Microsoft / Windows 10 Servers
201 CVEs
| CVE ID | Description | Severity | CVSS | Published |
|---|---|---|---|---|
| CVE-2018-8637 | An information disclosure vulnerability exists in Windows kernel that could allow an attacker to retrieve information that could lead to a Kernel Address Space… | MEDIUM | 5.5 | Dec 12, 2018 |
| CVE-2018-8634 | A remote code execution vulnerability exists in Windows where Microsoft text-to-speech fails to properly handle objects in the memory, aka "Microsoft Text-To-S… | HIGH | 8.8 | Dec 12, 2018 |
| CVE-2018-8626 | A remote code execution vulnerability exists in Windows Domain Name System (DNS) servers when they fail to properly handle requests, aka "Windows DNS Server He… | CRITICAL | 9.8 | Dec 12, 2018 |
| CVE-2018-8612 | A Denial Of Service vulnerability exists when Connected User Experiences and Telemetry Service fails to validate certain function values, aka "Connected User E… | MEDIUM | 5.5 | Dec 12, 2018 |
| CVE-2018-8611 KEV | An elevation of privilege vulnerability exists when the Windows kernel fails to properly handle objects in memory, aka "Windows Kernel Elevation of Privilege V… | HIGH | 7.8 | Dec 12, 2018 |
| CVE-2018-8599 | An elevation of privilege vulnerability exists when the Diagnostics Hub Standard Collector Service improperly impersonates certain file operations, aka "Diagno… | HIGH | 7.8 | Dec 12, 2018 |
| CVE-2018-8596 | An information disclosure vulnerability exists when the Windows GDI component improperly discloses the contents of its memory, aka "Windows GDI Information Dis… | MEDIUM | 6.5 | Dec 12, 2018 |
| CVE-2018-8595 | An information disclosure vulnerability exists when the Windows GDI component improperly discloses the contents of its memory, aka "Windows GDI Information Dis… | MEDIUM | 6.5 | Dec 12, 2018 |
| CVE-2018-8514 | An information disclosure vulnerability exists when Remote Procedure Call runtime improperly initializes objects in memory, aka "Remote Procedure Call runtime… | MEDIUM | 5.5 | Dec 12, 2018 |
| CVE-2018-8477 | An information disclosure vulnerability exists when the Windows kernel improperly handles objects in memory, aka "Windows Kernel Information Disclosure Vulnera… | MEDIUM | 5.5 | Dec 12, 2018 |
| CVE-2018-8584 | An elevation of privilege vulnerability exists when Windows improperly handles calls to Advanced Local Procedure Call (ALPC), aka "Windows ALPC Elevation of Pr… | HIGH | 7.8 | Nov 14, 2018 |
| CVE-2018-8566 | A security feature bypass vulnerability exists when Windows improperly suspends BitLocker Device Encryption, aka "BitLocker Security Feature Bypass Vulnerabili… | MEDIUM | 4.6 | Nov 14, 2018 |
| CVE-2018-8565 | An information disclosure vulnerability exists when the win32k component improperly provides kernel information, aka "Win32k Information Disclosure Vulnerabili… | MEDIUM | 5.5 | Nov 14, 2018 |
| CVE-2018-8562 | An elevation of privilege vulnerability exists in Windows when the Win32k component fails to properly handle objects in memory, aka "Win32k Elevation of Privil… | HIGH | 7.8 | Nov 14, 2018 |
| CVE-2018-8561 | An elevation of privilege vulnerability exists when DirectX improperly handles objects in memory, aka "DirectX Elevation of Privilege Vulnerability." This affe… | HIGH | 7.8 | Nov 14, 2018 |
| CVE-2018-8554 | An elevation of privilege vulnerability exists when DirectX improperly handles objects in memory, aka "DirectX Elevation of Privilege Vulnerability." This affe… | HIGH | 7.8 | Nov 14, 2018 |
| CVE-2018-8547 | A cross-site-scripting (XSS) vulnerability exists when an open source customization for Microsoft Active Directory Federation Services (AD FS) does not properl… | MEDIUM | 5.4 | Nov 14, 2018 |
| CVE-2018-8544 | A remote code execution vulnerability exists in the way that the VBScript engine handles objects in memory, aka "Windows VBScript Engine Remote Code Execution… | HIGH | 8.8 | Nov 14, 2018 |
| CVE-2018-8485 | An elevation of privilege vulnerability exists when DirectX improperly handles objects in memory, aka "DirectX Elevation of Privilege Vulnerability." This affe… | HIGH | 7.8 | Nov 14, 2018 |
| CVE-2018-8476 | A remote code execution vulnerability exists in the way that Windows Deployment Services TFTP Server handles objects in memory, aka "Windows Deployment Service… | CRITICAL | 9.8 | Nov 14, 2018 |
| CVE-2018-8454 | An information disclosure vulnerability exists when Windows Audio Service fails to properly handle objects in memory, aka "Windows Audio Service Information Di… | MEDIUM | 5.5 | Nov 14, 2018 |
| CVE-2018-8450 | A remote code execution vulnerability exists when Windows Search handles objects in memory, aka "Windows Search Remote Code Execution Vulnerability." This affe… | HIGH | 8.8 | Nov 14, 2018 |
| CVE-2018-8417 | A security feature bypass vulnerability exists in Microsoft JScript that could allow an attacker to bypass Device Guard, aka "Microsoft JScript Security Featur… | MEDIUM | 5.3 | Nov 14, 2018 |
| CVE-2018-8415 | A tampering vulnerability exists in PowerShell that could allow an attacker to execute unlogged code, aka "Microsoft PowerShell Tampering Vulnerability." This… | HIGH | 7.8 | Nov 14, 2018 |
| CVE-2018-8408 | An information disclosure vulnerability exists when the Windows kernel improperly initializes objects in memory, aka "Windows Kernel Information Disclosure Vul… | MEDIUM | 5.5 | Nov 14, 2018 |
Showing 26 to 50 of 201 CVEs