|
208701
|
7.8 |
HIGH
Local
|
microsoft
|
windows_server_2008 windows_server_2012 windows_10 windows_8.1 windows_server_2016 windows_7 windows_rt_8.1 windows_server_2019
|
<p>An elevation of privilege vulnerability exists in the way that fdSSDP.dll handles objects in memory. An attacker who successfully exploited the vulnerability could execute code with elevated permi…
|
NVD-CWE-noinfo
|
CVE-2020-1376
|
2024-11-21 14:10 |
2020-09-12 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
208702
|
7.4 |
HIGH
Network
|
microsoft
|
sharepoint_foundation sharepoint_enterprise_server sharepoint_server
|
<p>A cross-site-scripting (XSS) vulnerability exists when Microsoft SharePoint Server does not properly sanitize a specially crafted web request to an affected SharePoint server. An authenticated att…
|
CWE-79
Cross-site Scripting
|
CVE-2020-1345
|
2024-11-21 14:10 |
2020-09-12 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
208703
|
7.8 |
HIGH
Local
|
microsoft
|
office_online_server sharepoint_server office 365_apps
|
<p>A remote code execution vulnerability exists in Microsoft Word software when it fails to properly handle objects in memory. An attacker who successfully exploited the vulnerability could use a spe…
|
NVD-CWE-noinfo
|
CVE-2020-1338
|
2024-11-21 14:10 |
2020-09-12 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
208704
|
7.8 |
HIGH
Local
|
microsoft
|
excel office_web_apps office sharepoint_server office_online_server 365_apps
|
<p>A remote code execution vulnerability exists in Microsoft Excel software when the software fails to properly handle objects in memory. An attacker who successfully exploited the vulnerability coul…
|
NVD-CWE-noinfo
|
CVE-2020-1335
|
2024-11-21 14:10 |
2020-09-12 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
208705
|
7.8 |
HIGH
Local
|
microsoft
|
excel office 365_apps
|
<p>A remote code execution vulnerability exists in Microsoft Excel software when the software fails to properly handle objects in memory. An attacker who successfully exploited the vulnerability coul…
|
NVD-CWE-noinfo
|
CVE-2020-1332
|
2024-11-21 14:10 |
2020-09-12 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
208706
|
7.3 |
HIGH
Local
|
microsoft
|
windows_10 windows_server_2016 windows_server_2019
|
<p>A remote code execution vulnerability exists in the way that Microsoft Windows Codecs Library handles objects in memory. An attacker who successfully exploited this vulnerability could take contro…
|
NVD-CWE-noinfo
|
CVE-2020-1319
|
2024-11-21 14:10 |
2020-09-12 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
208707
|
7.0 |
HIGH
Local
|
microsoft
|
windows_10 windows_server_2016 windows_server_2019
|
<p>An elevation of privilege vulnerability exists when DirectX improperly handles objects in memory. An attacker who successfully exploited this vulnerability could run arbitrary code in kernel mode.…
|
NVD-CWE-noinfo
|
CVE-2020-1308
|
2024-11-21 14:10 |
2020-09-12 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
208708
|
5.5 |
MEDIUM
Local
|
microsoft
|
windows_10 windows_server_2019 windows_server_2016
|
<p>An elevation of privilege vulnerability exists when the Windows Runtime improperly handles objects in memory. An attacker who successfully exploited this vulnerability could run arbitrary code in …
|
NVD-CWE-noinfo
|
CVE-2020-1303
|
2024-11-21 14:10 |
2020-09-12 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
208709
|
8.4 |
HIGH
Local
|
microsoft
|
windows_server_2008 windows_server_2012 windows_10 windows_8.1 windows_server_2016 windows_7 windows_rt_8.1 windows_server_2019
|
<p>A remote code execution vulnerability exists in the way that the Windows Graphics Device Interface (GDI) handles objects in the memory. An attacker who successfully exploited this vulnerability co…
|
NVD-CWE-noinfo
|
CVE-2020-1285
|
2024-11-21 14:10 |
2020-09-12 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
208710
|
5.5 |
MEDIUM
Local
|
microsoft
|
windows_server_2008 windows_server_2012 windows_10 windows_8.1 windows_server_2016 windows_7 windows_rt_8.1 windows_server_2019
|
<p>An information disclosure vulnerability exists when the Windows GDI component improperly discloses the contents of its memory. An attacker who successfully exploited the vulnerability could obtain…
|
NVD-CWE-noinfo
|
CVE-2020-1256
|
2024-11-21 14:10 |
2020-09-12 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|