Vulnerabilities > Microsoft > High

DATE CVE VULNERABILITY TITLE RISK
2020-05-21 CVE-2020-1113 Improper Certificate Validation vulnerability in Microsoft products
A security feature bypass vulnerability exists in Microsoft Windows when the Task Scheduler service fails to properly verify client connections over RPC, aka 'Windows Task Scheduler Security Feature Bypass Vulnerability'.
network
high complexity
microsoft CWE-295
7.5
2020-05-21 CVE-2020-1111 Unspecified vulnerability in Microsoft Windows 10 and Windows Server 2019
An elevation of privilege vulnerability exists when Windows improperly handles calls to Clipboard Service, aka 'Windows Clipboard Service Elevation of Privilege Vulnerability'.
local
low complexity
microsoft
7.8
2020-05-21 CVE-2020-1110 Unspecified vulnerability in Microsoft Windows 10 and Windows Server 2019
An elevation of privilege vulnerability exists when the Windows Update Stack fails to properly handle objects in memory, aka 'Windows Update Stack Elevation of Privilege Vulnerability'.
local
low complexity
microsoft
7.8
2020-05-21 CVE-2020-1109 Unspecified vulnerability in Microsoft Windows 10 and Windows Server 2019
An elevation of privilege vulnerability exists when the Windows Update Stack fails to properly handle objects in memory, aka 'Windows Update Stack Elevation of Privilege Vulnerability'.
local
low complexity
microsoft
7.8
2020-05-21 CVE-2020-1108 Unspecified vulnerability in Microsoft products
A denial of service vulnerability exists when .NET Core or .NET Framework improperly handles web requests, aka '.NET Core & .NET Framework Denial of Service Vulnerability'.
network
low complexity
microsoft
7.5
2020-05-21 CVE-2020-1102 Unrestricted Upload of File with Dangerous Type vulnerability in Microsoft Sharepoint Enterprise Server and Sharepoint Server
A remote code execution vulnerability exists in Microsoft SharePoint when the software fails to check the source markup of an application package, aka 'Microsoft SharePoint Remote Code Execution Vulnerability'.
network
low complexity
microsoft CWE-434
8.8
2020-05-21 CVE-2020-1096 Unspecified vulnerability in Microsoft Edge
A remote code execution vulnerability exists when Microsoft Edge PDF Reader improperly handles objects in memory, aka 'Microsoft Edge PDF Remote Code Execution Vulnerability'.
network
high complexity
microsoft
7.5
2020-05-21 CVE-2020-1093 Out-of-bounds Write vulnerability in Microsoft Internet Explorer 11/9
A remote code execution vulnerability exists in the way that the VBScript engine handles objects in memory, aka 'VBScript Remote Code Execution Vulnerability'.
network
high complexity
microsoft CWE-787
7.5
2020-05-21 CVE-2020-1092 Out-of-bounds Write vulnerability in Microsoft Internet Explorer 11/9
A remote code execution vulnerability exists when Internet Explorer improperly accesses objects in memory, aka 'Internet Explorer Memory Corruption Vulnerability'.
network
high complexity
microsoft CWE-787
7.5
2020-05-21 CVE-2020-1090 Unspecified vulnerability in Microsoft products
An elevation of privilege vulnerability exists when the Windows Runtime improperly handles objects in memory, aka 'Windows Runtime Elevation of Privilege Vulnerability'.
local
low complexity
microsoft
7.8