Vulnerabilities > Microsoft > Windows 10 > 1803

DATE CVE VULNERABILITY TITLE RISK
2020-03-12 CVE-2020-0858 Improper Privilege Management vulnerability in Microsoft products
An elevation of privilege vulnerability exists when the "Public Account Pictures" folder improperly handles junctions.To exploit this vulnerability, an attacker would first have to gain execution on the victim system, aka 'Windows Elevation of Privilege Vulnerability'.
local
low complexity
microsoft CWE-269
7.2
2020-03-12 CVE-2020-0857 Improper Privilege Management vulnerability in Microsoft products
An elevation of privilege vulnerability exists in the way that the Windows Search Indexer handles objects in memory, aka 'Windows Search Indexer Elevation of Privilege Vulnerability'.
local
low complexity
microsoft CWE-269
4.6
2020-03-12 CVE-2020-0853 Information Exposure vulnerability in Microsoft products
An information disclosure vulnerability exists in Windows when the Windows Imaging Component fails to properly handle objects in memory, aka 'Windows Imaging Component Information Disclosure Vulnerability'.
network
microsoft CWE-200
4.3
2020-03-12 CVE-2020-0849 Improper Privilege Management vulnerability in Microsoft products
An elevation of privilege vulnerability exists when Windows improperly handles hard links, aka 'Windows Hard Link Elevation of Privilege Vulnerability'.
local
low complexity
microsoft CWE-269
7.2
2020-03-12 CVE-2020-0845 Improper Privilege Management vulnerability in Microsoft products
An elevation of privilege vulnerability exists in the way that the Windows Network Connections Service handles objects in memory, aka 'Windows Network Connections Service Elevation of Privilege Vulnerability'.
local
low complexity
microsoft CWE-269
4.6
2020-03-12 CVE-2020-0844 Improper Privilege Management vulnerability in Microsoft products
An elevation of privilege vulnerability exists when Connected User Experiences and Telemetry Service improperly handles file operations, aka 'Connected User Experiences and Telemetry Service Elevation of Privilege Vulnerability'.
local
low complexity
microsoft CWE-269
4.6
2020-03-12 CVE-2020-0843 Improper Privilege Management vulnerability in Microsoft products
An elevation of privilege vulnerability exists in Windows Installer because of the way Windows Installer handles certain filesystem operations.To exploit the vulnerability, an attacker would require unprivileged execution on the victim system, aka 'Windows Installer Elevation of Privilege Vulnerability'.
local
low complexity
microsoft CWE-269
4.6
2020-03-12 CVE-2020-0842 Improper Privilege Management vulnerability in Microsoft products
An elevation of privilege vulnerability exists in Windows Installer because of the way Windows Installer handles certain filesystem operations.To exploit the vulnerability, an attacker would require unprivileged execution on the victim system, aka 'Windows Installer Elevation of Privilege Vulnerability'.
local
low complexity
microsoft CWE-269
4.6
2020-03-12 CVE-2020-0841 Improper Privilege Management vulnerability in Microsoft products
An elevation of privilege vulnerability exists when Windows improperly handles hard links, aka 'Windows Hard Link Elevation of Privilege Vulnerability'.
local
low complexity
microsoft CWE-269
7.2
2020-03-12 CVE-2020-0840 Improper Privilege Management vulnerability in Microsoft products
An elevation of privilege vulnerability exists when Windows improperly handles hard links, aka 'Windows Hard Link Elevation of Privilege Vulnerability'.
local
low complexity
microsoft CWE-269
7.2