Vulnerabilities > Microsoft > Windows 8 1

DATE CVE VULNERABILITY TITLE RISK
2020-03-12 CVE-2020-0772 Unspecified vulnerability in Microsoft products
An elevation of privilege vulnerability exists when Windows Error Reporting improperly handles memory.To exploit this vulnerability, an attacker would first have to gain execution on the victim system, aka 'Windows Error Reporting Elevation of Privilege Vulnerability'.
local
low complexity
microsoft
7.8
2020-03-12 CVE-2020-0771 Unspecified vulnerability in Microsoft products
An elevation of privilege vulnerability exists when the Windows CSC Service improperly handles memory.To exploit this vulnerability, an attacker would first have to gain execution on the victim system, aka 'Windows CSC Service Elevation of Privilege Vulnerability'.
local
low complexity
microsoft
7.8
2020-03-12 CVE-2020-0770 Unspecified vulnerability in Microsoft products
An elevation of privilege vulnerability exists when the Windows ActiveX Installer Service improperly handles memory.To exploit this vulnerability, an attacker would first have to gain execution on the victim system, aka 'Windows ActiveX Installer Service Elevation of Privilege Vulnerability'.
local
low complexity
microsoft
7.8
2020-03-12 CVE-2020-0769 Unspecified vulnerability in Microsoft products
An elevation of privilege vulnerability exists when the Windows CSC Service improperly handles memory.To exploit this vulnerability, an attacker would first have to gain execution on the victim system, aka 'Windows CSC Service Elevation of Privilege Vulnerability'.
local
low complexity
microsoft
7.8
2020-03-12 CVE-2020-0684 Unspecified vulnerability in Microsoft products
A remote code execution vulnerability exists in Microsoft Windows that could allow remote code execution if a .LNK file is processed.An attacker who successfully exploited this vulnerability could gain the same user rights as the local user, aka 'LNK Remote Code Execution Vulnerability'.
network
low complexity
microsoft
8.8
2020-03-12 CVE-2020-0645 Unspecified vulnerability in Microsoft products
A tampering vulnerability exists when Microsoft IIS Server improperly handles malformed request headers, aka 'Microsoft IIS Server Tampering Vulnerability'.
network
low complexity
microsoft
7.5
2020-02-11 CVE-2020-0756 Unspecified vulnerability in Microsoft products
An information disclosure vulnerability exists in the Cryptography Next Generation (CNG) service when it fails to properly handle objects in memory.To exploit this vulnerability, an attacker would have to log on to an affected system and run a specially crafted application.The security update addresses the vulnerability by correcting how the service handles objects in memory., aka 'Windows Key Isolation Service Information Disclosure Vulnerability'.
local
low complexity
microsoft
5.5
2020-02-11 CVE-2020-0755 Unspecified vulnerability in Microsoft products
An information disclosure vulnerability exists in the Cryptography Next Generation (CNG) service when it fails to properly handle objects in memory.To exploit this vulnerability, an attacker would have to log on to an affected system and run a specially crafted application.The security update addresses the vulnerability by correcting how the service handles objects in memory., aka 'Windows Key Isolation Service Information Disclosure Vulnerability'.
local
low complexity
microsoft
5.5
2020-02-11 CVE-2020-0754 Unspecified vulnerability in Microsoft products
An elevation of privilege vulnerability exists in Windows Error Reporting (WER) when WER handles and executes files, aka 'Windows Error Reporting Elevation of Privilege Vulnerability'.
local
low complexity
microsoft
7.8
2020-02-11 CVE-2020-0753 Unspecified vulnerability in Microsoft products
An elevation of privilege vulnerability exists in Windows Error Reporting (WER) when WER handles and executes files, aka 'Windows Error Reporting Elevation of Privilege Vulnerability'.
local
low complexity
microsoft
7.8