Page 69 of 1825 results (0.004 seconds)

CVSS: 7.8EPSS: 0%CPEs: 20EXPL: 0

12 Mar 2020 — An elevation of privilege vulnerability exists when the Windows Language Pack Installer improperly handles file operations, aka 'Windows Language Pack Installer Elevation of Privilege Vulnerability'. Existe una vulnerabilidad de elevación de privilegios cuando el Windows Language Pack Installer maneja inapropiadamente las operaciones de archivo, también se conoce como "Windows Language Pack Installer Elevation of Privilege Vulnerability". • https://portal.msrc.microsoft.com/en-US/security-guidance/advisory/CVE-2020-0822 •

CVSS: 7.6EPSS: 3%CPEs: 11EXPL: 0

12 Mar 2020 — A remote code execution vulnerability exists in the way that the ChakraCore scripting engine handles objects in memory, aka 'Scripting Engine Memory Corruption Vulnerability'. This CVE ID is unique from CVE-2020-0768, CVE-2020-0825, CVE-2020-0826, CVE-2020-0827, CVE-2020-0828, CVE-2020-0829, CVE-2020-0830, CVE-2020-0831, CVE-2020-0832, CVE-2020-0833, CVE-2020-0848. Existe una vulnerabilidad de ejecución de código remota en la manera en que el motor de scripting ChakraCore maneja objetos en memoria, también ... • https://portal.msrc.microsoft.com/en-US/security-guidance/advisory/CVE-2020-0823 • CWE-787: Out-of-bounds Write •

CVSS: 9.3EPSS: 20%CPEs: 9EXPL: 0

12 Mar 2020 — A remote code execution vulnerability exists when Microsoft Edge improperly accesses objects in memory, aka 'Microsoft Edge Memory Corruption Vulnerability'. Existe una vulnerabilidad de ejecución de código remota cuando Microsoft Edge accede inapropiadamente a objetos en memoria, también se conoce como "Microsoft Edge Memory Corruption Vulnerability". • https://portal.msrc.microsoft.com/en-US/security-guidance/advisory/CVE-2020-0816 • CWE-787: Out-of-bounds Write •

CVSS: 7.8EPSS: 0%CPEs: 16EXPL: 0

12 Mar 2020 — An elevation of privilege vulnerability exists when the Windows Device Setup Manager improperly handles file operations, aka 'Windows Device Setup Manager Elevation of Privilege Vulnerability'. Existe una vulnerabilidad de elevación de privilegios cuando el Windows Device Setup Manager maneja inapropiadamente las operaciones de archivo, también se conoce como "Windows Device Setup Manager Elevation of Privilege Vulnerability". • https://portal.msrc.microsoft.com/en-US/security-guidance/advisory/CVE-2020-0819 •

CVSS: 5.5EPSS: 1%CPEs: 12EXPL: 0

12 Mar 2020 — An information disclosure vulnerability exists when Media Foundation improperly handles objects in memory, aka 'Media Foundation Information Disclosure Vulnerability'. Existe una vulnerabilidad de divulgación de información cuando Media Foundation maneja inapropiadamente objetos en memoria, también se conoce como "Media Foundation Information Disclosure Vulnerability". • https://portal.msrc.microsoft.com/en-US/security-guidance/advisory/CVE-2020-0820 •

CVSS: 7.8EPSS: 0%CPEs: 20EXPL: 0

12 Mar 2020 — An elevation of privilege vulnerability exists in Windows Installer because of the way Windows Installer handles certain filesystem operations.To exploit the vulnerability, an attacker would require unprivileged execution on the victim system, aka 'Windows Installer Elevation of Privilege Vulnerability'. This CVE ID is unique from CVE-2020-0779, CVE-2020-0798, CVE-2020-0842, CVE-2020-0843. Existe una vulnerabilidad de elevación de privilegios en Windows Installer debido a la manera en que Windows Installer ... • https://portal.msrc.microsoft.com/en-US/security-guidance/advisory/CVE-2020-0814 •

CVSS: 7.5EPSS: 9%CPEs: 8EXPL: 0

12 Mar 2020 — An information disclosure vulnerability exists when Chakra improperly discloses the contents of its memory, which could provide an attacker with information to further compromise the user’s computer or data.To exploit the vulnerability, an attacker must know the memory address of where the object was created.The update addresses the vulnerability by changing the way certain functions handle objects in memory., aka 'Scripting Engine Information Disclosure Vulnerability'. Existe una vulnerabilidad de divulg... • https://portal.msrc.microsoft.com/en-US/security-guidance/advisory/CVE-2020-0813 •

CVSS: 7.8EPSS: 0%CPEs: 15EXPL: 0

12 Mar 2020 — An elevation of privilege vulnerability exists when the Diagnostics Hub Standard Collector or the Visual Studio Standard Collector allows file creation in arbitrary locations.To exploit the vulnerability, an attacker would first have to log on to the system.An attacker could then run a specially crafted application that could exploit the vulnerability and take control of an affected system.The update addresses the vulnerability by not permitting Diagnostics Hub Standard Collector or the Visual Studio Standa... • https://portal.msrc.microsoft.com/en-US/security-guidance/advisory/CVE-2020-0810 •

CVSS: 7.6EPSS: 3%CPEs: 8EXPL: 0

12 Mar 2020 — A remote code execution vulnerability exists in the way that the Chakra scripting engine handles objects in memory in Microsoft Edge (HTML-based)L, aka 'Chakra Scripting Engine Memory Corruption Vulnerability'. This CVE ID is unique from CVE-2020-0812. Existe una vulnerabilidad de ejecución de código remota en la manera en que el motor de scripting Chakra maneja objetos en memoria en Microsoft Edge (basado en HTML)L, también se conoce como "Chakra Scripting Engine Memory Corruption Vulnerability". Este ID d... • https://portal.msrc.microsoft.com/en-US/security-guidance/advisory/CVE-2020-0811 • CWE-787: Out-of-bounds Write •

CVSS: 7.8EPSS: 0%CPEs: 9EXPL: 0

12 Mar 2020 — An elevation of privilege vulnerability exists in the way the Provisioning Runtime validates certain file operations, aka 'Provisioning Runtime Elevation of Privilege Vulnerability'. Existe una vulnerabilidad de elevación de privilegios en la manera en que el Provisioning Runtime comprueba determinadas operaciones de archivo, también se conoce como "Provisioning Runtime Elevation of Privilege Vulnerability". • https://portal.msrc.microsoft.com/en-US/security-guidance/advisory/CVE-2020-0808 • CWE-20: Improper Input Validation •