Vulnerabilities > Microsoft > Powershell Core > High

DATE CVE VULNERABILITY TITLE RISK
2020-05-21 CVE-2020-1108 Unspecified vulnerability in Microsoft products
A denial of service vulnerability exists when .NET Core or .NET Framework improperly handles web requests, aka '.NET Core & .NET Framework Denial of Service Vulnerability'.
network
low complexity
microsoft
7.5
2019-09-11 CVE-2019-1301 Unspecified vulnerability in Microsoft .Net Core and Powershell Core
A denial of service vulnerability exists when .NET Core improperly handles web requests, aka '.NET Core Denial of Service Vulnerability'.
network
low complexity
microsoft
7.5
2019-03-05 CVE-2019-0632 Unspecified vulnerability in Microsoft products
A security feature bypass vulnerability exists in Windows which could allow an attacker to bypass Device Guard, aka 'Windows Security Feature Bypass Vulnerability'.
local
low complexity
microsoft
7.8
2019-03-05 CVE-2019-0631 Unspecified vulnerability in Microsoft products
A security feature bypass vulnerability exists in Windows which could allow an attacker to bypass Device Guard, aka 'Windows Security Feature Bypass Vulnerability'.
local
low complexity
microsoft
7.8
2019-03-05 CVE-2019-0627 Unspecified vulnerability in Microsoft products
A security feature bypass vulnerability exists in Windows which could allow an attacker to bypass Device Guard, aka 'Windows Security Feature Bypass Vulnerability'.
local
low complexity
microsoft
7.8
2018-11-14 CVE-2018-8415 Code Injection vulnerability in Microsoft products
A tampering vulnerability exists in PowerShell that could allow an attacker to execute unlogged code, aka "Microsoft PowerShell Tampering Vulnerability." This affects Windows 7, PowerShell Core 6.1, Windows Server 2012 R2, Windows RT 8.1, PowerShell Core 6.0, Windows Server 2019, Windows Server 2012, Windows 8.1, Windows Server 2016, Windows Server 2008 R2, Windows 10, Windows 10 Servers.
local
low complexity
microsoft CWE-94
7.8
2018-11-14 CVE-2018-8256 Unspecified vulnerability in Microsoft products
A remote code execution vulnerability exists when PowerShell improperly handles specially crafted files, aka "Microsoft PowerShell Remote Code Execution Vulnerability." This affects Windows RT 8.1, PowerShell Core 6.0, Microsoft.PowerShell.Archive 1.2.2.0, Windows Server 2016, Windows Server 2012, Windows Server 2008 R2, Windows Server 2019, Windows 7, Windows Server 2012 R2, PowerShell Core 6.1, Windows 10 Servers, Windows 10, Windows 8.1.
network
low complexity
microsoft
8.8
2018-10-10 CVE-2018-8292 Information Exposure vulnerability in Microsoft Asp.Net Core and Powershell Core
An information disclosure vulnerability exists in .NET Core when authentication information is inadvertently exposed in a redirect, aka ".NET Core Information Disclosure Vulnerability." This affects .NET Core 2.1, .NET Core 1.0, .NET Core 1.1, PowerShell Core 6.0.
network
low complexity
microsoft CWE-200
7.5
2018-03-14 CVE-2018-0875 Unspecified vulnerability in Microsoft Asp.Net Core and Powershell Core
.NET Core 1.0, .NET Core 1.1, NET Core 2.0 and PowerShell Core 6.0.0 allow a denial of Service vulnerability due to how specially crafted requests are handled, aka ".NET Core Denial of Service Vulnerability".
network
low complexity
microsoft
7.5
2018-01-10 CVE-2018-0786 Improper Certificate Validation vulnerability in Microsoft .Net Core, .Net Framework and Powershell Core
Microsoft .NET Framework 2.0 SP2, 3.0 SP2, 3.5, 3.5.1, 4.5.2, 4.6, 4.6.1, 4.6.2, 4.7, 4.7.1, .NET Core 1.0 and 2.0, and PowerShell Core 6.0.0 allow a security feature bypass vulnerability due to the way certificates are validated, aka ".NET Security Feature Bypass Vulnerability."
network
low complexity
microsoft CWE-295
7.5