Vulnerabilities > Microsoft > Windows > Critical

DATE CVE VULNERABILITY TITLE RISK
2021-08-12 CVE-2021-36958 Unspecified vulnerability in Microsoft Windows
Windows Print Spooler Remote Code Execution Vulnerability This CVE ID is unique from CVE-2021-36936, CVE-2021-36947.
network
microsoft
critical
9.3
2020-10-16 CVE-2019-19513 Out-of-bounds Write vulnerability in Un4Seen Bassmidi
The BASSMIDI plugin 2.4.12.1 for Un4seen BASS Audio Library on Windows is prone to an out of bounds write vulnerability.
network
low complexity
un4seen microsoft CWE-787
critical
10.0
2020-01-10 CVE-2012-4603 Improper Input Validation vulnerability in Citrix Receiver and Xenapp Online
Citrix XenApp Online Plug-in for Windows 12.1 and earlier, and Citrix Receiver for Windows 3.2 and earlier could allow remote attackers to execute arbitrary code by convincing a target to open a specially crafted file from an SMB or WebDAV fileserver.
network
citrix microsoft CWE-20
critical
9.3
2020-01-09 CVE-2012-2950 Unrestricted Upload of File with Dangerous Type vulnerability in Gatewaygeomatics Mapserver
Gateway Geomatics MapServer for Windows before 3.0.6 contains a Local File Include Vulnerability which allows remote attackers to execute local PHP code and obtain sensitive information.
9.3
2019-09-05 CVE-2019-1939 Improper Privilege Management vulnerability in Cisco Webex Teams
A vulnerability in the Cisco Webex Teams client for Windows could allow an unauthenticated, remote attacker to execute arbitrary commands on an affected system.
network
cisco microsoft CWE-269
critical
9.3
2019-08-28 CVE-2019-15752 Incorrect Permission Assignment for Critical Resource vulnerability in Docker
Docker Desktop Community Edition before 2.1.0.1 allows local users to gain privileges by placing a Trojan horse docker-credential-wincred.exe file in %PROGRAMDATA%\DockerDesktop\version-bin\ as a low-privilege user, and then waiting for an admin or service user to authenticate with Docker, restart Docker, or run 'docker login' to force the command.
network
docker microsoft CWE-732
critical
9.3
2019-08-16 CVE-2019-7958 Incorrect Permission Assignment for Critical Resource vulnerability in Adobe Creative Cloud
Creative Cloud Desktop Application versions 4.6.1 and earlier have an insecure inherited permissions vulnerability.
network
low complexity
adobe apple microsoft CWE-732
critical
10.0
2019-08-16 CVE-2019-7959 Improper Input Validation vulnerability in Adobe Creative Cloud
Creative Cloud Desktop Application versions 4.6.1 and earlier have a using components with known vulnerabilities vulnerability.
network
low complexity
adobe apple microsoft CWE-20
critical
10.0
2019-08-06 CVE-2019-5684 Out-of-bounds Write vulnerability in Nvidia GPU Driver
NVIDIA Windows GPU Display Driver (all versions) contains a vulnerability in DirectX drivers, in which a specially crafted shader can cause an out of bounds access of an input texture array, which may lead to denial of service or code execution.
network
low complexity
nvidia microsoft CWE-787
critical
10.0
2019-08-06 CVE-2019-5685 Out-of-bounds Write vulnerability in Nvidia GPU Driver
NVIDIA Windows GPU Display Driver (all versions) contains a vulnerability in DirectX drivers, in which a specially crafted shader can cause an out of bounds access to a shader local temporary array, which may lead to denial of service or code execution.
network
low complexity
nvidia microsoft CWE-787
critical
10.0