|
221781
|
7.8 |
HIGH
Local
|
microsoft
|
office_online_server office office_365_proplus sharepoint_server
|
A remote code execution vulnerability exists in Microsoft Word software when it fails to properly handle objects in memory. An attacker who successfully exploited the vulnerability could use a specia…
|
NVD-CWE-noinfo
|
CVE-2019-1205
|
2024-11-21 13:36 |
2019-08-15 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
221782
|
8.8 |
HIGH
Network
|
microsoft
|
windows_server_2012 windows_10 windows_8.1 windows_server_2016 windows_server_2008 windows_7 windows_rt_8.1 windows_server_2019
|
This information is being revised to indicate that this CVE (CVE-2019-1183) is fully mitigated by the security updates for the vulnerability discussed in CVE-2019-1194. No update is required.
|
NVD-CWE-noinfo
|
CVE-2019-1183
|
2024-11-21 13:36 |
2019-08-15 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
221783
|
4.3 |
MEDIUM
Network
|
microsoft
|
outlook office_365_proplus office
|
An elevation of privilege vulnerability exists when Microsoft Outlook initiates processing of incoming messages without sufficient validation of the formatting of the messages. An attacker who succes…
|
CWE-20
Improper Input Validation
|
CVE-2019-1204
|
2024-11-21 13:36 |
2019-08-15 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
221784
|
5.4 |
MEDIUM
Network
|
microsoft
|
sharepoint_enterprise_server sharepoint_server
|
A cross-site-scripting (XSS) vulnerability exists when Microsoft SharePoint Server does not properly sanitize a specially crafted web request to an affected SharePoint server. An authenticated attack…
|
CWE-79
Cross-site Scripting
|
CVE-2019-1203
|
2024-11-21 13:36 |
2019-08-15 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
221785
|
7.8 |
HIGH
Local
|
microsoft
|
word office_web_apps sharepoint_server office office_online_server office_web_apps_server sharepoint_enterprise_server office_365_proplus
|
A remote code execution vulnerability exists in Microsoft Word software when it fails to properly handle objects in memory. An attacker who successfully exploited the vulnerability could use a specia…
|
NVD-CWE-noinfo
|
CVE-2019-1201
|
2024-11-21 13:36 |
2019-08-15 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
221786
|
7.0 |
HIGH
Local
|
microsoft
|
windows_10 windows_server_2016 windows_server_2019
|
An elevation of privilege vulnerability exists in the way that the unistore.dll handles objects in memory. An attacker who successfully exploited the vulnerability could execute code with elevated pe…
|
NVD-CWE-noinfo
|
CVE-2019-1179
|
2024-11-21 13:36 |
2019-08-15 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
221787
|
7.0 |
HIGH
Local
|
microsoft
|
windows_10 windows_server_2016 windows_server_2019
|
An elevation of privilege vulnerability exists in the way that the psmsrv.dll handles objects in memory. An attacker who successfully exploited the vulnerability could execute code with elevated perm…
|
NVD-CWE-noinfo
|
CVE-2019-1175
|
2024-11-21 13:36 |
2019-08-15 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
221788
|
7.8 |
HIGH
Local
|
microsoft
|
outlook office_365_proplus office
|
A remote code execution vulnerability exists in Microsoft Outlook software when it fails to properly handle objects in memory. An attacker who successfully exploited the vulnerability could use a spe…
|
NVD-CWE-noinfo
|
CVE-2019-1200
|
2024-11-21 13:36 |
2019-08-15 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
221789
|
7.8 |
HIGH
Local
|
microsoft
|
office_365_proplus office
|
A remote code execution vulnerability exists in Microsoft Outlook when the software fails to properly handle objects in memory. An attacker who successfully exploited the vulnerability could run arbi…
|
CWE-787
Out-of-bounds Write
|
CVE-2019-1199
|
2024-11-21 13:36 |
2019-08-15 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
221790
|
6.5 |
MEDIUM
Network
|
microsoft
|
windows_10 windows_server_2016 windows_server_2019
|
An elevation of privilege exists in SyncController.dll. An attacker who successfully exploited the vulnerability could run arbitrary code with elevated privileges.
To exploit the vulnerability, an at…
|
NVD-CWE-noinfo
|
CVE-2019-1198
|
2024-11-21 13:36 |
2019-08-15 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|