|
208711
|
7.8 |
HIGH
Local
|
microsoft
|
windows_server_2008 windows_server_2012 windows_10 windows_8.1 windows_server_2016 windows_7 windows_rt_8.1 windows_server_2019
|
<p>A remote code execution vulnerability exists when Windows improperly handles objects in memory. To exploit the vulnerability an attacker would have to convince a user to run a specially crafted ap…
|
NVD-CWE-noinfo
|
CVE-2020-1252
|
2024-11-21 14:10 |
2020-09-12 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
208712
|
5.5 |
MEDIUM
Local
|
microsoft
|
windows_server_2008 windows_server_2012 windows_10 windows_8.1 windows_server_2016 windows_7 windows_rt_8.1 windows_server_2019
|
<p>An information disclosure vulnerability exists when the win32k component improperly provides kernel information. An attacker who successfully exploited the vulnerability could obtain information t…
|
NVD-CWE-noinfo
|
CVE-2020-1250
|
2024-11-21 14:10 |
2020-09-12 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
208713
|
7.0 |
HIGH
Local
|
microsoft
|
windows_server_2008 windows_server_2012 windows_10 windows_8.1 windows_server_2016 windows_7 windows_rt_8.1 windows_server_2019
|
<p>An elevation of privilege vulnerability exists in Windows when the Win32k component fails to properly handle objects in memory. An attacker who successfully exploited this vulnerability could run …
|
NVD-CWE-noinfo
|
CVE-2020-1245
|
2024-11-21 14:10 |
2020-09-12 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
208714
|
7.5 |
HIGH
Network
|
microsoft
|
windows_server_2008 windows_server_2012 windows_server_2016 windows_server_2019
|
<p>A denial of service vulnerability exists in Windows DNS when it fails to properly handle queries. An attacker who successfully exploited this vulnerability could cause the DNS service to become no…
|
NVD-CWE-noinfo
|
CVE-2020-1228
|
2024-11-21 14:10 |
2020-09-12 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
208715
|
5.4 |
MEDIUM
Network
|
microsoft
|
sharepoint_foundation sharepoint_enterprise_server sharepoint_server
|
<p>A cross-site-scripting (XSS) vulnerability exists when Microsoft SharePoint Server does not properly sanitize a specially crafted web request to an affected SharePoint server. An authenticated att…
|
CWE-79
Cross-site Scripting
|
CVE-2020-1227
|
2024-11-21 14:10 |
2020-09-12 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
208716
|
5.5 |
MEDIUM
Local
|
microsoft
|
excel office_web_apps office_online_server sharepoint_enterprise_server office 365_apps
|
<p>An information disclosure vulnerability exists when Microsoft Excel improperly discloses the contents of its memory. An attacker who exploited the vulnerability could use the information to compro…
|
NVD-CWE-noinfo
|
CVE-2020-1224
|
2024-11-21 14:10 |
2020-09-12 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
208717
|
7.8 |
HIGH
Local
|
microsoft
|
word office_web_apps sharepoint_server office sharepoint_enterprise_server office_online_server 365_apps
|
<p>A remote code execution vulnerability exists in Microsoft Word software when it fails to properly handle objects in memory. An attacker who successfully exploited the vulnerability could use a spe…
|
NVD-CWE-noinfo
|
CVE-2020-1218
|
2024-11-21 14:10 |
2020-09-12 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
208718
|
5.5 |
MEDIUM
Local
|
microsoft
|
windows_10
|
A remote code execution vulnerability exists in the way that Microsoft Windows Codecs Library handles objects in memory. An attacker who successfully exploited the vulnerability could execute arbitra…
|
NVD-CWE-noinfo
|
CVE-2020-1574
|
2024-11-21 14:10 |
2020-08-18 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
208719
|
7.5 |
HIGH
Network
|
microsoft fedoraproject
|
asp.net_core visual_studio_2019 visual_studio_2017 fedora
|
A denial of service vulnerability exists when ASP.NET Core improperly handles web requests. An attacker who successfully exploited this vulnerability could cause a denial of service against an ASP.NE…
|
NVD-CWE-noinfo
|
CVE-2020-1597
|
2024-11-21 14:10 |
2020-08-18 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
208720
|
5.4 |
MEDIUM
Network
|
microsoft
|
dynamics_365
|
A cross site scripting vulnerability exists when Microsoft Dynamics 365 (on-premises) does not properly sanitize a specially crafted web request to an affected Dynamics server. An authenticated attac…
|
CWE-79
Cross-site Scripting
|
CVE-2020-1591
|
2024-11-21 14:10 |
2020-08-18 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|