|
210961
|
5.4 |
MEDIUM
Network
|
microsoft
|
dynamics_365
|
A cross site scripting vulnerability exists when Microsoft Dynamics 365 (on-premises) does not properly sanitize a specially crafted web request to an affected Dynamics server. An authenticated attac…
|
CWE-79
Cross-site Scripting
|
CVE-2020-1591
|
2024-11-21 14:10 |
2020-08-18 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
210962
|
7.8 |
HIGH
Local
|
microsoft
|
windows_server_2008 windows_server_2012 windows_10 windows_8.1 windows_server_2016 windows_7 windows_rt_8.1 windows_server_2019
|
An elevation of privilege vulnerability exists when the Windows Ancillary Function Driver for WinSock improperly handles memory.
To exploit this vulnerability, an attacker would first have to gain ex…
|
NVD-CWE-noinfo
|
CVE-2020-1587
|
2024-11-21 14:10 |
2020-08-18 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
210963
|
8.8 |
HIGH
Network
|
microsoft
|
windows_10
|
A remote code execution vulnerability exists in the way that Microsoft Windows Codecs Library handles objects in memory. An attacker who successfully exploited this vulnerability could take control o…
|
NVD-CWE-noinfo
|
CVE-2020-1585
|
2024-11-21 14:10 |
2020-08-18 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
210964
|
7.8 |
HIGH
Local
|
microsoft
|
windows_server_2012 windows_10 windows_8.1 windows_server_2016 windows_server_2008 windows_7 windows_rt_8.1 windows_server_2019
|
An elevation of privilege vulnerability exists in the way that the dnsrslvr.dll handles objects in memory. An attacker who successfully exploited the vulnerability could execute code with elevated pe…
|
NVD-CWE-noinfo
|
CVE-2020-1584
|
2024-11-21 14:10 |
2020-08-18 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
210965
|
7.3 |
HIGH
Local
|
microsoft
|
windows_10
|
An elevation of privilege vulnerability exists in Windows Setup in the way it handles permissions.
A locally authenticated attacker could run arbitrary code with elevated system privileges. After suc…
|
CWE-276
Incorrect Default Permissions
|
CVE-2020-1571
|
2024-11-21 14:10 |
2020-08-18 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
210966
|
7.8 |
HIGH
Local
|
microsoft
|
windows_10 windows_8.1 windows_7 windows_rt_8.1
|
An elevation of privilege vulnerability exists when the Windows Backup Engine improperly handles memory.
To exploit this vulnerability, an attacker would first have to gain execution on the victim sy…
|
NVD-CWE-noinfo
|
CVE-2020-1551
|
2024-11-21 14:10 |
2020-08-18 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
210967
|
7.8 |
HIGH
Local
|
microsoft
|
windows_10 windows_server_2016 windows_server_2019
|
An elevation of privilege vulnerability exists when the Windows CDP User Components improperly handle memory.
To exploit this vulnerability, an attacker would first have to gain execution on the vict…
|
NVD-CWE-noinfo
|
CVE-2020-1550
|
2024-11-21 14:10 |
2020-08-18 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
210968
|
8.8 |
HIGH
Network
|
microsoft
|
word office_web_apps sharepoint_server office sharepoint_enterprise_server office_online_server 365_apps
|
An information disclosure vulnerability exists when Microsoft Word improperly discloses the contents of its memory. An attacker who exploited the vulnerability could use the information to compromise…
|
NVD-CWE-noinfo
|
CVE-2020-1583
|
2024-11-21 14:10 |
2020-08-18 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
210969
|
7.8 |
HIGH
Local
|
microsoft
|
access office 365_apps
|
A remote code execution vulnerability exists in Microsoft Access software when the software fails to properly handle objects in memory. An attacker who successfully exploited the vulnerability could …
|
NVD-CWE-noinfo
|
CVE-2020-1582
|
2024-11-21 14:10 |
2020-08-18 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
210970
|
7.8 |
HIGH
Local
|
microsoft
|
office 365_apps
|
An elevation of privilege vulnerability exists in the way that Microsoft Office Click-to-Run (C2R) components handle objects in memory. An attacker who successfully exploited the vulnerability could …
|
NVD-CWE-noinfo
|
CVE-2020-1581
|
2024-11-21 14:10 |
2020-08-18 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|