|
208941
|
5.5 |
MEDIUM
Local
|
microsoft
|
windows_server_2019 windows_10 windows_server_2016
|
An information disclosure vulnerability exists when Windows Mobile Device Management (MDM) Diagnostics improperly handles junctions, aka 'Windows Mobile Device Management Diagnostics Information Disc…
|
NVD-CWE-noinfo
|
CVE-2020-1330
|
2024-11-21 14:10 |
2020-07-15 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
208942
|
5.4 |
MEDIUM
Network
|
microsoft
|
azure_devops_server
|
A Cross-site Scripting (XSS) vulnerability exists when Azure DevOps Server does not properly sanitize user provided input, aka 'Azure DevOps Server Cross-site Scripting Vulnerability'.
|
CWE-79
Cross-site Scripting
|
CVE-2020-1326
|
2024-11-21 14:10 |
2020-07-15 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
208943
|
4.9 |
MEDIUM
Network
|
microsoft
|
windows_server_2008 windows_server_2012 windows_10 windows_8.1 windows_server_2016 windows_7 windows_rt_8.1 windows_server_2019
|
This security update corrects a denial of service in the Local Security Authority Subsystem Service (LSASS) caused when an authenticated attacker sends a specially crafted authentication request, aka…
|
NVD-CWE-noinfo
|
CVE-2020-1267
|
2024-11-21 14:10 |
2020-07-15 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
208944
|
7.8 |
HIGH
Local
|
microsoft
|
windows_server_2012 windows_10 windows_8.1 windows_server_2016 windows_rt_8.1 windows_server_2019
|
An elevation of privilege vulnerability exists when the Windows Runtime improperly handles objects in memory, aka 'Windows Runtime Elevation of Privilege Vulnerability'. This CVE ID is unique from CV…
|
NVD-CWE-noinfo
|
CVE-2020-1249
|
2024-11-21 14:10 |
2020-07-15 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
208945
|
8.8 |
HIGH
Network
|
microsoft
|
365_apps
|
A remote code execution vulnerability exists in Microsoft Excel software when the software fails to properly handle objects in memory, aka 'Microsoft Excel Remote Code Execution Vulnerability'.
|
NVD-CWE-noinfo
|
CVE-2020-1240
|
2024-11-21 14:10 |
2020-07-15 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
208946
|
7.8 |
HIGH
Local
|
microsoft
|
windows_10 windows_server_2019 windows_server_2016
|
An elevation of privilege vulnerability exists when the Windows AppX Deployment Extensions improperly performs privilege management, resulting in access to system files.To exploit this vulnerability,…
|
CWE-269
Improper Privilege Management
|
CVE-2020-1431
|
2024-11-21 14:10 |
2020-07-15 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
208947
|
6.5 |
MEDIUM
Network
|
microsoft
|
windows_server_2008 windows_server_2012 windows_10 windows_8.1 windows_server_2016 windows_7 windows_rt_8.1 windows_server_2019
|
An information disclosure vulnerability exists when the Windows GDI component improperly discloses the contents of its memory, aka 'Windows GDI Information Disclosure Vulnerability'.
|
NVD-CWE-noinfo
|
CVE-2020-1348
|
2024-11-21 14:10 |
2020-06-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
208948
|
5.9 |
MEDIUM
Network
|
microsoft
|
visual_studio_live_share
|
An information disclosure vulnerability exists in Visual Studio Code Live Share Extension when it exposes tokens in plain text, aka 'Visual Studio Code Live Share Information Disclosure Vulnerability…
|
CWE-319
Cleartext Transmission of Sensitive Information
|
CVE-2020-1343
|
2024-11-21 14:10 |
2020-06-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
208949
|
5.4 |
MEDIUM
Network
|
microsoft
|
nugetgallery
|
A spoofing vulnerability exists when the NuGetGallery does not properly sanitize input on package metadata values, aka 'NuGetGallery Spoofing Vulnerability'.
|
CWE-79
Cross-site Scripting
|
CVE-2020-1340
|
2024-11-21 14:10 |
2020-06-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
208950
|
7.8 |
HIGH
Local
|
microsoft
|
windows_server_2012 windows_10 windows_8.1 windows_server_2016 windows_rt_8.1 windows_server_2019
|
An elevation of privilege vulnerability exists when the Windows Runtime improperly handles objects in memory, aka 'Windows Runtime Elevation of Privilege Vulnerability'. This CVE ID is unique from CV…
|
NVD-CWE-noinfo
|
CVE-2020-1334
|
2024-11-21 14:10 |
2020-06-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|