|
211431
|
6.2 |
MEDIUM
Local
|
microsoft
|
windows_server_2012 windows_7 windows_10 windows_8.1 windows_server_2008 windows_vista
|
Kerberos in Microsoft Windows Vista SP2, Windows Server 2008 SP2 and R2 SP1, Windows 7 SP1, Windows 8.1, Windows Server 2012 Gold and R2, and Windows 10 Gold and 1511 does not properly validate passw…
|
CWE-255
Credentials Management
|
CVE-2016-0049
|
2024-11-21 11:40 |
2016-02-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
211432
|
7.8 |
HIGH
Local
|
microsoft
|
windows_rt_8.1 windows_server_2012 windows_7 windows_10 windows_8.1 windows_server_2008 windows_vista
|
The kernel-mode drivers in Microsoft Windows Vista SP2, Windows Server 2008 SP2 and R2 SP1, Windows 7 SP1, Windows 8.1, Windows Server 2012 Gold and R2, Windows RT 8.1, and Windows 10 Gold and 1511 a…
|
CWE-264
Permissions, Privileges, and Access Controls
|
CVE-2016-0048
|
2024-11-21 11:40 |
2016-02-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
211433
|
7.5 |
HIGH
Network
|
microsoft
|
.net_framework
|
WinForms in Microsoft .NET Framework 2.0 SP2, 3.5, 3.5.1, 4.5.2, 4.6, and 4.6.1 allows remote attackers to obtain sensitive information from process memory via crafted icon data, aka "Windows Forms I…
|
CWE-200
Information Exposure
|
CVE-2016-0047
|
2024-11-21 11:40 |
2016-02-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
211434
|
7.8 |
HIGH
Local
|
microsoft
|
windows_server_2012 windows_8.1 windows_10
|
Windows Reader in Microsoft Windows 8.1, Windows Server 2012 Gold and R2, and Windows 10 allows remote attackers to execute arbitrary code via a crafted Reader file, aka "Microsoft Windows Reader Vul…
|
CWE-20
Improper Input Validation
|
CVE-2016-0046
|
2024-11-21 11:40 |
2016-02-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
211435
|
7.5 |
HIGH
Network
|
microsoft
|
windows_server_2012 windows_8.1 windows_rt_8.1
|
Sync Framework in Microsoft Windows 8.1, Windows Server 2012 R2, and Windows RT 8.1 allows remote attackers to cause a denial of service (SyncShareSvc service outage) via crafted "change batch" data,…
|
CWE-20
Improper Input Validation
|
CVE-2016-0044
|
2024-11-21 11:40 |
2016-02-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
211436
|
7.8 |
HIGH
Local
|
microsoft
|
windows_rt_8.1 windows_server_2012 windows_7 windows_10 windows_8.1 windows_server_2008 windows_vista
|
Microsoft Windows Vista SP2, Windows Server 2008 SP2 and R2 SP1, Windows 7 SP1, Windows 8.1, Windows Server 2012 Gold and R2, Windows RT 8.1, and Windows 10 Gold and 1511 mishandle DLL loading, which…
|
NVD-CWE-Other
|
CVE-2016-0042
|
2024-11-21 11:40 |
2016-02-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
211437
|
7.8 |
HIGH
Local
|
microsoft
|
windows_rt_8.1 internet_explorer windows_server_2012 windows_7 windows_10 windows_8.1 windows_server_2008 windows_vista
|
Microsoft Windows Vista SP2, Windows Server 2008 SP2 and R2 SP1, Windows 7 SP1, Windows 8.1, Windows Server 2012 Gold and R2, Windows RT 8.1, Windows 10 Gold and 1511, and Internet Explorer 10 and 11…
|
NVD-CWE-Other
|
CVE-2016-0041
|
2024-11-21 11:40 |
2016-02-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
211438
|
7.8 |
HIGH
Local
|
microsoft
|
windows_server_2008 windows_7 windows_vista
|
The kernel in Microsoft Windows Vista SP2, Windows Server 2008 SP2 and R2 SP1, and Windows 7 SP1 allows local users to gain privileges via a crafted application, aka "Windows Elevation of Privilege V…
|
NVD-CWE-noinfo
|
CVE-2016-0040
|
2024-11-21 11:40 |
2016-02-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
211439
|
6.1 |
MEDIUM
Network
|
microsoft
|
sharepoint_foundation
|
Cross-site scripting (XSS) vulnerability in SharePoint Server in Microsoft SharePoint Foundation 2013 SP1 allows remote attackers to inject arbitrary web script or HTML via a crafted request, aka "Mi…
|
CWE-79
Cross-site Scripting
|
CVE-2016-0039
|
2024-11-21 11:40 |
2016-02-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
211440
|
7.8 |
HIGH
Local
|
microsoft
|
windows_server_2008 windows_server_2012 windows_10 windows_8.1 windows_7 windows_vista
|
Windows Journal in Microsoft Windows Vista SP2, Windows Server 2008 SP2 and R2 SP1, Windows 7 SP1, Windows 8.1, Windows Server 2012 Gold and R2, and Windows 10 Gold and 1511 allows remote attackers t…
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2016-0038
|
2024-11-21 11:40 |
2016-02-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|