|
208711
|
7.8 |
HIGH
Local
|
microsoft
|
windows_server_2012 windows_10 windows_8.1 windows_server_2016 windows_server_2008 windows_7 windows_rt_8.1 windows_server_2019
|
An elevation of privilege vulnerability exists in the way that the dnsrslvr.dll handles objects in memory. An attacker who successfully exploited the vulnerability could execute code with elevated pe…
|
NVD-CWE-noinfo
|
CVE-2020-1584
|
2024-11-21 14:10 |
2020-08-18 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
208712
|
7.3 |
HIGH
Local
|
microsoft
|
windows_10
|
An elevation of privilege vulnerability exists in Windows Setup in the way it handles permissions.
A locally authenticated attacker could run arbitrary code with elevated system privileges. After suc…
|
CWE-276
Incorrect Default Permissions
|
CVE-2020-1571
|
2024-11-21 14:10 |
2020-08-18 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
208713
|
7.8 |
HIGH
Local
|
microsoft
|
windows_10 windows_8.1 windows_7 windows_rt_8.1
|
An elevation of privilege vulnerability exists when the Windows Backup Engine improperly handles memory.
To exploit this vulnerability, an attacker would first have to gain execution on the victim sy…
|
NVD-CWE-noinfo
|
CVE-2020-1551
|
2024-11-21 14:10 |
2020-08-18 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
208714
|
7.8 |
HIGH
Local
|
microsoft
|
windows_10 windows_server_2016 windows_server_2019
|
An elevation of privilege vulnerability exists when the Windows CDP User Components improperly handle memory.
To exploit this vulnerability, an attacker would first have to gain execution on the vict…
|
NVD-CWE-noinfo
|
CVE-2020-1550
|
2024-11-21 14:10 |
2020-08-18 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
208715
|
8.8 |
HIGH
Network
|
microsoft
|
word office_web_apps sharepoint_server office sharepoint_enterprise_server office_online_server 365_apps
|
An information disclosure vulnerability exists when Microsoft Word improperly discloses the contents of its memory. An attacker who exploited the vulnerability could use the information to compromise…
|
NVD-CWE-noinfo
|
CVE-2020-1583
|
2024-11-21 14:10 |
2020-08-18 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
208716
|
7.8 |
HIGH
Local
|
microsoft
|
access office 365_apps
|
A remote code execution vulnerability exists in Microsoft Access software when the software fails to properly handle objects in memory. An attacker who successfully exploited the vulnerability could …
|
NVD-CWE-noinfo
|
CVE-2020-1582
|
2024-11-21 14:10 |
2020-08-18 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
208717
|
7.8 |
HIGH
Local
|
microsoft
|
office 365_apps
|
An elevation of privilege vulnerability exists in the way that Microsoft Office Click-to-Run (C2R) components handle objects in memory. An attacker who successfully exploited the vulnerability could …
|
NVD-CWE-noinfo
|
CVE-2020-1581
|
2024-11-21 14:10 |
2020-08-18 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
208718
|
5.4 |
MEDIUM
Network
|
microsoft
|
sharepoint_foundation sharepoint_server sharepoint_enterprise_server
|
A cross-site-scripting (XSS) vulnerability exists when Microsoft SharePoint Server does not properly sanitize a specially crafted web request to an affected SharePoint server. An authenticated attack…
|
CWE-79
Cross-site Scripting
|
CVE-2020-1580
|
2024-11-21 14:10 |
2020-08-18 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
208719
|
7.8 |
HIGH
Local
|
microsoft
|
windows_server_2008 windows_server_2012 windows_10 windows_8.1 windows_server_2016 windows_7 windows_rt_8.1 windows_server_2019
|
An elevation of privilege vulnerability exists when the Windows Function Discovery SSDP Provider improperly handles memory.
To exploit this vulnerability, an attacker would first have to gain executi…
|
NVD-CWE-noinfo
|
CVE-2020-1579
|
2024-11-21 14:10 |
2020-08-18 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
208720
|
7.8 |
HIGH
Local
|
microsoft
|
windows_10 windows_server_2016 windows_server_2019
|
An elevation of privilege vulnerability exists when the Windows CDP User Components improperly handle memory.
To exploit this vulnerability, an attacker would first have to gain execution on the vict…
|
NVD-CWE-noinfo
|
CVE-2020-1549
|
2024-11-21 14:10 |
2020-08-18 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|