Vulnerabilities > Microsoft > Windows 10 1607 > High

DATE CVE VULNERABILITY TITLE RISK
2021-09-15 CVE-2021-40444 Path Traversal vulnerability in Microsoft products
<p>Microsoft is investigating reports of a remote code execution vulnerability in MSHTML that affects Microsoft Windows.
network
low complexity
microsoft CWE-22
8.8
2021-08-12 CVE-2021-34484 Unspecified vulnerability in Microsoft products
Windows User Profile Service Elevation of Privilege Vulnerability
local
low complexity
microsoft
7.8
2021-07-14 CVE-2021-31979 Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability in Microsoft products
Windows Kernel Elevation of Privilege Vulnerability
local
low complexity
microsoft CWE-119
7.8
2021-07-14 CVE-2021-33771 Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability in Microsoft products
Windows Kernel Elevation of Privilege Vulnerability
local
low complexity
microsoft CWE-119
7.8
2021-07-02 CVE-2021-34527 Improper Privilege Management vulnerability in Microsoft products
<p>A remote code execution vulnerability exists when the Windows Print Spooler service improperly performs privileged file operations.
network
low complexity
microsoft CWE-269
8.8
2021-06-08 CVE-2021-1675 Unspecified vulnerability in Microsoft products
Windows Print Spooler Remote Code Execution Vulnerability
local
low complexity
microsoft
7.8
2021-06-08 CVE-2021-31956 Integer Underflow (Wrap or Wraparound) vulnerability in Microsoft products
Windows NTFS Elevation of Privilege Vulnerability
local
low complexity
microsoft CWE-191
7.8
2021-06-08 CVE-2021-33742 Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability in Microsoft products
Windows MSHTML Platform Remote Code Execution Vulnerability
network
high complexity
microsoft CWE-119
7.5
2020-08-17 CVE-2020-1464 Improper Verification of Cryptographic Signature vulnerability in Microsoft products
A spoofing vulnerability exists when Windows incorrectly validates file signatures.
local
low complexity
microsoft CWE-347
7.8
2020-03-12 CVE-2020-0787 Link Following vulnerability in Microsoft products
An elevation of privilege vulnerability exists when the Windows Background Intelligent Transfer Service (BITS) improperly handles symbolic links, aka 'Windows Background Intelligent Transfer Service Elevation of Privilege Vulnerability'.
local
low complexity
microsoft CWE-59
7.8