Vulnerabilities > Microsoft > Windows 7 > High

DATE CVE VULNERABILITY TITLE RISK
2020-10-16 CVE-2020-16974 Unspecified vulnerability in Microsoft products
<p>An elevation of privilege vulnerability exists when the Windows Backup Service improperly handles file operations.</p> <p>To exploit this vulnerability, an attacker would first have to gain execution on the victim system.
local
low complexity
microsoft
7.8
2020-10-16 CVE-2020-16972 Unspecified vulnerability in Microsoft products
<p>An elevation of privilege vulnerability exists when the Windows Backup Service improperly handles file operations.</p> <p>To exploit this vulnerability, an attacker would first have to gain execution on the victim system.
local
low complexity
microsoft
7.8
2020-10-16 CVE-2020-16940 Improper Privilege Management vulnerability in Microsoft products
<p>An elevation of privilege vulnerability exists when the Windows User Profile Service (ProfSvc) improperly handles junction points.
local
low complexity
microsoft CWE-269
7.8
2020-10-16 CVE-2020-16939 Link Following vulnerability in Microsoft products
<p>An elevation of privilege vulnerability exists when Group Policy improperly checks access.
local
low complexity
microsoft CWE-59
7.8
2020-10-16 CVE-2020-16936 Unspecified vulnerability in Microsoft products
<p>An elevation of privilege vulnerability exists when the Windows Backup Service improperly handles file operations.</p> <p>To exploit this vulnerability, an attacker would first have to gain execution on the victim system.
local
low complexity
microsoft
7.8
2020-10-16 CVE-2020-16935 Unspecified vulnerability in Microsoft products
<p>An elevation of privilege vulnerability exists when Windows improperly handles COM object creation.
local
low complexity
microsoft
7.8
2020-10-16 CVE-2020-16933 Unspecified vulnerability in Microsoft products
<p>A security feature bypass vulnerability exists in Microsoft Word software when it fails to properly handle .LNK files.
local
high complexity
microsoft
7.0
2020-10-16 CVE-2020-16924 Unspecified vulnerability in Microsoft products
<p>A remote code execution vulnerability exists when the Windows Jet Database Engine improperly handles objects in memory.
local
low complexity
microsoft
7.8
2020-10-16 CVE-2020-16923 Unspecified vulnerability in Microsoft products
<p>A remote code execution vulnerability exists in the way that Microsoft Graphics Components handle objects in memory.
local
low complexity
microsoft
7.8
2020-10-16 CVE-2020-16920 Unspecified vulnerability in Microsoft products
<p>An elevation of privilege vulnerability exists when the Windows Application Compatibility Client Library improperly handles registry operations.
local
low complexity
microsoft
7.8