Page 41 of 1626 results (0.017 seconds)

CVSS: 7.8EPSS: 0%CPEs: 21EXPL: 0

17 Aug 2020 — An elevation of privilege vulnerability exists when the Windows UPnP Device Host improperly handles memory. To exploit this vulnerability, an attacker would first have to gain execution on the victim system. An attacker could then run a specially crafted application to elevate privileges. The security update addresses the vulnerability by correcting how the Windows UPnP Device Host handles memory. Se presenta una vulnerabilidad de elevación de privilegios cuando el Windows UPnP Device Host maneja inapropiad... • https://portal.msrc.microsoft.com/en-US/security-guidance/advisory/CVE-2020-1538 •

CVSS: 7.8EPSS: 0%CPEs: 19EXPL: 0

17 Aug 2020 — An elevation of privilege vulnerability exists when the Windows Backup Service improperly handles file operations. To exploit this vulnerability, an attacker would first have to gain execution on the victim system. An attacker could then run a specially crafted application to elevate privileges. The security update addresses the vulnerability by correcting how the Windows Backup Service handles file operations. Se presenta una vulnerabilidad de elevación de privilegios cuando el Windows Backup Service manej... • https://portal.msrc.microsoft.com/en-US/security-guidance/advisory/CVE-2020-1534 •

CVSS: 7.8EPSS: 0%CPEs: 15EXPL: 0

17 Aug 2020 — An elevation of privilege vulnerability exists in the way that the Windows WalletService handles objects in memory. An attacker who successfully exploited the vulnerability could execute code with elevated permissions. To exploit the vulnerability, a locally authenticated attacker could run a specially crafted application. The security update addresses the vulnerability by ensuring the Windows WalletService properly handles objects in memory. Se presenta una vulnerabilidad de elevación de privilegios en la ... • https://portal.msrc.microsoft.com/en-US/security-guidance/advisory/CVE-2020-1533 •

CVSS: 7.8EPSS: 0%CPEs: 21EXPL: 0

17 Aug 2020 — An elevation of privilege vulnerability exists when the Windows Accounts Control improperly handles memory. To exploit this vulnerability, an attacker would first have to gain execution on the victim system. An attacker could then run a specially crafted application to elevate privileges. The security update addresses the vulnerability by correcting how the Windows Accounts Control handles memory. Se presenta una vulnerabilidad de elevación de privilegios cuando el Windows Accounts Control maneja inapropiad... • https://portal.msrc.microsoft.com/en-US/security-guidance/advisory/CVE-2020-1531 •

CVSS: 7.8EPSS: 0%CPEs: 21EXPL: 0

17 Aug 2020 — An elevation of privilege vulnerability exists when Windows Remote Access improperly handles memory. To exploit this vulnerability, an attacker would first have to gain execution on the victim system. An attacker could then run a specially crafted application to elevate privileges. The security update addresses the vulnerability by correcting how Windows Remote Access handles memory. Se presenta una vulnerabilidad de elevación de privilegios cuando el Windows Remote Access maneja inapropiadamente la memoria... • https://portal.msrc.microsoft.com/en-US/security-guidance/advisory/CVE-2020-1530 •

CVSS: 7.8EPSS: 0%CPEs: 21EXPL: 0

17 Aug 2020 — An elevation of privilege vulnerability exists in the way that the Windows Graphics Device Interface (GDI) handles objects in memory. An attacker who successfully exploited this vulnerability could run arbitrary code in kernel mode. An attacker could then install programs; view, change, or delete data; or create new accounts with full user rights. To exploit this vulnerability, an attacker would first have to log on to the system. An attacker could then run a specially crafted application that could exploit... • https://portal.msrc.microsoft.com/en-US/security-guidance/advisory/CVE-2020-1529 •

CVSS: 7.8EPSS: 0%CPEs: 11EXPL: 0

17 Aug 2020 — An elevation of privilege vulnerability exists when the Windows Radio Manager API improperly handles memory. To exploit this vulnerability, an attacker would first have to gain execution on the victim system. An attacker could then run a specially crafted application to elevate privileges. The security update addresses the vulnerability by correcting how the Windows Radio Manager API handles memory. Se presenta una vulnerabilidad de elevación de privilegios cuando la Windows Radio Manager API maneja inaprop... • https://portal.msrc.microsoft.com/en-US/security-guidance/advisory/CVE-2020-1528 •

CVSS: 7.8EPSS: 0%CPEs: 13EXPL: 0

17 Aug 2020 — An elevation of privilege vulnerability exists when the Windows Custom Protocol Engine improperly handles memory. To exploit this vulnerability, an attacker would first have to gain execution on the victim system. An attacker could then run a specially crafted application to elevate privileges. The security update addresses the vulnerability by correcting how the Windows Custom Protocol Engine handles memory. Se presenta una vulnerabilidad de elevación de privilegios cuando el Windows Custom Protocol Engine... • https://portal.msrc.microsoft.com/en-US/security-guidance/advisory/CVE-2020-1527 •

CVSS: 8.8EPSS: 27%CPEs: 13EXPL: 0

17 Aug 2020 — A memory corruption vulnerability exists when Windows Media Foundation improperly handles objects in memory. An attacker who successfully exploited the vulnerability could install programs; view, change, or delete data; or create new accounts with full user rights. There are multiple ways an attacker could exploit the vulnerability, such as by convincing a user to open a specially crafted document, or by convincing a user to visit a malicious webpage. The security update addresses the vulnerability by corre... • https://portal.msrc.microsoft.com/en-US/security-guidance/advisory/CVE-2020-1525 • CWE-787: Out-of-bounds Write •

CVSS: 7.8EPSS: 0%CPEs: 16EXPL: 0

17 Aug 2020 — An elevation of privilege vulnerability exists when the Windows Network Connection Broker improperly handles memory. To exploit this vulnerability, an attacker would first have to gain execution on the victim system. An attacker could then run a specially crafted application to elevate privileges. The security update addresses the vulnerability by correcting how the Windows Network Connection Broker handles memory. Se presenta una vulnerabilidad de elevación de privilegios cuando el Windows Network Connecti... • https://portal.msrc.microsoft.com/en-US/security-guidance/advisory/CVE-2020-1526 •