|
211101
|
7.8 |
HIGH
Local
|
microsoft
|
windows_server_2008 windows_server_2012 windows_10 windows_8.1 windows_server_2016 windows_7 windows_rt_8.1 windows_server_2019
|
An elevation of privilege vulnerability exists when the Windows CSC Service improperly handles memory.To exploit this vulnerability, an attacker would first have to gain execution on the victim syste…
|
NVD-CWE-noinfo
|
CVE-2020-0771
|
2024-11-21 13:54 |
2020-03-13 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
211102
|
7.8 |
HIGH
Local
|
microsoft
|
windows_server_2008 windows_server_2012 windows_10 windows_8.1 windows_server_2016 windows_7 windows_rt_8.1 windows_server_2019
|
An elevation of privilege vulnerability exists when the Windows ActiveX Installer Service improperly handles memory.To exploit this vulnerability, an attacker would first have to gain execution on th…
|
NVD-CWE-noinfo
|
CVE-2020-0770
|
2024-11-21 13:54 |
2020-03-13 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
211103
|
7.8 |
HIGH
Local
|
microsoft
|
windows_server_2008 windows_server_2012 windows_10 windows_8.1 windows_server_2016 windows_7 windows_rt_8.1 windows_server_2019
|
An elevation of privilege vulnerability exists when the Windows CSC Service improperly handles memory.To exploit this vulnerability, an attacker would first have to gain execution on the victim syste…
|
NVD-CWE-noinfo
|
CVE-2020-0769
|
2024-11-21 13:54 |
2020-03-13 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
211104
|
7.5 |
HIGH
Network
|
microsoft
|
chakracore internet_explorer edge
|
A remote code execution vulnerability exists in the way the scripting engine handles objects in memory in Microsoft browsers, aka 'Scripting Engine Memory Corruption Vulnerability'. This CVE ID is un…
|
CWE-787
Out-of-bounds Write
|
CVE-2020-0768
|
2024-11-21 13:54 |
2020-03-13 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
211105
|
5.5 |
MEDIUM
Local
|
microsoft
|
remote_desktop_connection_manager
|
An information disclosure vulnerability exists in the Remote Desktop Connection Manager (RDCMan) application when it improperly parses XML input containing a reference to an external entity, aka 'Rem…
|
NVD-CWE-noinfo
|
CVE-2020-0765
|
2024-11-21 13:54 |
2020-03-13 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
211106
|
7.8 |
HIGH
Local
|
microsoft
|
windows_10 windows_server_2016 windows_server_2019
|
An elevation of privilege vulnerability exists when Windows Defender Security Center handles certain objects in memory.To exploit the vulnerability, an attacker would first have to log on to the syst…
|
NVD-CWE-noinfo
|
CVE-2020-0763
|
2024-11-21 13:54 |
2020-03-13 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
211107
|
7.8 |
HIGH
Local
|
microsoft
|
windows_10 windows_server_2016
|
An elevation of privilege vulnerability exists when Windows Defender Security Center handles certain objects in memory.To exploit the vulnerability, an attacker would first have to log on to the syst…
|
NVD-CWE-noinfo
|
CVE-2020-0762
|
2024-11-21 13:54 |
2020-03-13 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
211108
|
7.5 |
HIGH
Network
|
microsoft
|
azure_devops_server team_foundation_server
|
An elevation of privilege vulnerability exists when Azure DevOps Server and Team Foundation Services improperly handle pipeline job tokens, aka 'Azure DevOps Server and Team Foundation Services Eleva…
|
NVD-CWE-noinfo
|
CVE-2020-0758
|
2024-11-21 13:54 |
2020-03-13 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
211109
|
5.4 |
MEDIUM
Network
|
microsoft
|
team_foundation_server azure_devops_server
|
A Cross-site Scripting (XSS) vulnerability exists when Azure DevOps Server does not properly sanitize user provided input, aka 'Azure DevOps Server Cross-site Scripting Vulnerability'.
|
CWE-79
Cross-site Scripting
|
CVE-2020-0700
|
2024-11-21 13:54 |
2020-03-13 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
211110
|
9.8 |
CRITICAL
Network
|
microsoft
|
windows_10 windows_server_2016 windows_server_2019
|
An elevation of privilege vulnerability exists when DirectX improperly handles objects in memory, aka 'DirectX Elevation of Privilege Vulnerability'.
|
NVD-CWE-noinfo
|
CVE-2020-0690
|
2024-11-21 13:54 |
2020-03-13 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|