|
209281
|
7.8 |
HIGH
Local
|
microsoft
|
windows_server_2008 windows_server_2012 windows_10 windows_8.1 windows_server_2016 windows_7 windows_rt_8.1 windows_server_2019
|
<p>An elevation of privilege vulnerability exists when Group Policy improperly checks access. An attacker who successfully exploited this vulnerability could run processes in an elevated context.</p>…
|
CWE-59
Link Following
|
CVE-2020-16939
|
2024-11-21 14:07 |
2020-10-17 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
209282
|
5.5 |
MEDIUM
Local
|
microsoft
|
windows_10 windows_server_2016
|
<p>An information disclosure vulnerability exists when the Windows kernel improperly handles objects in memory. An attacker who successfully exploited this vulnerability could obtain information to f…
|
NVD-CWE-noinfo
|
CVE-2020-16938
|
2024-11-21 14:07 |
2020-10-17 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
209283
|
7.8 |
HIGH
Local
|
microsoft
|
windows_10 windows_server_2016 windows_server_2008 windows_7 windows_server_2019
|
<p>An elevation of privilege vulnerability exists when the Windows Backup Service improperly handles file operations.</p>
<p>To exploit this vulnerability, an attacker would first have to gain execut…
|
NVD-CWE-noinfo
|
CVE-2020-16936
|
2024-11-21 14:07 |
2020-10-17 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
209284
|
7.8 |
HIGH
Local
|
microsoft
|
windows_server_2008 windows_server_2012 windows_10 windows_8.1 windows_server_2016 windows_7 windows_rt_8.1 windows_server_2019
|
<p>An elevation of privilege vulnerability exists when Windows improperly handles COM object creation. An attacker who successfully exploited the vulnerability could run arbitrary code with elevated …
|
NVD-CWE-noinfo
|
CVE-2020-16935
|
2024-11-21 14:07 |
2020-10-17 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
209285
|
7.0 |
HIGH
Local
|
microsoft
|
office 365_apps office_2013_click-to-run
|
<p>An elevation of privilege vulnerability exists in the way that Microsoft Office Click-to-Run (C2R) AppVLP handles certain files. An attacker who successfully exploited the vulnerability could elev…
|
NVD-CWE-noinfo
|
CVE-2020-16934
|
2024-11-21 14:07 |
2020-10-17 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
209286
|
7.0 |
HIGH
Local
|
microsoft
|
windows_server_2008 windows_server_2012 windows_10 windows_8.1 windows_server_2016 windows_7 windows_rt_8.1 windows_server_2019 word office 365_apps
|
<p>A security feature bypass vulnerability exists in Microsoft Word software when it fails to properly handle .LNK files. An attacker who successfully exploited the vulnerability could use a speciall…
|
NVD-CWE-noinfo
|
CVE-2020-16933
|
2024-11-21 14:07 |
2020-10-17 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
209287
|
7.8 |
HIGH
Local
|
microsoft
|
excel office_web_apps office office_online_server 365_apps
|
<p>A remote code execution vulnerability exists in Microsoft Excel software when the software fails to properly handle objects in memory. An attacker who successfully exploited the vulnerability coul…
|
CWE-908 CWE-909
Use of Uninitialized Resource Missing Initialization of Resource
|
CVE-2020-16932
|
2024-11-21 14:07 |
2020-10-17 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
209288
|
7.8 |
HIGH
Local
|
microsoft
|
excel office_web_apps office office_online_server 365_apps
|
<p>A remote code execution vulnerability exists in Microsoft Excel software when the software fails to properly handle objects in memory. An attacker who successfully exploited the vulnerability coul…
|
CWE-908
Use of Uninitialized Resource
|
CVE-2020-16931
|
2024-11-21 14:07 |
2020-10-17 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
209289
|
7.8 |
HIGH
Local
|
microsoft
|
office 365_apps
|
<p>A remote code execution vulnerability exists in Microsoft Excel software when the software fails to properly handle objects in memory. An attacker who successfully exploited the vulnerability coul…
|
CWE-824 CWE-787
Access of Uninitialized Pointer Out-of-bounds Write
|
CVE-2020-16930
|
2024-11-21 14:07 |
2020-10-17 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
209290
|
7.8 |
HIGH
Local
|
microsoft
|
excel_web_app excel office_web_apps office sharepoint_server sharepoint_enterprise_server office_online_server 365_apps
|
<p>A remote code execution vulnerability exists in Microsoft Excel software when the software fails to properly handle objects in memory. An attacker who successfully exploited the vulnerability coul…
|
CWE-416
Use After Free
|
CVE-2020-16929
|
2024-11-21 14:07 |
2020-10-17 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|