Vulnerabilities > Microsoft > Medium

DATE CVE VULNERABILITY TITLE RISK
2020-06-09 CVE-2020-1289 Cross-site Scripting vulnerability in Microsoft Sharepoint Foundation 2010
A spoofing vulnerability exists when Microsoft SharePoint Server does not properly sanitize a specially crafted web request to an affected SharePoint server, aka 'Microsoft SharePoint Spoofing Vulnerability'.
network
low complexity
microsoft CWE-79
5.4
2020-06-09 CVE-2020-1284 Unspecified vulnerability in Microsoft Windows 10 and Windows Server 2016
A denial of service vulnerability exists in the way that the Microsoft Server Message Block 3.1.1 (SMBv3) protocol handles certain requests, aka 'Windows SMBv3 Client/Server Denial of Service Vulnerability'.
network
low complexity
microsoft
6.5
2020-06-09 CVE-2020-1283 Unspecified vulnerability in Microsoft products
A denial of service vulnerability exists when Windows improperly handles objects in memory, aka 'Windows Denial of Service Vulnerability'.
network
low complexity
microsoft
6.5
2020-06-09 CVE-2020-1268 Unspecified vulnerability in Microsoft Windows 10 and Windows Server 2016
An information disclosure vulnerability exists when a Windows service improperly handles objects in memory, aka 'Windows Service Information Disclosure Vulnerability'.
local
low complexity
microsoft
5.5
2020-06-09 CVE-2020-1263 Unspecified vulnerability in Microsoft products
An information disclosure vulnerability exists in the way Windows Error Reporting (WER) handles objects in memory, aka 'Windows Error Reporting Information Disclosure Vulnerability'.
local
low complexity
microsoft
5.5
2020-06-09 CVE-2020-1261 Unspecified vulnerability in Microsoft products
An information disclosure vulnerability exists in the way Windows Error Reporting (WER) handles objects in memory, aka 'Windows Error Reporting Information Disclosure Vulnerability'.
local
low complexity
microsoft
5.5
2020-06-09 CVE-2020-1259 Unspecified vulnerability in Microsoft products
A security feature bypass vulnerability exists when Windows Host Guardian Service improperly handles hashes recorded and logged, aka 'Windows Host Guardian Service Security Feature Bypass Vulnerability'.
network
low complexity
microsoft
4.3
2020-06-09 CVE-2020-1258 Unspecified vulnerability in Microsoft products
An elevation of privilege vulnerability exists when DirectX improperly handles objects in memory, aka 'DirectX Elevation of Privilege Vulnerability'.
local
low complexity
microsoft
6.7
2020-06-09 CVE-2020-1253 Unspecified vulnerability in Microsoft products
An elevation of privilege vulnerability exists in Windows when the Windows kernel-mode driver fails to properly handle objects in memory, aka 'Win32k Elevation of Privilege Vulnerability'.
local
low complexity
microsoft
6.7
2020-06-09 CVE-2020-1251 Unspecified vulnerability in Microsoft products
An elevation of privilege vulnerability exists in Windows when the Windows kernel-mode driver fails to properly handle objects in memory, aka 'Win32k Elevation of Privilege Vulnerability'.
local
low complexity
microsoft
6.7