|
223021
|
7.0 |
HIGH
Local
|
microsoft
|
windows_10 windows_server_2016 windows_server_2019
|
An elevation of privilege vulnerability exists in the way that the PsmServiceExtHost.dll handles objects in memory. An attacker who successfully exploited the vulnerability could execute code with el…
|
NVD-CWE-noinfo
|
CVE-2019-1173
|
2024-11-21 13:36 |
2019-08-15 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
223022
|
4.3 |
MEDIUM
Network
|
microsoft
|
windows_server_2012 windows_10 windows_8.1 windows_server_2016 windows_rt_8.1 windows_server_2019
|
An information disclosure vulnerability exists in Azure Active Directory (AAD) Microsoft Account (MSA) during the login request session. An attacker who successfully exploited the vulnerability could…
|
CWE-200
Information Exposure
|
CVE-2019-1172
|
2024-11-21 13:36 |
2019-08-15 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
223023
|
5.6 |
MEDIUM
Local
|
microsoft
|
windows_10 windows_server_2016 windows_server_2019
|
An information disclosure vulnerability exists in SymCrypt during the OAEP decryption stage. An attacker who successfully exploited this vulnerability could obtain information to further compromise t…
|
CWE-200
Information Exposure
|
CVE-2019-1171
|
2024-11-21 13:36 |
2019-08-15 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
223024
|
7.9 |
HIGH
Local
|
microsoft
|
windows_server_2019 windows_10 windows_server_2016
|
An elevation of privilege vulnerability exists when reparse points are created by sandboxed processes allowing sandbox escape. An attacker who successfully exploited the vulnerability could use the s…
|
CWE-862
Missing Authorization
|
CVE-2019-1170
|
2024-11-21 13:36 |
2019-08-15 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
223025
|
7.8 |
HIGH
Local
|
microsoft
|
windows_server_2008 windows_7
|
An elevation of privilege vulnerability exists in Windows when the Windows kernel-mode driver fails to properly handle objects in memory. An attacker who successfully exploited this vulnerability cou…
|
NVD-CWE-noinfo
|
CVE-2019-1169
|
2024-11-21 13:36 |
2019-08-15 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
223026
|
7.8 |
HIGH
Local
|
microsoft
|
windows_server_2008 windows_server_2012 windows_10 windows_8.1 windows_server_2016 windows_7 windows_rt_8.1 windows_server_2019
|
An elevation of privilege exists in the p2pimsvc service where an attacker who successfully exploited the vulnerability could run arbitrary code with elevated privileges.
To exploit this vulnerabilit…
|
NVD-CWE-noinfo
|
CVE-2019-1168
|
2024-11-21 13:36 |
2019-08-15 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
223027
|
7.8 |
HIGH
Local
|
microsoft
|
windows_server_2008 windows_server_2012 windows_10 windows_8.1 windows_server_2016 windows_7 windows_server_2019 windows_rt_8.1
|
An elevation of privilege vulnerability exists when the Windows kernel fails to properly handle objects in memory. An attacker who successfully exploited this vulnerability could run arbitrary code i…
|
NVD-CWE-noinfo
|
CVE-2019-1164
|
2024-11-21 13:36 |
2019-08-15 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
223028
|
5.5 |
MEDIUM
Local
|
microsoft
|
windows_10 windows_server_2016 windows_server_2019
|
A security feature bypass exists when Windows incorrectly validates CAB file signatures. An attacker who successfully exploited this vulnerability could inject code into a CAB file without invalidati…
|
CWE-354
Improper Validation of Integrity Check Value
|
CVE-2019-1163
|
2024-11-21 13:36 |
2019-08-15 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
223029
|
7.8 |
HIGH
Local
|
microsoft
|
windows_server_2008 windows_server_2012 windows_10 windows_8.1 windows_server_2016 windows_7 windows_rt_8.1 windows_server_2019
|
An elevation of privilege vulnerability exists when Windows improperly handles calls to Advanced Local Procedure Call (ALPC).
An attacker who successfully exploited this vulnerability could run arbit…
|
NVD-CWE-noinfo
|
CVE-2019-1162
|
2024-11-21 13:36 |
2019-08-15 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
223030
|
7.1 |
HIGH
Local
|
microsoft
|
windows_defender forefront_endpoint_protection_2010 security_essentials system_center_endpoint_protection
|
An elevation of privilege vulnerability exists when the MpSigStub.exe for Defender allows file deletion in arbitrary locations.
To exploit the vulnerability, an attacker would first have to log on to…
|
NVD-CWE-noinfo
|
CVE-2019-1161
|
2024-11-21 13:36 |
2019-08-15 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|