|
211101
|
8.8 |
HIGH
Network
|
microsoft
|
windows_server_2008 windows_server_2012 windows_10 windows_8.1 windows_server_2016 windows_7 windows_rt_8.1 windows_server_2019
|
A remote code execution vulnerability exists when Microsoft Windows fails to properly handle cabinet files.To exploit the vulnerability, an attacker would have to convince a user to either open a spe…
|
NVD-CWE-noinfo
|
CVE-2020-1300
|
2024-11-21 14:10 |
2020-06-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
211102
|
8.8 |
HIGH
Network
|
microsoft
|
sharepoint_enterprise_server sharepoint_server
|
An elevation of privilege vulnerability exists in Microsoft SharePoint, aka 'Microsoft SharePoint Elevation of Privilege Vulnerability'.
|
NVD-CWE-noinfo
|
CVE-2020-1295
|
2024-11-21 14:10 |
2020-06-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
211103
|
7.8 |
HIGH
Local
|
microsoft
|
windows_10 windows_server_2016 windows_server_2019
|
An elevation of privilege vulnerability exists in the way that the Windows WalletService handles objects in memory, aka 'Windows WalletService Elevation of Privilege Vulnerability'. This CVE ID is un…
|
NVD-CWE-noinfo
|
CVE-2020-1294
|
2024-11-21 14:10 |
2020-06-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
211104
|
7.8 |
HIGH
Local
|
microsoft
|
windows_10 windows_server_2016 visual_studio windows_server_2019 visual_studio_2019 visual_studio_2017
|
An elevation of privilege vulnerability exists when the Diagnostics Hub Standard Collector Service improperly handles file operations, aka 'Diagnostics Hub Standard Collector Elevation of Privilege V…
|
NVD-CWE-noinfo
|
CVE-2020-1293
|
2024-11-21 14:10 |
2020-06-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
211105
|
7.8 |
HIGH
Local
|
microsoft
|
windows_10 windows_server_2016 windows_server_2019
|
An elevation of privilege vulnerability exists in OpenSSH for Windows when it does not properly restrict access to configuration settings, aka 'OpenSSH for Windows Elevation of Privilege Vulnerabilit…
|
NVD-CWE-noinfo
|
CVE-2020-1292
|
2024-11-21 14:10 |
2020-06-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
211106
|
7.8 |
HIGH
Local
|
microsoft
|
windows_server_2008 windows_server_2012 windows_10 windows_8.1 windows_server_2016 windows_7 windows_rt_8.1 windows_server_2019
|
An elevation of privilege vulnerability exists in the way that the Windows Network Connections Service handles objects in memory, aka 'Windows Network Connections Service Elevation of Privilege Vulne…
|
NVD-CWE-noinfo
|
CVE-2020-1291
|
2024-11-21 14:10 |
2020-06-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
211107
|
5.5 |
MEDIUM
Local
|
microsoft
|
windows_10 windows_server_2016 windows_server_2019
|
An information disclosure vulnerability exists when the win32k component improperly provides kernel information, aka 'Win32k Information Disclosure Vulnerability'.
|
NVD-CWE-noinfo
|
CVE-2020-1290
|
2024-11-21 14:10 |
2020-06-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
211108
|
5.4 |
MEDIUM
Network
|
microsoft
|
sharepoint_foundation
|
A spoofing vulnerability exists when Microsoft SharePoint Server does not properly sanitize a specially crafted web request to an affected SharePoint server, aka 'Microsoft SharePoint Spoofing Vulner…
|
CWE-79
Cross-site Scripting
|
CVE-2020-1289
|
2024-11-21 14:10 |
2020-06-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
211109
|
7.8 |
HIGH
Local
|
microsoft
|
windows_server_2008 windows_server_2012 windows_10 windows_8.1 windows_server_2016 windows_7 windows_rt_8.1 windows_server_2019
|
An elevation of privilege vulnerability exists in the way that the Windows WalletService handles objects in memory, aka 'Windows WalletService Elevation of Privilege Vulnerability'. This CVE ID is un…
|
NVD-CWE-noinfo
|
CVE-2020-1287
|
2024-11-21 14:10 |
2020-06-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
211110
|
8.8 |
HIGH
Network
|
microsoft
|
windows_10 windows_server_2016 windows_server_2019
|
A remote code execution vulnerability exists when the Windows Shell does not properly validate file paths.An attacker who successfully exploited this vulnerability could run arbitrary code in the con…
|
CWE-20
Improper Input Validation
|
CVE-2020-1286
|
2024-11-21 14:10 |
2020-06-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|