Vulnerabilities > Microsoft > Windows 10 > 1703

DATE CVE VULNERABILITY TITLE RISK
2019-09-11 CVE-2019-1235 Origin Validation Error vulnerability in Microsoft products
An elevation of privilege vulnerability exists in Windows Text Service Framework (TSF) when the TSF server process does not validate the source of input or commands it receives, aka 'Windows Text Service Framework Elevation of Privilege Vulnerability'.
local
low complexity
microsoft CWE-346
7.8
2019-09-11 CVE-2019-1232 Unspecified vulnerability in Microsoft products
An elevation of privilege vulnerability exists when the Diagnostics Hub Standard Collector Service improperly impersonates certain file operations, aka 'Diagnostics Hub Standard Collector Service Elevation of Privilege Vulnerability'.
local
low complexity
microsoft
7.8
2019-09-11 CVE-2019-1219 Information Exposure vulnerability in Microsoft products
An information disclosure vulnerability exists when the Windows Transaction Manager improperly handles objects in memory, aka 'Windows Transaction Manager Information Disclosure Vulnerability'.
local
low complexity
microsoft CWE-200
5.5
2019-09-11 CVE-2019-1216 Information Exposure vulnerability in Microsoft products
An information disclosure vulnerability exists when DirectX improperly handles objects in memory, aka 'DirectX Information Disclosure Vulnerability'.
local
low complexity
microsoft CWE-200
5.5
2019-09-11 CVE-2019-0928 Improper Input Validation vulnerability in Microsoft Windows 10 and Windows Server 2016
A denial of service vulnerability exists when Microsoft Hyper-V on a host server fails to properly validate input from a privileged user on a guest operating system, aka 'Windows Hyper-V Denial of Service Vulnerability'.
low complexity
microsoft CWE-20
6.2
2019-09-11 CVE-2019-0788 Unspecified vulnerability in Microsoft Windows 10, Windows 8.1 and Windows RT 8.1
A remote code execution vulnerability exists in the Windows Remote Desktop Client when a user connects to a malicious server, aka 'Remote Desktop Client Remote Code Execution Vulnerability'.
network
low complexity
microsoft
8.8
2019-09-11 CVE-2019-0787 Unspecified vulnerability in Microsoft products
A remote code execution vulnerability exists in the Windows Remote Desktop Client when a user connects to a malicious server, aka 'Remote Desktop Client Remote Code Execution Vulnerability'.
network
low complexity
microsoft
8.8
2019-08-14 CVE-2019-1183 Unspecified vulnerability in Microsoft products
This information is being revised to indicate that this CVE (CVE-2019-1183) is fully mitigated by the security updates for the vulnerability discussed in CVE-2019-1194.
network
low complexity
microsoft
8.8
2019-07-15 CVE-2019-1108 Information Exposure vulnerability in Microsoft products
An information disclosure vulnerability exists when the Windows RDP client improperly discloses the contents of its memory, aka 'Remote Desktop Protocol Client Information Disclosure Vulnerability'.
network
low complexity
microsoft CWE-200
6.5
2019-07-15 CVE-2019-1102 Unspecified vulnerability in Microsoft products
A remote code execution vulnerability exists in the way that the Windows Graphics Device Interface (GDI) handles objects in the memory, aka 'GDI+ Remote Code Execution Vulnerability'.
network
low complexity
microsoft
8.8