|
199121
|
5.5 |
MEDIUM
Local
|
microsoft
|
windows_server_2016 windows_10
|
Microsoft Windows 10 allows an elevation of privilege vulnerability when the Windows Update Delivery Optimization does not properly enforce file share permissions.
|
CWE-552
Files or Directories Accessible to External Parties
|
CVE-2017-11829
|
2024-11-21 12:08 |
2017-10-13 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
199122
|
7.8 |
HIGH
Local
|
microsoft
|
word office_compatibility_pack sharepoint_server office_web_apps_server office_word_viewer sharepoint_enterprise_server office_online_server
|
Microsoft Office 2010, SharePoint Enterprise Server 2010, SharePoint Server 2010, Web Applications, Office Web Apps Server 2010 and 2013, Word Viewer, Word 2007, 2010, 2013 and 2016, Word Automation …
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2017-11826
|
2024-11-21 12:08 |
2017-10-13 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
199123
|
7.8 |
HIGH
Local
|
microsoft
|
office_for_mac office
|
Microsoft Office 2016 Click-to-Run (C2R) and Microsoft Office 2016 for Mac allow an attacker to use a specially crafted file to perform actions in the security context of the current user, due to how…
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2017-11825
|
2024-11-21 12:08 |
2017-10-13 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
199124
|
6.7 |
MEDIUM
Local
|
microsoft
|
windows_server_2016 windows_10
|
The Microsoft Device Guard on Microsoft Windows 10 Gold, 1511, 1607, and 1703, and Windows Server 2016 allows a security feature bypass by the way it handles Windows PowerShell sessions, aka "Microso…
|
CWE-362
Race Condition
|
CVE-2017-11823
|
2024-11-21 12:08 |
2017-10-13 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
199125
|
7.5 |
HIGH
Network
|
microsoft
|
internet_explorer
|
Internet Explorer in Microsoft Windows 7 SP1, Windows Server 2008 SP2 and R2 SP1, Windows 8.1 and Windows RT 8.1, Windows Server 2012 and R2, Windows 10 Gold, 1511, 1607, 1703, and Windows Server 201…
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2017-11822
|
2024-11-21 12:08 |
2017-10-13 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
199126
|
5.4 |
MEDIUM
Network
|
microsoft
|
sharepoint_enterprise_server
|
Microsoft SharePoint Enterprise Server 2013 SP1 and Microsoft SharePoint Enterprise Server 2016 allow an attacker to exploit a cross-site scripting (XSS) vulnerability by sending a specially crafted …
|
CWE-79
Cross-site Scripting
|
CVE-2017-11820
|
2024-11-21 12:08 |
2017-10-13 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
199127
|
7.5 |
HIGH
Network
|
microsoft
|
windows_7
|
Microsoft Windows 7 SP1 allows an attacker to execute arbitrary code in the context of the current user, due to how Microsoft browsers handle objects in memory, aka "Windows Shell Remote Code Executi…
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2017-11819
|
2024-11-21 12:08 |
2017-10-13 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
199128
|
4.5 |
MEDIUM
Local
|
microsoft
|
windows_server_2012 windows_10 windows_8.1 windows_server_2016 windows_rt_8.1
|
The Microsoft Windows Storage component on Microsoft Windows 8.1, Windows Server 2012 R2, Windows RT 8.1, Windows 10 Gold, 1511, 1607, and 1703, and Windows Server 2016 allows a security feature bypa…
|
CWE-254
7PK - Security Features
|
CVE-2017-11818
|
2024-11-21 12:08 |
2017-10-13 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
199129
|
4.7 |
MEDIUM
Local
|
microsoft
|
windows_server_2008 windows_server_2012 windows_10 windows_8.1 windows_server_2016 windows_7 windows_rt_8.1
|
The Microsoft Windows Kernel component on Microsoft Windows Server 2008 SP2 and R2 SP1, Windows 7 SP1, Windows 8.1, Windows Server 2012 Gold and R2, Windows RT 8.1, Windows 10 Gold, 1511, 1607, and 1…
|
CWE-200
Information Exposure
|
CVE-2017-11817
|
2024-11-21 12:08 |
2017-10-13 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
199130
|
7.5 |
HIGH
Network
|
microsoft
|
internet_explorer
|
Internet Explorer in Microsoft Windows 7 SP1, Windows Server 2008 R2 SP1, Windows 8.1 and Windows RT 8.1, and Windows Server 2012 R2 allows an attacker to execute arbitrary code in the context of the…
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2017-11813
|
2024-11-21 12:08 |
2017-10-13 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|