Vulnerabilities > Microsoft > Windows

DATE CVE VULNERABILITY TITLE RISK
2022-03-10 CVE-2022-0280 Time-of-check Time-of-use (TOCTOU) Race Condition vulnerability in Microsoft Windows
A race condition vulnerability exists in the QuickClean feature of McAfee Total Protection for Windows prior to 16.0.43 that allows a local user to gain privilege elevation and perform an arbitrary file delete.
local
high complexity
microsoft CWE-367
7.0
2021-08-12 CVE-2021-36958 Unspecified vulnerability in Microsoft Windows
<p>A remote code execution vulnerability exists when the Windows Print Spooler service improperly performs privileged file operations.
local
low complexity
microsoft
7.8
2020-10-16 CVE-2019-19513 Out-of-bounds Write vulnerability in Un4Seen Bassmidi
The BASSMIDI plugin 2.4.12.1 for Un4seen BASS Audio Library on Windows is prone to an out of bounds write vulnerability.
network
low complexity
un4seen microsoft CWE-787
critical
10.0
2020-06-04 CVE-2019-20831 Unspecified vulnerability in Foxitsoftware 3D
An issue was discovered in the 3D Plugin Beta for Foxit Reader and PhantomPDF before 9.5.0.20733.
5.0
2020-06-04 CVE-2019-20822 Out-of-bounds Write vulnerability in Foxitsoftware 3D
An issue was discovered in the 3D Plugin Beta for Foxit Reader and PhantomPDF before 9.7.0.29430.
7.5
2020-05-11 CVE-2019-19162 Use After Free vulnerability in Tobesoft Xplatform
A use-after-free vulnerability in the TOBESOFT XPLATFORM versions 9.1 to 9.2.2 may lead to code execution on a system running it.
6.8
2020-05-06 CVE-2019-19167 Unspecified vulnerability in Tobesoft Nexacro 2019.9.25.1
Tobesoft Nexacro v2019.9.25.1 and earlier version have an arbitrary code execution vulnerability by using method supported by Nexacro14 ActiveX Control.
network
low complexity
tobesoft microsoft
7.5
2020-05-06 CVE-2019-19166 Unspecified vulnerability in Tobesoft Xplatform
Tobesoft XPlatform v9.1, 9.2.0, 9.2.1 and 9.2.2 have a vulnerability that can load unauthorized DLL files.
4.4
2020-03-24 CVE-2019-4681 Cross-site Scripting vulnerability in IBM Tivoli Netcool/Impact
IBM Tivoli Netcool Impact 7.1.0.0 through 7.1.0.17 is vulnerable to cross-site scripting.
4.3
2020-03-16 CVE-2019-5543 Incorrect Permission Assignment for Critical Resource vulnerability in VMWare Horizon Client, Remote Console and Workstation
For VMware Horizon Client for Windows (5.x and prior before 5.3.0), VMware Remote Console for Windows (10.x before 11.0.0), VMware Workstation for Windows (15.x before 15.5.2) the folder containing configuration files for the VMware USB arbitration service was found to be writable by all users.
local
low complexity
vmware microsoft CWE-732
7.2