|
208591
|
5.4 |
MEDIUM
Network
|
microsoft
|
sharepoint_foundation
|
<p>A cross-site-scripting (XSS) vulnerability exists when Microsoft SharePoint Server does not properly sanitize a specially crafted web request to an affected SharePoint server. An authenticated att…
|
CWE-79
Cross-site Scripting
|
CVE-2020-1575
|
2024-11-21 14:10 |
2020-09-12 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
208592
|
7.8 |
HIGH
Local
|
microsoft
|
windows_10 windows_7 windows_server_2012 windows_server_2016 windows_rt_8.1 windows_server_2008 windows_8.1 windows_server_2019
|
<p>An elevation of privilege vulnerability exists when the Windows Storage Services improperly handle file operations. An attacker who successfully exploited this vulnerability could gain elevated pr…
|
NVD-CWE-noinfo
|
CVE-2020-1559
|
2024-11-21 14:10 |
2020-09-12 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
208593
|
8.9 |
HIGH
Network
|
microsoft
|
sharepoint_server
|
<p>A tampering vulnerability exists when Microsoft SharePoint Server fails to properly handle profile data. An attacker who successfully exploited this vulnerability could modify a targeted user's pr…
|
NVD-CWE-noinfo
|
CVE-2020-1523
|
2024-11-21 14:10 |
2020-09-12 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
208594
|
5.4 |
MEDIUM
Network
|
microsoft
|
sharepoint_foundation sharepoint_enterprise_server sharepoint_server
|
<p>A cross-site-scripting (XSS) vulnerability exists when Microsoft SharePoint Server does not properly sanitize a specially crafted web request to an affected SharePoint server. An authenticated att…
|
CWE-79
Cross-site Scripting
|
CVE-2020-1514
|
2024-11-21 14:10 |
2020-09-12 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
208595
|
7.6 |
HIGH
Network
|
microsoft
|
windows_server_2008 windows_server_2012 windows_10 windows_8.1 windows_server_2016 windows_7 windows_rt_8.1 windows_server_2019
|
<p>A remote code execution vulnerability exists when Windows Media Audio Decoder improperly handles objects. An attacker who successfully exploited the vulnerability could take control of an affected…
|
NVD-CWE-noinfo
|
CVE-2020-1508
|
2024-11-21 14:10 |
2020-09-12 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
208596
|
7.9 |
HIGH
Local
|
microsoft
|
windows_server_2019 windows_10 windows_server_2016
|
<p>An elevation of privilege vulnerability exists in the way that Microsoft COM for Windows handles objects in memory. An attacker who successfully exploited the vulnerability could gain elevated pri…
|
NVD-CWE-noinfo
|
CVE-2020-1507
|
2024-11-21 14:10 |
2020-09-12 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
208597
|
6.1 |
MEDIUM
Local
|
microsoft
|
internet_explorer
|
<p>An elevation of privilege vulnerability exists in the way that the Wininit.dll handles objects in memory. An attacker who successfully exploited the vulnerability could execute code with elevated …
|
NVD-CWE-noinfo
|
CVE-2020-1506
|
2024-11-21 14:10 |
2020-09-12 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
208598
|
7.8 |
HIGH
Local
|
microsoft
|
windows_server_2008 windows_server_2012 windows_10 windows_8.1 windows_server_2016 windows_7 windows_rt_8.1 windows_server_2019
|
<p>An elevation of privilege vulnerability exists in the way that the Windows Function Discovery Service handles objects in memory. An attacker who successfully exploited the vulnerability could exec…
|
NVD-CWE-noinfo
|
CVE-2020-1491
|
2024-11-21 14:10 |
2020-09-12 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
208599
|
6.3 |
MEDIUM
Network
|
microsoft
|
sharepoint_foundation sharepoint_enterprise_server sharepoint_server
|
<p>A cross-site-scripting (XSS) vulnerability exists when Microsoft SharePoint Server does not properly sanitize a specially crafted web request to an affected SharePoint server. An authenticated att…
|
CWE-79
Cross-site Scripting
|
CVE-2020-1482
|
2024-11-21 14:10 |
2020-09-12 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
208600
|
7.3 |
HIGH
Local
|
microsoft
|
windows_10 windows_server_2016 windows_server_2019
|
<p>An elevation of privilege vulnerability exists when Microsoft Windows CloudExperienceHost fails to check COM objects. An attacker who successfully exploited the vulnerability could gain elevated p…
|
NVD-CWE-noinfo
|
CVE-2020-1471
|
2024-11-21 14:10 |
2020-09-12 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|