Vulnerabilities > Microsoft > Windows > Medium

DATE CVE VULNERABILITY TITLE RISK
2017-04-12 CVE-2017-3020 Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability in Adobe products
Adobe Acrobat Reader versions 11.0.19 and earlier, 15.006.30280 and earlier, 15.023.20070 and earlier have a memory address leak vulnerability in the weblink module.
4.3
2017-04-12 CVE-2017-3007 Untrusted Search Path vulnerability in Adobe Creative Cloud
Adobe Thor versions 3.9.5.353 and earlier have a vulnerability in the directory search path used to find resources, related to Creative Cloud desktop applications.
local
low complexity
adobe microsoft CWE-426
4.6
2017-04-02 CVE-2017-2479 Improper Input Validation vulnerability in Apple products
An issue was discovered in certain Apple products.
4.3
2017-04-02 CVE-2017-2463 Use After Free vulnerability in Apple products
An issue was discovered in certain Apple products.
6.8
2017-03-08 CVE-2017-6543 Unspecified vulnerability in Tenable Appliance and Nessus
Tenable Nessus before 6.10.2 (as used alone or in Tenable Appliance before 4.5.0) was found to contain a flaw that allowed a remote, authenticated attacker to upload a crafted file that could be written to anywhere on the system.
network
tenable microsoft
6.0
2017-02-15 CVE-2017-0320 Unspecified vulnerability in Nvidia GPU Driver
All versions of NVIDIA Windows GPU Display Driver contain a vulnerability in the kernel mode layer handler where improper handling of values may cause a denial of service on the system.
local
low complexity
nvidia microsoft
4.9
2017-02-15 CVE-2017-0319 Unspecified vulnerability in Nvidia GPU Driver
All versions of NVIDIA Windows GPU Display Driver contain a vulnerability in the kernel mode layer handler where improper handling of values may cause a denial of service on the system.
local
low complexity
nvidia microsoft
4.9
2017-02-15 CVE-2017-0318 Improper Input Validation vulnerability in Nvidia GPU Driver
All versions of NVIDIA Linux GPU Display Driver contain a vulnerability in the kernel mode layer handler where improper validation of an input parameter may cause a denial of service on the system.
local
low complexity
nvidia freebsd microsoft oracle CWE-20
4.9
2017-02-15 CVE-2017-0317 Incorrect Permission Assignment for Critical Resource vulnerability in Nvidia GPU Driver
All versions of NVIDIA GPU and GeForce Experience installer contain a vulnerability where it fails to set proper permissions on the package extraction path thus allowing a non-privileged user to tamper with the extracted files, potentially leading to escalation of privileges via code execution.
6.9
2017-02-15 CVE-2017-0310 Improper Privilege Management vulnerability in Nvidia GPU Driver
All versions of NVIDIA GPU Display Driver contain a vulnerability in the kernel mode layer handler where improper access controls allowing unprivileged user to cause a denial of service.
local
low complexity
nvidia freebsd linux microsoft oracle CWE-269
4.9