|
221641
|
7.8 |
HIGH
Local
|
microsoft
|
windows_server_2008 windows_server_2012 windows_10 windows_8.1 windows_server_2016 windows_rt_8.1 windows_server_2019 windows_7
|
An elevation of privilege vulnerability exists when Windows Error Reporting manager improperly handles a process crash, aka 'Windows Error Reporting Manager Elevation of Privilege Vulnerability'. Thi…
|
CWE-755
Improper Handling of Exceptional Conditions
|
CVE-2019-1342
|
2024-11-21 13:36 |
2019-10-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
221642
|
7.8 |
HIGH
Local
|
microsoft
|
windows_server_2008 windows_server_2012 windows_10 windows_8.1 windows_server_2016 windows_7 windows_rt_8.1 windows_server_2019
|
An elevation of privilege vulnerability exists when umpo.dll of the Power Service, improperly handles a Registry Restore Key function, aka 'Windows Power Service Elevation of Privilege Vulnerability'.
|
NVD-CWE-noinfo
|
CVE-2019-1341
|
2024-11-21 13:36 |
2019-10-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
221643
|
7.8 |
HIGH
Local
|
microsoft
|
windows_10 windows_server_2016 windows_server_2019
|
An elevation of privilege vulnerability exists in Windows AppX Deployment Server that allows file creation in arbitrary locations.To exploit the vulnerability, an attacker would first have to log on …
|
NVD-CWE-noinfo
|
CVE-2019-1340
|
2024-11-21 13:36 |
2019-10-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
221644
|
7.8 |
HIGH
Local
|
microsoft
|
windows_server_2012 windows_server_2008 windows_10 windows_8.1 windows_server_2016 windows_7 windows_rt_8.1 windows_server_2019
|
An elevation of privilege vulnerability exists when Windows Error Reporting manager improperly handles hard links, aka 'Windows Error Reporting Manager Elevation of Privilege Vulnerability'. This CVE…
|
CWE-59
Link Following
|
CVE-2019-1339
|
2024-11-21 13:36 |
2019-10-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
221645
|
5.9 |
MEDIUM
Network
|
microsoft
|
windows_server_2008 windows_7
|
A security feature bypass vulnerability exists in Microsoft Windows when a man-in-the-middle attacker is able to successfully bypass the NTLMv2 protection if a client is also sending LMv2 responses, …
|
NVD-CWE-noinfo
|
CVE-2019-1338
|
2024-11-21 13:36 |
2019-10-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
221646
|
5.5 |
MEDIUM
Local
|
microsoft
|
windows_server_2019 windows_10 windows_server_2016
|
An information disclosure vulnerability exists when Windows Update Client fails to properly handle objects in memory, aka 'Windows Update Client Information Disclosure Vulnerability'.
|
CWE-200
Information Exposure
|
CVE-2019-1337
|
2024-11-21 13:36 |
2019-10-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
221647
|
7.8 |
HIGH
Local
|
microsoft
|
windows_server_2019 windows_10 windows_server_2016
|
An elevation of privilege vulnerability exists in the Microsoft Windows Update Client when it does not properly handle privileges, aka 'Microsoft Windows Update Client Elevation of Privilege Vulnerab…
|
NVD-CWE-noinfo
|
CVE-2019-1336
|
2024-11-21 13:36 |
2019-10-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
221648
|
7.5 |
HIGH
Network
|
microsoft
|
chakracore edge
|
A remote code execution vulnerability exists in the way that the Chakra scripting engine handles objects in memory in Microsoft Edge, aka 'Chakra Scripting Engine Memory Corruption Vulnerability'. Th…
|
CWE-787
Out-of-bounds Write
|
CVE-2019-1335
|
2024-11-21 13:36 |
2019-10-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
221649
|
5.5 |
MEDIUM
Local
|
microsoft
|
windows_server_2012 windows_10 windows_8.1 windows_server_2016 windows_7 windows_rt_8.1 windows_server_2019
|
An information disclosure vulnerability exists when the Windows kernel improperly handles objects in memory, aka 'Windows Kernel Information Disclosure Vulnerability'. This CVE ID is unique from CVE-…
|
CWE-200
Information Exposure
|
CVE-2019-1334
|
2024-11-21 13:36 |
2019-10-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
221650
|
8.8 |
HIGH
Network
|
microsoft
|
windows_server_2008 windows_server_2012 windows_10 windows_8.1 windows_server_2016 windows_server_2019 windows_7 windows_rt_8.1
|
A remote code execution vulnerability exists in the Windows Remote Desktop Client when a user connects to a malicious server, aka 'Remote Desktop Client Remote Code Execution Vulnerability'.
|
NVD-CWE-noinfo
|
CVE-2019-1333
|
2024-11-21 13:36 |
2019-10-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|