|
210631
|
8.8 |
HIGH
Network
|
microsoft
|
windows_10 windows_7 windows_server_2012 windows_server_2016 windows_rt_8.1 windows_server_2008 windows_8.1 windows_server_2019
|
<p>A remote code execution vulnerability exists in the way that Microsoft COM for Windows handles objects in memory. An attacker who successfully exploited the vulnerability could execute arbitrary c…
|
NVD-CWE-noinfo
|
CVE-2020-0922
|
2024-11-21 13:54 |
2020-09-12 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
210632
|
5.5 |
MEDIUM
Local
|
microsoft
|
windows_10 windows_server_2016 windows_server_2019
|
<p>An information disclosure vulnerability exists when the Windows State Repository Service improperly handles objects in memory. An attacker who successfully exploited this vulnerability could obtai…
|
NVD-CWE-noinfo
|
CVE-2020-0914
|
2024-11-21 13:54 |
2020-09-12 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
210633
|
7.0 |
HIGH
Local
|
microsoft
|
windows_10 windows_7 windows_server_2012 windows_server_2016 windows_rt_8.1 windows_server_2008 windows_8.1 windows_server_2019
|
<p>An elevation of privilege vulnerability exists when the Windows Function Discovery SSDP Provider improperly handles memory.</p>
<p>To exploit this vulnerability, an attacker would first have to ga…
|
NVD-CWE-noinfo
|
CVE-2020-0912
|
2024-11-21 13:54 |
2020-09-12 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
210634
|
7.8 |
HIGH
Local
|
microsoft
|
windows_10 windows_7 windows_server_2012 windows_server_2016 windows_rt_8.1 windows_server_2008 windows_8.1 windows_server_2019
|
<p>An elevation of privilege vulnerability exists when Windows Modules Installer improperly handles objects in memory. An attacker who successfully exploited this vulnerability could run arbitrary co…
|
NVD-CWE-noinfo
|
CVE-2020-0911
|
2024-11-21 13:54 |
2020-09-12 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
210635
|
7.5 |
HIGH
Network
|
microsoft
|
windows_10 windows_server_2016 windows_server_2019
|
<p>A remote code execution vulnerability exists when the Windows Text Service Module improperly handles memory. An attacker who successfully exploited the vulnerability could gain execution on a vict…
|
NVD-CWE-noinfo
|
CVE-2020-0908
|
2024-11-21 13:54 |
2020-09-12 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
210636
|
6.5 |
MEDIUM
Local
|
microsoft
|
windows_10 windows_server_2016 windows_server_2019
|
<p>A denial of service vulnerability exists when Microsoft Hyper-V on a host server fails to properly validate specific malicious data from a user on a guest operating system.</p>
<p>To exploit the v…
|
CWE-20
Improper Input Validation
|
CVE-2020-0904
|
2024-11-21 13:54 |
2020-09-12 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
210637
|
6.5 |
MEDIUM
Local
|
microsoft
|
windows_10 windows_server_2019 windows_server_2016
|
<p>A denial of service vulnerability exists when Microsoft Hyper-V on a host server fails to properly validate specific malicious data from a user on a guest operating system.</p>
<p>To exploit the v…
|
NVD-CWE-noinfo
|
CVE-2020-0890
|
2024-11-21 13:54 |
2020-09-12 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
210638
|
7.8 |
HIGH
Local
|
microsoft
|
windows_10 windows_server_2012 windows_server_2016 windows_rt_8.1 windows_8.1 windows_server_2019
|
<p>An elevation of privilege vulnerability exists when the Windows Storage Services improperly handle file operations. An attacker who successfully exploited this vulnerability could gain elevated pr…
|
NVD-CWE-noinfo
|
CVE-2020-0886
|
2024-11-21 13:54 |
2020-09-12 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
210639
|
4.2 |
MEDIUM
Network
|
microsoft
|
internet_explorer edge chakracore
|
<p>A remote code execution vulnerability exists in the way that Microsoft browsers access objects in memory. The vulnerability could corrupt memory in a way that could allow an attacker to execute ar…
|
CWE-787
Out-of-bounds Write
|
CVE-2020-0878
|
2024-11-21 13:54 |
2020-09-12 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
210640
|
5.5 |
MEDIUM
Local
|
microsoft
|
windows_10 windows_server_2012 windows_server_2016 windows_rt_8.1 windows_8.1 windows_server_2019
|
<p>An information disclosure vulnerability exists in how splwow64.exe handles certain calls. An attacker who successfully exploited this vulnerability could obtain information to further compromise t…
|
NVD-CWE-noinfo
|
CVE-2020-0875
|
2024-11-21 13:54 |
2020-09-12 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|