Vulnerabilities > Microsoft > Windows Server 2019 > High

DATE CVE VULNERABILITY TITLE RISK
2020-04-15 CVE-2020-0958 Unspecified vulnerability in Microsoft products
An elevation of privilege vulnerability exists in Windows when the Windows kernel-mode driver fails to properly handle objects in memory, aka 'Win32k Elevation of Privilege Vulnerability'.
local
low complexity
microsoft
7.8
2020-04-15 CVE-2020-0956 Unspecified vulnerability in Microsoft products
An elevation of privilege vulnerability exists in Windows when the Windows kernel-mode driver fails to properly handle objects in memory, aka 'Win32k Elevation of Privilege Vulnerability'.
local
low complexity
microsoft
7.8
2020-04-15 CVE-2020-0953 Unspecified vulnerability in Microsoft products
A remote code execution vulnerability exists when the Windows Jet Database Engine improperly handles objects in memory, aka 'Jet Database Engine Remote Code Execution Vulnerability'.
local
low complexity
microsoft
7.8
2020-04-15 CVE-2020-0950 Out-of-bounds Write vulnerability in Microsoft products
A memory corruption vulnerability exists when Windows Media Foundation improperly handles objects in memory, aka 'Media Foundation Memory Corruption Vulnerability'.
network
low complexity
microsoft CWE-787
8.8
2020-04-15 CVE-2020-0949 Out-of-bounds Write vulnerability in Microsoft products
A memory corruption vulnerability exists when Windows Media Foundation improperly handles objects in memory, aka 'Media Foundation Memory Corruption Vulnerability'.
network
low complexity
microsoft CWE-787
8.8
2020-04-15 CVE-2020-0948 Out-of-bounds Write vulnerability in Microsoft products
A memory corruption vulnerability exists when Windows Media Foundation improperly handles objects in memory, aka 'Media Foundation Memory Corruption Vulnerability'.
network
low complexity
microsoft CWE-787
8.8
2020-04-15 CVE-2020-0944 Unspecified vulnerability in Microsoft products
An elevation of privilege vulnerability exists when Connected User Experiences and Telemetry Service improperly handles file operations, aka 'Connected User Experiences and Telemetry Service Elevation of Privilege Vulnerability'.
local
low complexity
microsoft
7.8
2020-04-15 CVE-2020-0942 Unspecified vulnerability in Microsoft products
An elevation of privilege vulnerability exists when Connected User Experiences and Telemetry Service improperly handles file operations, aka 'Connected User Experiences and Telemetry Service Elevation of Privilege Vulnerability'.
local
low complexity
microsoft
7.1
2020-04-15 CVE-2020-0940 Unspecified vulnerability in Microsoft products
An elevation of privilege vulnerability exists in the way the Windows Push Notification Service handles objects in memory, aka 'Windows Push Notification Service Elevation of Privilege Vulnerability'.
local
low complexity
microsoft
7.8
2020-04-15 CVE-2020-0938 Out-of-bounds Write vulnerability in Microsoft products
A remote code execution vulnerability exists in Microsoft Windows when the Windows Adobe Type Manager Library improperly handles a specially-crafted multi-master font - Adobe Type 1 PostScript format.For all systems except Windows 10, an attacker who successfully exploited the vulnerability could execute code remotely, aka 'Adobe Font Manager Library Remote Code Execution Vulnerability'.
local
low complexity
microsoft CWE-787
7.8