VendorsMicrosoftwindows_101803
Vulnerabilities

Microsoft Windows 10 1803

Ranked by severity, then by exploit likelihood. Click a CVE ID for its full record.

1790CVEs
CVE-2019-1470
An information disclosure vulnerability exists when Windows Hyper-V on a host operating system fails to properly validate input from an authenticated user on a guest operating system, aka 'Windows Hyper-V Information Disclosure Vulnerability'.
Published 2019-12-10 · Modified
6.0EPSS 0.068
CVE-2020-0617
A denial of service vulnerability exists when Microsoft Hyper-V Virtual PCI on a host server fails to properly validate input from a privileged user on a guest operating system, aka 'Hyper-V Denial of Service Vulnerability'.
Published 2020-01-14 · Modified
6.0EPSS 0.013
CVE-2019-1166
A tampering vulnerability exists in Microsoft Windows when a man-in-the-middle attacker is able to successfully bypass the NTLM MIC (Message Integrity Check) protection, aka 'Windows NTLM Tampering Vulnerability'.
Published 2019-10-10 · Modified
5.9EPSS 0.681
CVE-2019-1040
Windows NTLM Tampering Vulnerability
Published 2019-06-12 · Modified
5.9EPSS 0.480
CVE-2019-0657
A vulnerability exists in certain .Net Framework API's and Visual Studio in the way they parse URL's, aka '.NET Framework and Visual Studio Spoofing Vulnerability'.
Published 2019-03-06 · Modified
5.9EPSS 0.045
CVE-2019-1318
A spoofing vulnerability exists when Transport Layer Security (TLS) accesses non- Extended Master Secret (EMS) sessions, aka 'Microsoft Windows Transport Layer Security Spoofing Vulnerability'.
Published 2019-10-10 · Modified
5.9EPSS 0.035
CVE-2019-0641
A security feature bypass vulnerability exists in Microsoft Edge handles whitelisting, aka 'Microsoft Edge Security Feature Bypass Vulnerability'.
Published 2019-03-06 · Modified
5.9EPSS 0.034
CVE-2019-0714
Windows Hyper-V Denial of Service Vulnerability
Published 2019-08-14 · Modified
5.8EPSS 0.050
CVE-2019-0715
Windows Hyper-V Denial of Service Vulnerability
Published 2019-08-14 · Modified
5.8EPSS 0.050
CVE-2019-0718
Windows Hyper-V Denial of Service Vulnerability
Published 2019-08-14 · Modified
5.8EPSS 0.050
CVE-2019-0723
Windows Hyper-V Denial of Service Vulnerability
Published 2019-08-14 · Modified
5.8EPSS 0.050
CVE-2018-8567
An elevation of privilege vulnerability exists when Microsoft Edge does not properly enforce cross-domain policies, which could allow an attacker to access information from one domain and inject it into another domain, aka "Microsoft Edge Elevation of Privilege Vulnerability." This affects Microsoft Edge.
Published 2018-11-14 · Modified
5.8EPSS 0.031
CVE-2021-1708
Windows GDI+ Information Disclosure Vulnerability
Published 2021-01-12 · Modified
5.7EPSS 0.034
CVE-2019-1125
Windows Kernel Information Disclosure Vulnerability
Published 2019-09-03 · Modified
5.61 PoCEPSS 0.045
CVE-2019-1171
SymCrypt Information Disclosure Vulnerability
Published 2019-08-14 · Modified
5.6EPSS 0.014
CVE-2018-8239
An information disclosure vulnerability exists when the Windows GDI component improperly discloses the contents of its memory, aka "Windows GDI Information Disclosure Vulnerability." This affects Windows Server 2016, Windows 10, Windows 10 Servers.
Published 2018-06-14 · Modified
5.5EPSS 0.581
CVE-2020-1599
Windows Spoofing Vulnerability
Published 2020-11-11 · Modified
5.5EPSS 0.191
CVE-2018-8472
An information disclosure vulnerability exists in the way that the Windows Graphics Device Interface (GDI) handles objects in memory, allowing an attacker to retrieve information from a targeted system, aka "Windows GDI Information Disclosure Vulnerability." This affects Windows 7, Windows Server 2012 R2, Windows RT 8.1, Windows Server 2008, Windows Server 2019, Windows Server 2012, Windows 8.1, Windows Server 2016, Windows Server 2008 R2, Windows 10, Windows 10 Servers.
Published 2018-10-10 · Modified
5.5EPSS 0.189
CVE-2019-0948
Windows Event Viewer Information Disclosure Vulnerability
Published 2019-06-12 · Modified
5.51 PoCEPSS 0.127
CVE-2019-1374
An information disclosure vulnerability exists in the way Windows Error Reporting (WER) handles objects in memory, aka 'Windows Error Reporting Information Disclosure Vulnerability'.
Published 2019-11-12 · Modified
5.5EPSS 0.071
CVE-2020-0937
An information disclosure vulnerability exists when Media Foundation improperly handles objects in memory, aka 'Media Foundation Information Disclosure Vulnerability'. This CVE ID is unique from CVE-2020-0939, CVE-2020-0945, CVE-2020-0946, CVE-2020-0947.
Published 2020-04-15 · Modified
5.5EPSS 0.066
CVE-2020-0945
An information disclosure vulnerability exists when Media Foundation improperly handles objects in memory, aka 'Media Foundation Information Disclosure Vulnerability'. This CVE ID is unique from CVE-2020-0937, CVE-2020-0939, CVE-2020-0946, CVE-2020-0947.
Published 2020-04-15 · Modified
5.5EPSS 0.066
CVE-2020-0946
An information disclosure vulnerability exists when Media Foundation improperly handles objects in memory, aka 'Media Foundation Information Disclosure Vulnerability'. This CVE ID is unique from CVE-2020-0937, CVE-2020-0939, CVE-2020-0945, CVE-2020-0947.
Published 2020-04-15 · Modified
5.5EPSS 0.066
CVE-2020-0607
An information disclosure vulnerability exists in the way that Microsoft Graphics Components handle objects in memory, aka 'Microsoft Graphics Components Information Disclosure Vulnerability'.
Published 2020-01-14 · Modified
5.5EPSS 0.059
CVE-2020-0746
An information disclosure vulnerability exists in the way that Microsoft Graphics Components handle objects in memory, aka 'Microsoft Graphics Components Information Disclosure Vulnerability'.
Published 2020-02-11 · Modified
5.5EPSS 0.051
CVE-2019-1096
An information disclosure vulnerability exists when the win32k component improperly provides kernel information, aka 'Win32k Information Disclosure Vulnerability'.
Published 2019-07-15 · Modified
5.5EPSS 0.048
CVE-2020-1510
Win32k Information Disclosure Vulnerability
Published 2020-08-17 · Modified
5.5EPSS 0.048
CVE-2020-0875
Microsoft splwow64 Information Disclosure Vulnerability
Published 2020-09-11 · Modified
5.5EPSS 0.044
CVE-2018-8506
An Information Disclosure vulnerability exists in the way that Microsoft Windows Codecs Library handles objects in memory, aka "Microsoft Windows Codecs Library Information Disclosure Vulnerability." This affects Windows 10 Servers, Windows 10, Windows Server 2019.
Published 2018-10-10 · Modified
5.5EPSS 0.044
CVE-2021-1696
Windows Graphics Component Information Disclosure Vulnerability
Published 2021-01-12 · Modified
5.5EPSS 0.044
CVE-2019-1046
Windows GDI Information Disclosure Vulnerability
Published 2019-06-12 · Modified
5.5EPSS 0.043
CVE-2019-0796
An elevation of privilege vulnerability exists when Windows improperly handles calls to the LUAFV driver (luafv.sys), aka 'Windows Elevation of Privilege Vulnerability'. This CVE ID is unique from CVE-2019-0730, CVE-2019-0731, CVE-2019-0805, CVE-2019-0836, CVE-2019-0841.
Published 2019-04-09 · Modified
5.51 PoCEPSS 0.042
CVE-2020-0728
An information vulnerability exists when Windows Modules Installer Service improperly discloses file information, aka 'Windows Modules Installer Service Information Disclosure Vulnerability'.
Published 2020-02-11 · Modified
5.5EPSS 0.037
CVE-2020-16937
.NET Framework Information Disclosure Vulnerability
Published 2020-10-16 · Modified
5.5EPSS 0.033
CVE-2018-8454
An information disclosure vulnerability exists when Windows Audio Service fails to properly handle objects in memory, aka "Windows Audio Service Information Disclosure Vulnerability." This affects Windows 10 Servers, Windows 10, Windows Server 2019.
Published 2018-11-14 · Modified
5.5EPSS 0.033
CVE-2019-1187
XmlLite Runtime Denial of Service Vulnerability
Published 2019-08-14 · Modified
5.5EPSS 0.031
CVE-2019-1344
An information disclosure vulnerability exists in the way that the Windows Code Integrity Module handles objects in memory, aka 'Windows Code Integrity Module Information Disclosure Vulnerability'.
Published 2019-10-10 · Modified
5.51 PoCEPSS 0.031
CVE-2019-1345
An information disclosure vulnerability exists when the Windows kernel improperly handles objects in memory, aka 'Windows Kernel Information Disclosure Vulnerability'. This CVE ID is unique from CVE-2019-1334.
Published 2019-10-10 · Modified
5.51 PoCEPSS 0.030
CVE-2021-1656
TPM Device Driver Information Disclosure Vulnerability
Published 2021-01-12 · Modified
5.5EPSS 0.030
CVE-2018-8127
An information disclosure vulnerability exists when the Windows kernel improperly handles objects in memory, aka "Windows Kernel Information Disclosure Vulnerability." This affects Windows 7, Windows Server 2012 R2, Windows RT 8.1, Windows Server 2012, Windows 8.1, Windows Server 2016, Windows Server 2008 R2, Windows 10, Windows 10 Servers. This CVE ID is unique from CVE-2018-8141.
Published 2018-05-09 · Modified
5.5EPSS 0.030
← Prev38 / 45Next →