|
208841
|
8.8 |
HIGH
Network
|
microsoft
|
sharepoint_foundation sharepoint_enterprise_server sharepoint_server
|
A remote code execution vulnerability exists in Microsoft SharePoint Server when it fails to properly identify and filter unsafe ASP.Net web controls, aka 'Microsoft SharePoint Server Remote Code Exe…
|
NVD-CWE-noinfo
|
CVE-2020-1181
|
2024-11-21 14:09 |
2020-06-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
208842
|
8.8 |
HIGH
Network
|
microsoft
|
sharepoint_server sharepoint_enterprise_server
|
An elevation of privilege vulnerability exists when Microsoft SharePoint Server does not properly sanitize a specially crafted authentication request to an affected SharePoint server, aka 'Microsoft …
|
NVD-CWE-noinfo
|
CVE-2020-1178
|
2024-11-21 14:09 |
2020-06-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
208843
|
7.8 |
HIGH
Local
|
microsoft
|
windows_defender forefront_endpoint_protection_2010 security_essentials system_center_endpoint_protection
|
An elevation of privilege vulnerability exists in Windows Defender that leads arbitrary file deletion on the system.To exploit the vulnerability, an attacker would first have to log on to the system,…
|
CWE-732
Incorrect Permission Assignment for Critical Resource
|
CVE-2020-1170
|
2024-11-21 14:09 |
2020-06-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
208844
|
7.8 |
HIGH
Local
|
microsoft
|
windows_defender forefront_endpoint_protection_2010 security_essentials system_center_endpoint_protection
|
An elevation of privilege vulnerability exists in Windows Defender that leads arbitrary file deletion on the system.To exploit the vulnerability, an attacker would first have to log on to the system,…
|
NVD-CWE-noinfo
|
CVE-2020-1163
|
2024-11-21 14:09 |
2020-06-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
208845
|
7.8 |
HIGH
Local
|
microsoft
|
windows_10 windows_server_2016 windows_server_2019
|
An elevation of privilege (user to user) vulnerability exists in Windows Security Health Service when handling certain objects in memory.To exploit the vulnerability, an attacker would first have to …
|
NVD-CWE-noinfo
|
CVE-2020-1162
|
2024-11-21 14:09 |
2020-06-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
208846
|
5.5 |
MEDIUM
Local
|
microsoft
|
windows_server_2008 windows_server_2012 windows_10 windows_8.1 windows_server_2016 windows_7 windows_rt_8.1 windows_server_2019
|
An information disclosure vulnerability exists when the Microsoft Windows Graphics Component improperly handles objects in memory, aka 'Microsoft Graphics Component Information Disclosure Vulnerabili…
|
NVD-CWE-noinfo
|
CVE-2020-1160
|
2024-11-21 14:09 |
2020-06-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
208847
|
5.4 |
MEDIUM
Network
|
microsoft
|
sharepoint_server sharepoint_enterprise_server
|
A spoofing vulnerability exists when Microsoft SharePoint Server does not properly sanitize a specially crafted web request to an affected SharePoint server, aka 'Microsoft SharePoint Spoofing Vulner…
|
CWE-79
Cross-site Scripting
|
CVE-2020-1148
|
2024-11-21 14:09 |
2020-06-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
208848
|
5.5 |
MEDIUM
Local
|
microsoft
|
windows_10
|
A denial of service vulnerability exists when Connected User Experiences and Telemetry Service improperly handles file operations, aka 'Connected User Experiences and Telemetry Service Denial of Serv…
|
NVD-CWE-noinfo
|
CVE-2020-1120
|
2024-11-21 14:09 |
2020-06-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
208849
|
8.1 |
HIGH
Network
|
microsoft
|
edge chakracore
|
A remote code execution vulnerability exists in the way that the ChakraCore scripting engine handles objects in memory, aka 'Scripting Engine Memory Corruption Vulnerability'.
|
CWE-787
Out-of-bounds Write
|
CVE-2020-1073
|
2024-11-21 14:09 |
2020-06-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
208850
|
5.9 |
MEDIUM
Network
|
microsoft
|
edge
|
An elevation of privilege vulnerability exists in Microsoft Edge (Chromium-based) when the Feedback extension improperly validates input, aka 'Microsoft Edge (Chromium-based) Elevation of Privilege V…
|
CWE-20
Improper Input Validation
|
CVE-2020-1195
|
2024-11-21 14:09 |
2020-05-22 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|