Vulnerabilities > Microsoft > High

DATE CVE VULNERABILITY TITLE RISK
2019-04-09 CVE-2019-0825 Unspecified vulnerability in Microsoft Office and Office 365 Proplus
A remote code execution vulnerability exists when the Microsoft Office Access Connectivity Engine improperly handles objects in memory, aka 'Microsoft Office Access Connectivity Engine Remote Code Execution Vulnerability'.
local
low complexity
microsoft
7.8
2019-04-09 CVE-2019-0824 Unspecified vulnerability in Microsoft Office and Office 365 Proplus
A remote code execution vulnerability exists when the Microsoft Office Access Connectivity Engine improperly handles objects in memory, aka 'Microsoft Office Access Connectivity Engine Remote Code Execution Vulnerability'.
local
low complexity
microsoft
7.8
2019-04-09 CVE-2019-0823 Unspecified vulnerability in Microsoft Office 2010
A remote code execution vulnerability exists when the Microsoft Office Access Connectivity Engine improperly handles objects in memory, aka 'Microsoft Office Access Connectivity Engine Remote Code Execution Vulnerability'.
local
low complexity
microsoft
7.8
2019-04-09 CVE-2019-0822 Unspecified vulnerability in Microsoft Office and Office 365 Proplus
A remote code execution vulnerability exists in the way that Microsoft Graphics Components handle objects in memory, aka 'Microsoft Graphics Components Remote Code Execution Vulnerability'.
local
low complexity
microsoft
7.8
2019-04-09 CVE-2019-0815 Data Processing Errors vulnerability in Microsoft Asp.Net Core 2.2
A denial of service vulnerability exists when ASP.NET Core improperly handles web requests, aka 'ASP.NET Core Denial of Service Vulnerability'.
network
low complexity
microsoft CWE-19
7.5
2019-04-09 CVE-2019-0812 Out-of-bounds Write vulnerability in Microsoft Chakracore and Edge
A remote code execution vulnerability exists in the way that the Chakra scripting engine handles objects in memory in Microsoft Edge, aka 'Chakra Scripting Engine Memory Corruption Vulnerability'.
network
high complexity
microsoft CWE-787
7.5
2019-04-09 CVE-2019-0810 Type Confusion vulnerability in Microsoft Chakracore and Edge
A remote code execution vulnerability exists in the way that the Chakra scripting engine handles objects in memory in Microsoft Edge, aka 'Chakra Scripting Engine Memory Corruption Vulnerability'.
network
high complexity
microsoft CWE-843
7.5
2019-04-09 CVE-2019-0806 Out-of-bounds Write vulnerability in Microsoft Chakracore and Edge
A remote code execution vulnerability exists in the way that the Chakra scripting engine handles objects in memory in Microsoft Edge, aka 'Chakra Scripting Engine Memory Corruption Vulnerability'.
network
high complexity
microsoft CWE-787
7.5
2019-04-09 CVE-2019-0805 Insufficient Verification of Data Authenticity vulnerability in Microsoft products
An elevation of privilege vulnerability exists when Windows improperly handles calls to the LUAFV driver (luafv.sys), aka 'Windows Elevation of Privilege Vulnerability'.
local
low complexity
microsoft CWE-345
7.8
2019-04-09 CVE-2019-0803 Unspecified vulnerability in Microsoft products
An elevation of privilege vulnerability exists in Windows when the Win32k component fails to properly handle objects in memory, aka 'Win32k Elevation of Privilege Vulnerability'.
local
low complexity
microsoft
7.8