|
222731
|
7.8 |
HIGH
Local
|
microsoft
|
windows_server_2012 windows_10 windows_8.1 windows_server_2016 windows_rt_8.1 windows_server_2019
|
An elevation of privilege exists in Windows Audio Service, aka 'Windows Audio Service Elevation of Privilege Vulnerability'. This CVE ID is unique from CVE-2019-1087, CVE-2019-1088.
|
NVD-CWE-noinfo
|
CVE-2019-1086
|
2024-11-21 13:35 |
2019-07-16 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
222732
|
7.8 |
HIGH
Local
|
microsoft
|
windows_server_2008 windows_server_2012 windows_10 windows_8.1 windows_server_2016 windows_7 windows_rt_8.1 windows_server_2019
|
An elevation of privilege vulnerability exists in the way that the wlansvc.dll handles objects in memory, aka 'Windows WLAN Service Elevation of Privilege Vulnerability'.
|
NVD-CWE-noinfo
|
CVE-2019-1085
|
2024-11-21 13:35 |
2019-07-16 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
222733
|
7.8 |
HIGH
Local
|
microsoft
|
windows_server_2008 windows_server_2012 windows_10 windows_8.1 windows_server_2016 windows_7 windows_rt_8.1 windows_server_2019
|
An elevation of privilege vulnerability exists in rpcss.dll when the RPC service Activation Kernel improperly handles an RPC request. To exploit this vulnerability, a low level authenticated attacker…
|
NVD-CWE-noinfo
|
CVE-2019-1089
|
2024-11-21 13:35 |
2019-07-16 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
222734
|
6.5 |
MEDIUM
Network
|
microsoft
|
office exchange_server outlook lync skype_for_business mail_and_calendar office_365_proplus skype_for_business_basic lync_basic
|
An information disclosure vulnerability exists when Exchange allows creation of entities with Display Names having non-printable characters. An authenticated attacker could exploit this vulnerability…
|
CWE-200
Information Exposure
|
CVE-2019-1084
|
2024-11-21 13:35 |
2019-07-16 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
222735
|
7.5 |
HIGH
Network
|
microsoft
|
.net_framework
|
A denial of service vulnerability exists when Microsoft Common Object Runtime Library improperly handles web requests, aka '.NET Denial of Service Vulnerability'.
|
CWE-19
Data Processing Errors
|
CVE-2019-1083
|
2024-11-21 13:35 |
2019-07-16 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
222736
|
7.8 |
HIGH
Local
|
microsoft
|
windows_server_2008 windows_server_2012 windows_10 windows_8.1 windows_server_2016 windows_7 windows_rt_8.1
|
An elevation of privilege vulnerability exists in Microsoft Windows where a certain DLL, with Local Service privilege, is vulnerable to race planting a customized DLL.An attacker who successfully exp…
|
NVD-CWE-noinfo
|
CVE-2019-1082
|
2024-11-21 13:35 |
2019-07-16 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
222737
|
6.5 |
MEDIUM
Network
|
microsoft
|
visual_studio
|
An information disclosure vulnerability exists when Visual Studio improperly parses XML input in certain settings files, aka 'Visual Studio Information Disclosure Vulnerability'.
|
CWE-20
Improper Input Validation
|
CVE-2019-1079
|
2024-11-21 13:35 |
2019-07-16 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
222738
|
5.0 |
MEDIUM
Local
|
microsoft
|
visual_studio_2017 visual_studio_2019
|
An elevation of privilege vulnerability exists when the Visual Studio updater service improperly handles file permissions, aka 'Visual Studio Elevation of Privilege Vulnerability'.
|
NVD-CWE-noinfo
|
CVE-2019-1077
|
2024-11-21 13:35 |
2019-07-16 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
222739
|
5.4 |
MEDIUM
Network
|
microsoft
|
team_foundation_server azure_devops_server
|
A Cross-site Scripting (XSS) vulnerability exists when Team Foundation Server does not properly sanitize user provided input, aka 'Team Foundation Server Cross-site Scripting Vulnerability'.
|
CWE-79
Cross-site Scripting
|
CVE-2019-1076
|
2024-11-21 13:35 |
2019-07-16 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
222740
|
6.1 |
MEDIUM
Network
|
microsoft
|
asp.net_core
|
A spoofing vulnerability exists in ASP.NET Core that could lead to an open redirect, aka 'ASP.NET Core Spoofing Vulnerability'.
|
CWE-601
Open Redirect
|
CVE-2019-1075
|
2024-11-21 13:35 |
2019-07-16 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|