Vulnerabilities > Microsoft > Critical

DATE CVE VULNERABILITY TITLE RISK
2019-08-14 CVE-2019-1182 Unspecified vulnerability in Microsoft products
A remote code execution vulnerability exists in Remote Desktop Services – formerly known as Terminal Services – when an unauthenticated attacker connects to the target system using RDP and sends specially crafted requests.
network
low complexity
microsoft
critical
9.8
2019-08-14 CVE-2019-1181 Unspecified vulnerability in Microsoft products
A remote code execution vulnerability exists in Remote Desktop Services – formerly known as Terminal Services – when an unauthenticated attacker connects to the target system using RDP and sends specially crafted requests.
network
low complexity
microsoft
critical
9.8
2019-08-14 CVE-2019-0736 Out-of-bounds Write vulnerability in Microsoft products
A memory corruption vulnerability exists in the Windows DHCP client when an attacker sends specially crafted DHCP responses to a client.
network
low complexity
microsoft CWE-787
critical
9.8
2019-08-06 CVE-2019-5685 Out-of-bounds Write vulnerability in Nvidia GPU Driver
NVIDIA Windows GPU Display Driver (all versions) contains a vulnerability in DirectX drivers, in which a specially crafted shader can cause an out of bounds access to a shader local temporary array, which may lead to denial of service or code execution.
network
low complexity
nvidia microsoft CWE-787
critical
10.0
2019-08-06 CVE-2019-5684 Out-of-bounds Write vulnerability in Nvidia GPU Driver
NVIDIA Windows GPU Display Driver (all versions) contains a vulnerability in DirectX drivers, in which a specially crafted shader can cause an out of bounds access of an input texture array, which may lead to denial of service or code execution.
network
low complexity
nvidia microsoft CWE-787
critical
10.0
2019-07-26 CVE-2019-13382 Link Following vulnerability in Techsmith Snagit 2019.1.2
UploaderService in SnagIT 2019.1.2 allows elevation of privilege by placing an invalid presentation file in %PROGRAMDATA%\TechSmith\TechSmith Recorder\QueuedPresentations and then creating a symbolic link in %PROGRAMDATA%\Techsmith\TechSmith Recorder\InvalidPresentations that points to an arbitrary folder with an arbitrary file name.
network
techsmith microsoft CWE-59
critical
9.3
2019-07-15 CVE-2019-1128 Unspecified vulnerability in Microsoft products
A remote code execution vulnerability exists in the way that DirectWrite handles objects in memory, aka 'DirectWrite Remote Code Execution Vulnerability'.
network
microsoft
critical
9.3
2019-07-15 CVE-2019-1127 Unspecified vulnerability in Microsoft products
A remote code execution vulnerability exists in the way that DirectWrite handles objects in memory, aka 'DirectWrite Remote Code Execution Vulnerability'.
network
microsoft
critical
9.3
2019-07-15 CVE-2019-1124 Unspecified vulnerability in Microsoft products
A remote code execution vulnerability exists in the way that DirectWrite handles objects in memory, aka 'DirectWrite Remote Code Execution Vulnerability'.
network
microsoft
critical
9.3
2019-07-15 CVE-2019-1123 Unspecified vulnerability in Microsoft products
A remote code execution vulnerability exists in the way that DirectWrite handles objects in memory, aka 'DirectWrite Remote Code Execution Vulnerability'.
network
microsoft
critical
9.3