Vulnerabilities > Microsoft > High

DATE CVE VULNERABILITY TITLE RISK
2020-07-14 CVE-2020-1240 Unspecified vulnerability in Microsoft 365 Apps
A remote code execution vulnerability exists in Microsoft Excel software when the software fails to properly handle objects in memory, aka 'Microsoft Excel Remote Code Execution Vulnerability'.
network
low complexity
microsoft
8.8
2020-07-14 CVE-2020-1147 Unspecified vulnerability in Microsoft products
A remote code execution vulnerability exists in .NET Framework, Microsoft SharePoint, and Visual Studio when the software fails to check the source markup of XML file input, aka '.NET Framework, SharePoint Server, and Visual Studio Remote Code Execution Vulnerability'.
local
low complexity
microsoft
7.8
2020-07-14 CVE-2020-1085 Unspecified vulnerability in Microsoft products
An elevation of privilege vulnerability exists in the way that the Windows Function Discovery Service handles objects in memory, aka 'Windows Function Discovery Service Elevation of Privilege Vulnerability'.
local
low complexity
microsoft
7.8
2020-06-09 CVE-2020-1334 Unspecified vulnerability in Microsoft products
An elevation of privilege vulnerability exists when the Windows Runtime improperly handles objects in memory, aka 'Windows Runtime Elevation of Privilege Vulnerability'.
local
low complexity
microsoft
7.8
2020-06-09 CVE-2020-1324 Unspecified vulnerability in Microsoft products
An elevation of privilege (user to user) vulnerability exists in Windows Security Health Service when handling certain objects in memory.To exploit the vulnerability, an attacker would first have to log on to the system, aka 'Windows Elevation of Privilege Vulnerability'.
local
low complexity
microsoft
7.8
2020-06-09 CVE-2020-1321 Unspecified vulnerability in Microsoft 365 Apps and Office
A remote code execution vulnerability exists in Microsoft Office software when it fails to properly handle objects in memory, aka 'Microsoft Office Remote Code Execution Vulnerability'.
network
low complexity
microsoft
8.8
2020-06-09 CVE-2020-1317 Unspecified vulnerability in Microsoft products
An elevation of privilege vulnerability exists when Group Policy improperly checks access, aka 'Group Policy Elevation of Privilege Vulnerability'.
network
low complexity
microsoft
8.8
2020-06-09 CVE-2020-1316 Unspecified vulnerability in Microsoft products
An elevation of privilege vulnerability exists when the Windows kernel fails to properly handle objects in memory, aka 'Windows Kernel Elevation of Privilege Vulnerability'.
local
low complexity
microsoft
7.8
2020-06-09 CVE-2020-1314 Unspecified vulnerability in Microsoft products
An elevation of privilege vulnerability exists in Windows Text Service Framework (TSF) when the TSF server fails to properly handle messages sent from TSF clients, aka 'Windows Text Service Framework Elevation of Privilege Vulnerability'.
local
low complexity
microsoft
7.8
2020-06-09 CVE-2020-1313 Unspecified vulnerability in Microsoft Windows 10 and Windows Server 2016
An elevation of privilege vulnerability exists when the Windows Update Orchestrator Service improperly handles file operations, aka 'Windows Update Orchestrator Service Elevation of Privilege Vulnerability'.
local
low complexity
microsoft
7.8