|
223521
|
7.8 |
HIGH
Local
|
microsoft
|
office project office_365_proplus
|
A security feature bypass vulnerability exists when Microsoft Office improperly handles input, aka 'Microsoft Office Security Feature Bypass Vulnerability'.
|
CWE-20
Improper Input Validation
|
CVE-2019-1264
|
2024-11-21 13:36 |
2019-09-12 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
223522
|
5.5 |
MEDIUM
Local
|
microsoft
|
excel office office_365_proplus
|
An information disclosure vulnerability exists when Microsoft Excel improperly discloses the contents of its memory, aka 'Microsoft Excel Information Disclosure Vulnerability'.
|
CWE-200
Information Exposure
|
CVE-2019-1263
|
2024-11-21 13:36 |
2019-09-12 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
223523
|
5.4 |
MEDIUM
Network
|
microsoft
|
sharepoint_foundation
|
A cross-site-scripting (XSS) vulnerability exists when Microsoft SharePoint Server does not properly sanitize a specially crafted web request to an affected SharePoint server, aka 'Microsoft Office S…
|
CWE-79
Cross-site Scripting
|
CVE-2019-1262
|
2024-11-21 13:36 |
2019-09-12 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
223524
|
8.8 |
HIGH
Network
|
microsoft
|
sharepoint_foundation sharepoint_enterprise_server sharepoint_server
|
A spoofing vulnerability exists in Microsoft SharePoint when it improperly handles requests to authorize applications, resulting in cross-site request forgery (CSRF).To exploit this vulnerability, an…
|
CWE-352
Origin Validation Error
|
CVE-2019-1261
|
2024-11-21 13:36 |
2019-09-12 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
223525
|
6.5 |
MEDIUM
Network
|
microsoft
|
sharepoint_foundation sharepoint_enterprise_server sharepoint_server
|
An elevation of privilege vulnerability exists in Microsoft SharePoint, aka 'Microsoft SharePoint Elevation of Privilege Vulnerability'.
|
NVD-CWE-noinfo
|
CVE-2019-1260
|
2024-11-21 13:36 |
2019-09-12 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
223526
|
8.8 |
HIGH
Network
|
microsoft
|
sharepoint_foundation
|
A spoofing vulnerability exists in Microsoft SharePoint when it improperly handles requests to authorize applications, resulting in cross-site request forgery (CSRF).To exploit this vulnerability, an…
|
CWE-352
Origin Validation Error
|
CVE-2019-1259
|
2024-11-21 13:36 |
2019-09-12 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
223527
|
8.8 |
HIGH
Network
|
microsoft
|
sharepoint_foundation sharepoint_enterprise_server sharepoint_server
|
A remote code execution vulnerability exists in Microsoft SharePoint when the software fails to check the source markup of an application package, aka 'Microsoft SharePoint Remote Code Execution Vuln…
|
CWE-20
Improper Input Validation
|
CVE-2019-1257
|
2024-11-21 13:36 |
2019-09-12 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
223528
|
7.8 |
HIGH
Local
|
microsoft
|
windows_server_2008 windows_server_2012 windows_10 windows_8.1 windows_server_2016 windows_7 windows_rt_8.1 windows_server_2019
|
An elevation of privilege vulnerability exists in Windows when the Win32k component fails to properly handle objects in memory, aka 'Win32k Elevation of Privilege Vulnerability'. This CVE ID is uniqu…
|
NVD-CWE-noinfo
|
CVE-2019-1256
|
2024-11-21 13:36 |
2019-09-12 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
223529
|
5.5 |
MEDIUM
Local
|
microsoft
|
windows_server_2016 windows_10 windows_server_2019
|
An information disclosure vulnerability exists when Windows Hyper-V writes uninitialized memory to disk, aka 'Windows Hyper-V Information Disclosure Vulnerability'.
|
CWE-908
Use of Uninitialized Resource
|
CVE-2019-1254
|
2024-11-21 13:36 |
2019-09-12 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
223530
|
7.8 |
HIGH
Local
|
microsoft
|
windows_server_1803 windows_server_2019 windows_10_1809 windows_10_1703 windows_10_1709 windows_10_1803 windows_server_1903 windows_10_1903
|
An elevation of privilege vulnerability exists when the Windows AppX Deployment Server improperly handles junctions.To exploit this vulnerability, an attacker would first have to gain execution on th…
|
NVD-CWE-noinfo
|
CVE-2019-1253
|
2024-11-21 13:36 |
2019-09-12 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|