Vulnerabilities > Microsoft > Windows

DATE CVE VULNERABILITY TITLE RISK
2018-07-09 CVE-2018-4948 Out-of-bounds Write vulnerability in Adobe Acrobat DC and Acrobat Reader DC
Adobe Acrobat and Reader versions 2018.011.20038 and earlier, 2017.011.30079 and earlier, and 2015.006.30417 and earlier have a Heap Overflow vulnerability.
network
low complexity
adobe apple microsoft CWE-787
critical
10.0
2018-07-09 CVE-2018-4947 Out-of-bounds Write vulnerability in Adobe Acrobat DC and Acrobat Reader DC
Adobe Acrobat and Reader versions 2018.011.20038 and earlier, 2017.011.30079 and earlier, and 2015.006.30417 and earlier have a Heap Overflow vulnerability.
network
low complexity
adobe apple microsoft CWE-787
critical
10.0
2018-07-09 CVE-2018-4945 Incorrect Type Conversion or Cast vulnerability in multiple products
Adobe Flash Player versions 29.0.0.171 and earlier have a Type Confusion vulnerability.
6.8
2018-07-06 CVE-2018-3608 Code Injection vulnerability in Trendmicro products
A vulnerability in Trend Micro Maximum Security's (Consumer) 2018 (versions 12.0.1191 and below) User-Mode Hooking (UMH) driver could allow an attacker to create a specially crafted packet that could alter a vulnerable system in such a way that malicious code could be injected into other processes.
network
low complexity
trendmicro microsoft CWE-94
critical
10.0
2018-06-26 CVE-2018-0600 Untrusted Search Path vulnerability in Sony Playmemories Home 5.5.01
Untrusted search path vulnerability in the installer of PlayMemories Home for Windows ver.5.5.01 and earlier allows an attacker to gain privileges via a Trojan horse DLL in an unspecified directory.
6.8
2018-06-26 CVE-2018-0599 Untrusted Search Path vulnerability in Microsoft Windows
Untrusted search path vulnerability in the installer of Visual C++ Redistributable allows an attacker to gain privileges via a Trojan horse DLL in an unspecified directory.
network
microsoft CWE-426
critical
9.3
2018-06-26 CVE-2018-0598 Untrusted Search Path vulnerability in Microsoft Windows
Untrusted search path vulnerability in Self-extracting archive files created by IExpress bundled with Microsoft Windows allows an attacker to gain privileges via a Trojan horse DLL in an unspecified directory.
local
low complexity
microsoft CWE-426
7.8
2018-06-26 CVE-2018-0595 Untrusted Search Path vulnerability in Microsoft Skype
Untrusted search path vulnerability in the installer of Skype for Windows allows an attacker to gain privileges via a Trojan horse DLL in an unspecified directory.
network
microsoft CWE-426
6.8
2018-06-26 CVE-2018-0594 Untrusted Search Path vulnerability in Microsoft Skype
Untrusted search path vulnerability in Skype for Windows allows an attacker to gain privileges via a Trojan horse DLL in an unspecified directory.
network
microsoft CWE-426
6.8
2018-06-25 CVE-2018-10956 Path Traversal vulnerability in Ipconfigure Orchid Core VMS 2.0.5
IPConfigure Orchid Core VMS 2.0.5 allows Directory Traversal.
network
low complexity
ipconfigure linux microsoft CWE-22
5.0