|
208761
|
7.5 |
HIGH
Network
|
microsoft
|
edge chakracore
|
A remote code execution vulnerability exists in the way that the Chakra scripting engine handles objects in memory in Microsoft Edge (HTML-based), aka 'Chakra Scripting Engine Memory Corruption Vulne…
|
CWE-787
Out-of-bounds Write
|
CVE-2020-1037
|
2024-11-21 14:09 |
2020-05-22 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
208762
|
7.5 |
HIGH
Network
|
microsoft
|
internet_explorer
|
A remote code execution vulnerability exists in the way that the VBScript engine handles objects in memory, aka 'VBScript Remote Code Execution Vulnerability'. This CVE ID is unique from CVE-2020-105…
|
CWE-787
Out-of-bounds Write
|
CVE-2020-1035
|
2024-11-21 14:09 |
2020-05-22 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
208763
|
7.8 |
HIGH
Local
|
microsoft
|
windows_10 windows_server_2016 windows_server_2019
|
A memory corruption vulnerability exists when Windows Media Foundation improperly handles objects in memory, aka 'Media Foundation Memory Corruption Vulnerability'. This CVE ID is unique from CVE-202…
|
CWE-787
Out-of-bounds Write
|
CVE-2020-1028
|
2024-11-21 14:09 |
2020-05-22 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
208764
|
8.8 |
HIGH
Network
|
microsoft
|
sharepoint_foundation sharepoint_enterprise_server sharepoint_server
|
A remote code execution vulnerability exists in Microsoft SharePoint when the software fails to check the source markup of an application package, aka 'Microsoft SharePoint Remote Code Execution Vuln…
|
CWE-434
Unrestricted Upload of File with Dangerous Type
|
CVE-2020-1024
|
2024-11-21 14:09 |
2020-05-22 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
208765
|
8.8 |
HIGH
Network
|
microsoft
|
sharepoint_foundation sharepoint_enterprise_server sharepoint_server
|
A remote code execution vulnerability exists in Microsoft SharePoint when the software fails to check the source markup of an application package, aka 'Microsoft SharePoint Remote Code Execution Vuln…
|
CWE-434
Unrestricted Upload of File with Dangerous Type
|
CVE-2020-1023
|
2024-11-21 14:09 |
2020-05-22 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
208766
|
7.8 |
HIGH
Local
|
microsoft
|
windows_10 windows_server_2016 windows_server_2019
|
An elevation of privilege vulnerability exists in Windows Error Reporting (WER) when WER handles and executes files, aka 'Windows Error Reporting Elevation of Privilege Vulnerability'. This CVE ID is…
|
CWE-362
Race Condition
|
CVE-2020-1021
|
2024-11-21 14:09 |
2020-05-22 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
208767
|
7.8 |
HIGH
Local
|
microsoft
|
windows_server_2008 windows_server_2012 windows_10 windows_8.1 windows_server_2016 windows_7 windows_rt_8.1 windows_server_2019
|
An elevation of privilege vulnerability exists in Windows Block Level Backup Engine Service (wbengine) that allows file deletion in arbitrary locations.To exploit the vulnerability, an attacker would…
|
NVD-CWE-noinfo
|
CVE-2020-1010
|
2024-11-21 14:09 |
2020-05-22 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
208768
|
7.8 |
HIGH
Local
|
microsoft
|
windows_server_2008 windows_server_2012 windows_10 windows_8.1 windows_server_2016 windows_7 windows_rt_8.1 windows_server_2019
|
An elevation of privilege vulnerability exists when the Windows Work Folder Service improperly handles file operations, aka 'Windows Work Folder Service Elevation of Privilege Vulnerability'.
|
NVD-CWE-noinfo
|
CVE-2020-1094
|
2024-11-21 14:09 |
2020-04-16 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
208769
|
6.1 |
MEDIUM
Network
|
microsoft
|
dynamics_365_server
|
A cross site scripting vulnerability exists when Microsoft Dynamics 365 (on-premises) does not properly sanitize a specially crafted web request to an affected Dynamics server, aka 'Microsoft Dynamic…
|
CWE-79
Cross-site Scripting
|
CVE-2020-1050
|
2024-11-21 14:09 |
2020-04-16 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
208770
|
5.4 |
MEDIUM
Network
|
microsoft
|
dynamics_365_server
|
A cross site scripting vulnerability exists when Microsoft Dynamics 365 (on-premises) does not properly sanitize a specially crafted web request to an affected Dynamics server, aka 'Microsoft Dynamic…
|
CWE-79
Cross-site Scripting
|
CVE-2020-1049
|
2024-11-21 14:09 |
2020-04-16 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|