:2.3:o:microsoft:windows_server_2016:1709:* cpe:2.3:o:microsoft:windows_server_2016:-:* cpe:2.3:o:microsoft:wi…
|
|
|
|
|
2024-11-21 12:59
2018-04-12
|
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
3854
|
8.8
9.3
|
HIGH
Network
|
A remote code execution vulnerability exists when the Windows font library improperly handles specially crafted embedded fonts, aka "Microsoft Graphics Remote Code Execution Vulnerability." This affe…
|
CWE-20
Improper Input Validation
|
CVE-2018-1015
|
cpe:2.3:o:microsoft:windows_server_2016:1709:* cpe:2.3:o:microsoft:windows_server_2016:-:* cpe:2.3:o:microsoft:wi…
|
|
|
|
|
2024-11-21 12:59
2018-04-12
|
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
3855
|
8.8
9.3
|
HIGH
Network
|
A remote code execution vulnerability exists when the Windows font library improperly handles specially crafted embedded fonts, aka "Microsoft Graphics Remote Code Execution Vulnerability." This affe…
|
CWE-20
Improper Input Validation
|
CVE-2018-1013
|
cpe:2.3:o:microsoft:windows_server_2016:1709:* cpe:2.3:o:microsoft:windows_server_2016:-:* cpe:2.3:o:microsoft:wi…
|
|
|
|
|
2024-11-21 12:58
2018-04-12
|
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
3856
|
8.8
9.3
|
HIGH
Network
|
A remote code execution vulnerability exists when the Windows font library improperly handles specially crafted embedded fonts, aka "Microsoft Graphics Remote Code Execution Vulnerability." This affe…
|
CWE-20
Improper Input Validation
|
CVE-2018-1012
|
cpe:2.3:o:microsoft:windows_server_2016:1709:* cpe:2.3:o:microsoft:windows_server_2016:-:* cpe:2.3:o:microsoft:wi…
|
|
|
|
|
2024-11-21 12:58
2018-04-12
|
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
3857
|
8.8
9.3
|
HIGH
Network
|
A remote code execution vulnerability exists when the Windows font library improperly handles specially crafted embedded fonts, aka "Microsoft Graphics Remote Code Execution Vulnerability." This affe…
|
CWE-20
Improper Input Validation
|
CVE-2018-1010
|
cpe:2.3:o:microsoft:windows_server_2016:1709:* cpe:2.3:o:microsoft:windows_server_2016:-:* cpe:2.3:o:microsoft:wi…
|
|
|
|
|
2024-11-21 12:58
2018-04-12
|
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
3858
|
7.0
6.9
|
HIGH
Local
|
An elevation of privilege vulnerability exists in Windows Adobe Type Manager Font Driver (ATMFD.dll) when it fails to properly handle objects in memory, aka "OpenType Font Driver Elevation of Privile…
|
NVD-CWE-noinfo
|
CVE-2018-1008
|
cpe:2.3:o:microsoft:windows_server_2012:r2:* cpe:2.3:o:microsoft:windows_server_2012:-:* cpe:2.3:o:microsoft:wind…
|
|
|
|
|
2024-11-21 12:58
2018-04-12
|
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
3859
|
7.8
4.6
|
HIGH
Local
|
An elevation of privilege vulnerability exists in the way that the Windows Kernel handles objects in memory, aka "Windows Kernel Elevation of Privilege Vulnerability." This affects Windows Server 201…
|
NVD-CWE-noinfo
|
CVE-2018-0963
|
cpe:2.3:o:microsoft:windows_server_2016:1709:* cpe:2.3:o:microsoft:windows_server_2016:-:*
|
|
|
|
|
2024-11-21 12:39
2018-04-12
|
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
3860
|
5.3
1.9
|
MEDIUM
Local
|
An information disclosure vulnerability exists when Windows Hyper-V on a host operating system fails to properly validate input from an authenticated user on a guest operating system, aka "Hyper-V In…
|
CWE-20
Improper Input Validation
|
CVE-2018-0957
|
cpe:2.3:o:microsoft:windows_server_2016:1709:* cpe:2.3:o:microsoft:windows_server_2016:-:* cpe:2.3:o:microsoft:wi…
|
|
|
|
|
2024-11-21 12:39
2018-04-12
|
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|