Vulnerabilities > Microsoft > Windows 10 > Medium

DATE CVE VULNERABILITY TITLE RISK
2019-08-14 CVE-2019-0714 Improper Input Validation vulnerability in Microsoft products
A denial of service vulnerability exists when Microsoft Hyper-V Network Switch on a host server fails to properly validate input from a privileged user on a guest operating system.
network
high complexity
microsoft CWE-20
5.8
2019-07-15 CVE-2019-1108 Information Exposure vulnerability in Microsoft products
An information disclosure vulnerability exists when the Windows RDP client improperly discloses the contents of its memory, aka 'Remote Desktop Protocol Client Information Disclosure Vulnerability'.
network
low complexity
microsoft CWE-200
6.5
2019-07-15 CVE-2019-1097 Information Exposure vulnerability in Microsoft products
An information disclosure vulnerability exists when DirectWrite improperly discloses the contents of its memory, aka 'DirectWrite Information Disclosure Vulnerability'.
local
low complexity
microsoft CWE-200
5.5
2019-07-15 CVE-2019-1096 Information Exposure vulnerability in Microsoft products
An information disclosure vulnerability exists when the win32k component improperly provides kernel information, aka 'Win32k Information Disclosure Vulnerability'.
local
low complexity
microsoft CWE-200
5.5
2019-07-15 CVE-2019-1095 Information Exposure vulnerability in Microsoft products
An information disclosure vulnerability exists when the Windows GDI component improperly discloses the contents of its memory, aka 'Windows GDI Information Disclosure Vulnerability'.
network
low complexity
microsoft CWE-200
6.5
2019-07-15 CVE-2019-1094 Information Exposure vulnerability in Microsoft products
An information disclosure vulnerability exists when the Windows GDI component improperly discloses the contents of its memory, aka 'Windows GDI Information Disclosure Vulnerability'.
network
low complexity
microsoft CWE-200
6.5
2019-07-15 CVE-2019-1093 Information Exposure vulnerability in Microsoft products
An information disclosure vulnerability exists when DirectWrite improperly discloses the contents of its memory, aka 'DirectWrite Information Disclosure Vulnerability'.
local
low complexity
microsoft CWE-200
5.5
2019-07-15 CVE-2019-1091 Information Exposure vulnerability in Microsoft products
An information disclosure vulnerability exists when Unistore.dll fails to properly handle objects in memory, aka 'Microsoft unistore.dll Information Disclosure Vulnerability'.
local
low complexity
microsoft CWE-200
5.5
2019-07-15 CVE-2019-1074 Link Following vulnerability in Microsoft products
An elevation of privilege vulnerability exists in Microsoft Windows where certain folders, with local service privilege, are vulnerable to symbolic link attack.
local
low complexity
microsoft CWE-59
5.5
2019-07-15 CVE-2019-1073 Information Exposure vulnerability in Microsoft products
An information disclosure vulnerability exists when the Windows kernel improperly handles objects in memory, aka 'Windows Kernel Information Disclosure Vulnerability'.
local
low complexity
microsoft CWE-200
5.5