|
221621
|
5.4 |
MEDIUM
Network
|
microsoft
|
dynamics_365
|
A cross site scripting vulnerability exists when Microsoft Dynamics 365 (on-premises) does not properly sanitize a specially crafted web request to an affected Dynamics server, aka 'Microsoft Dynamic…
|
CWE-79
Cross-site Scripting
|
CVE-2019-1375
|
2024-11-21 13:36 |
2019-10-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
221622
|
7.5 |
HIGH
Network
|
microsoft
|
internet_explorer
|
A remote code execution vulnerability exists when Internet Explorer improperly accesses objects in memory, aka 'Internet Explorer Memory Corruption Vulnerability'.
|
CWE-787
Out-of-bounds Write
|
CVE-2019-1371
|
2024-11-21 13:36 |
2019-10-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
221623
|
10.0 |
CRITICAL
Network
|
microsoft
|
azure_app_service_on_azure_stack
|
An remote code execution vulnerability exists when Azure App Service/ Antares on Azure Stack fails to check the length of a buffer prior to copying memory to it.An attacker who successfully exploited…
|
NVD-CWE-noinfo
|
CVE-2019-1372
|
2024-11-21 13:36 |
2019-10-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
221624
|
5.5 |
MEDIUM
Local
|
microsoft
|
open_enclave_software_development_kit
|
An information disclosure vulnerability exists when affected Open Enclave SDK versions improperly handle objects in memory, aka 'Open Enclave SDK Information Disclosure Vulnerability'.
|
CWE-200
Information Exposure
|
CVE-2019-1369
|
2024-11-21 13:36 |
2019-10-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
221625
|
4.6 |
MEDIUM
Physics
|
microsoft
|
windows_10 windows_server_2016 windows_server_2019
|
A security feature bypass exists when Windows Secure Boot improperly restricts access to debugging functionality, aka 'Windows Secure Boot Security Feature Bypass Vulnerability'.
|
NVD-CWE-noinfo
|
CVE-2019-1368
|
2024-11-21 13:36 |
2019-10-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
221626
|
7.5 |
HIGH
Network
|
microsoft
|
chakracore edge
|
A remote code execution vulnerability exists in the way that the Chakra scripting engine handles objects in memory in Microsoft Edge, aka 'Chakra Scripting Engine Memory Corruption Vulnerability'. Th…
|
CWE-787
Out-of-bounds Write
|
CVE-2019-1366
|
2024-11-21 13:36 |
2019-10-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
221627
|
9.9 |
CRITICAL
Network
|
microsoft
|
windows_server_2008 windows_server_2012 windows_10 windows_8.1 windows_server_2016 windows_7 windows_rt_8.1 windows_server_2019
|
An elevation of privilege vulnerability exists when Microsoft IIS Server fails to check the length of a buffer prior to copying memory to it.An attacker who successfully exploited this vulnerability …
|
NVD-CWE-noinfo
|
CVE-2019-1365
|
2024-11-21 13:36 |
2019-10-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
221628
|
7.8 |
HIGH
Local
|
microsoft
|
windows_server_2008 windows_7
|
An elevation of privilege vulnerability exists in Windows when the Windows kernel-mode driver fails to properly handle objects in memory, aka 'Win32k Elevation of Privilege Vulnerability'. This CVE I…
|
NVD-CWE-noinfo
|
CVE-2019-1364
|
2024-11-21 13:36 |
2019-10-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
221629
|
5.5 |
MEDIUM
Local
|
microsoft
|
windows_server_2008 windows_7
|
An information disclosure vulnerability exists in the way that the Windows Graphics Device Interface (GDI) handles objects in memory, allowing an attacker to retrieve information from a targeted syst…
|
CWE-200
Information Exposure
|
CVE-2019-1363
|
2024-11-21 13:36 |
2019-10-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
221630
|
7.8 |
HIGH
Local
|
microsoft
|
windows_server_2008 windows_7
|
An elevation of privilege vulnerability exists in Windows when the Windows kernel-mode driver fails to properly handle objects in memory, aka 'Win32k Elevation of Privilege Vulnerability'. This CVE I…
|
NVD-CWE-noinfo
|
CVE-2019-1362
|
2024-11-21 13:36 |
2019-10-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|