|
211031
|
7.8 |
HIGH
Local
|
microsoft
|
windows_server_2008 windows_server_2012 windows_10 windows_8.1 windows_server_2016 windows_7 windows_rt_8.1 windows_server_2019
|
An elevation of privilege vulnerability exists when the Windows CSC Service improperly handles memory.
To exploit this vulnerability, an attacker would first have to gain execution on the victim syst…
|
NVD-CWE-noinfo
|
CVE-2020-1513
|
2024-11-21 14:10 |
2020-08-18 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
211032
|
7.8 |
HIGH
Local
|
microsoft
|
windows_10 windows_server_2016 windows_server_2019
|
An information disclosure vulnerability exists when the Windows State Repository Service improperly handles objects in memory. An attacker who successfully exploited this vulnerability could obtain i…
|
NVD-CWE-noinfo
|
CVE-2020-1512
|
2024-11-21 14:10 |
2020-08-18 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
211033
|
7.8 |
HIGH
Local
|
microsoft
|
windows_10 windows_server_2016 windows_server_2019
|
An elevation of privilege vulnerability exists when Connected User Experiences and Telemetry Service improperly handles file operations. An attacker who successfully exploited this vulnerability coul…
|
NVD-CWE-noinfo
|
CVE-2020-1511
|
2024-11-21 14:10 |
2020-08-18 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
211034
|
7.8 |
HIGH
Local
|
microsoft
|
windows_server_2008 windows_server_2012 windows_10 windows_8.1 windows_server_2016 windows_7 windows_rt_8.1 windows_server_2019
|
An elevation of privilege vulnerability exists in the Local Security Authority Subsystem Service (LSASS) when an authenticated attacker sends a specially crafted authentication request. A remote atta…
|
NVD-CWE-noinfo
|
CVE-2020-1509
|
2024-11-21 14:10 |
2020-08-18 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
211035
|
5.5 |
MEDIUM
Local
|
microsoft
|
sharepoint_foundation sharepoint_server sharepoint_enterprise_server
|
An information disclosure vulnerability exists when Microsoft SharePoint Server fails to properly handle objects in memory. An attacker who successfully exploited this vulnerability could obtain info…
|
NVD-CWE-noinfo
|
CVE-2020-1505
|
2024-11-21 14:10 |
2020-08-18 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
211036
|
8.8 |
HIGH
Network
|
microsoft
|
excel
|
A remote code execution vulnerability exists in Microsoft Excel software when the software fails to properly handle objects in memory. An attacker who successfully exploited the vulnerability could r…
|
NVD-CWE-noinfo
|
CVE-2020-1504
|
2024-11-21 14:10 |
2020-08-18 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
211037
|
5.5 |
MEDIUM
Local
|
microsoft
|
word office_web_apps sharepoint_server office sharepoint_enterprise_server office_online_server 365_apps
|
An information disclosure vulnerability exists when Microsoft Word improperly discloses the contents of its memory. An attacker who exploited the vulnerability could use the information to compromise…
|
NVD-CWE-noinfo
|
CVE-2020-1503
|
2024-11-21 14:10 |
2020-08-18 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
211038
|
5.5 |
MEDIUM
Local
|
microsoft
|
office_online_server sharepoint_server office 365_apps
|
An information disclosure vulnerability exists when Microsoft Word improperly discloses the contents of its memory. An attacker who exploited the vulnerability could use the information to compromise…
|
NVD-CWE-noinfo
|
CVE-2020-1502
|
2024-11-21 14:10 |
2020-08-18 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
211039
|
5.4 |
MEDIUM
Network
|
microsoft
|
sharepoint_foundation sharepoint_server sharepoint_enterprise_server
|
A spoofing vulnerability exists when Microsoft SharePoint Server does not properly sanitize a specially crafted web request to an affected SharePoint server. An authenticated attacker could exploit t…
|
NVD-CWE-noinfo
|
CVE-2020-1501
|
2024-11-21 14:10 |
2020-08-18 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
211040
|
5.4 |
MEDIUM
Network
|
microsoft
|
sharepoint_server sharepoint_enterprise_server
|
A spoofing vulnerability exists when Microsoft SharePoint Server does not properly sanitize a specially crafted web request to an affected SharePoint server. An authenticated attacker could exploit t…
|
NVD-CWE-noinfo
|
CVE-2020-1500
|
2024-11-21 14:10 |
2020-08-18 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|