Security News

CVE-2019-0837 (windows_10, windows_server_2016)

National Vulnerability Database - Tue, 04/09/2019 - 17:29
An information disclosure vulnerability exists when DirectX improperly handles objects in memory, aka 'DirectX Information Disclosure Vulnerability'.
Categories: Security News

CVE-2019-0838

National Vulnerability Database - Tue, 04/09/2019 - 17:29
An information disclosure vulnerability exists when Windows Task Scheduler improperly discloses credentials to Windows Credential Manager, aka 'Windows Information Disclosure Vulnerability'. This CVE ID is unique from CVE-2019-0839.
Categories: Security News

CVE-2019-0839

National Vulnerability Database - Tue, 04/09/2019 - 17:29
An information disclosure vulnerability exists when the Terminal Services component improperly discloses the contents of its memory, aka 'Windows Information Disclosure Vulnerability'. This CVE ID is unique from CVE-2019-0838.
Categories: Security News

CVE-2019-0840

National Vulnerability Database - Tue, 04/09/2019 - 17:29
An information disclosure vulnerability exists when the Windows kernel improperly handles objects in memory, aka 'Windows Kernel Information Disclosure Vulnerability'. This CVE ID is unique from CVE-2019-0844.
Categories: Security News

CVE-2019-0841

National Vulnerability Database - Tue, 04/09/2019 - 17:29
An elevation of privilege vulnerability exists when Windows AppX Deployment Service (AppXSVC) improperly handles hard links, aka 'Windows Elevation of Privilege Vulnerability'. This CVE ID is unique from CVE-2019-0730, CVE-2019-0731, CVE-2019-0796, CVE-2019-0805, CVE-2019-0836.
Categories: Security News

CVE-2018-1356 (fortisandbox)

National Vulnerability Database - Tue, 04/09/2019 - 17:29
A reflected Cross-Site-Scripting (XSS) vulnerability in Fortinet FortiSandbox before 3.0 may allow an attacker to execute unauthorized code or commands via the back_url parameter in the file scan component.
Categories: Security News

CVE-2019-0685

National Vulnerability Database - Tue, 04/09/2019 - 17:29
An elevation of privilege vulnerability exists in Windows when the Win32k component fails to properly handle objects in memory, aka 'Win32k Elevation of Privilege Vulnerability'. This CVE ID is unique from CVE-2019-0803, CVE-2019-0859.
Categories: Security News

CVE-2019-0688

National Vulnerability Database - Tue, 04/09/2019 - 17:29
An information disclosure vulnerability exists when the Windows TCP/IP stack improperly handles fragmented IP packets, aka 'Windows TCP/IP Information Disclosure Vulnerability'.
Categories: Security News

CVE-2019-0730

National Vulnerability Database - Tue, 04/09/2019 - 17:29
An elevation of privilege vulnerability exists when Windows improperly handles calls to the LUAFV driver (luafv.sys), aka 'Windows Elevation of Privilege Vulnerability'. This CVE ID is unique from CVE-2019-0731, CVE-2019-0796, CVE-2019-0805, CVE-2019-0836, CVE-2019-0841.
Categories: Security News

CVE-2019-0731

National Vulnerability Database - Tue, 04/09/2019 - 17:29
An elevation of privilege vulnerability exists when Windows improperly handles calls to the LUAFV driver (luafv.sys), aka 'Windows Elevation of Privilege Vulnerability'. This CVE ID is unique from CVE-2019-0730, CVE-2019-0796, CVE-2019-0805, CVE-2019-0836, CVE-2019-0841.
Categories: Security News

CVE-2019-0732

National Vulnerability Database - Tue, 04/09/2019 - 17:29
A security feature bypass vulnerability exists in Windows which could allow an attacker to bypass Device Guard when Windows improperly handles calls to the LUAFV driver (luafv.sys), aka 'Windows Security Feature Bypass Vulnerability'.
Categories: Security News

CVE-2019-0735

National Vulnerability Database - Tue, 04/09/2019 - 17:29
An elevation of privilege vulnerability exists when the Windows Client Server Run-Time Subsystem (CSRSS) fails to properly handle objects in memory, aka 'Windows CSRSS Elevation of Privilege Vulnerability'.
Categories: Security News

CVE-2019-0739

National Vulnerability Database - Tue, 04/09/2019 - 17:29
A remote code execution vulnerability exists in the way that the scripting engine handles objects in memory in Microsoft Edge, aka 'Scripting Engine Memory Corruption Vulnerability'. This CVE ID is unique from CVE-2019-0752, CVE-2019-0753, CVE-2019-0862.
Categories: Security News

CVE-2019-0752

National Vulnerability Database - Tue, 04/09/2019 - 17:29
A remote code execution vulnerability exists in the way that the scripting engine handles objects in memory in Internet Explorer, aka 'Scripting Engine Memory Corruption Vulnerability'. This CVE ID is unique from CVE-2019-0739, CVE-2019-0753, CVE-2019-0862.
Categories: Security News

CVE-2019-0753

National Vulnerability Database - Tue, 04/09/2019 - 17:29
A remote code execution vulnerability exists in the way that the scripting engine handles objects in memory in Internet Explorer, aka 'Scripting Engine Memory Corruption Vulnerability'. This CVE ID is unique from CVE-2019-0739, CVE-2019-0752, CVE-2019-0862.
Categories: Security News

CVE-2019-0764

National Vulnerability Database - Tue, 04/09/2019 - 17:29
A tampering vulnerability exists when Microsoft browsers do not properly validate input under specific conditions, aka 'Microsoft Browsers Tampering Vulnerability'.
Categories: Security News

CVE-2019-0786

National Vulnerability Database - Tue, 04/09/2019 - 17:29
An elevation of privilege vulnerability exists in the Microsoft Server Message Block (SMB) Server when an attacker with valid credentials attempts to open a specially crafted file over the SMB protocol on the same machine, aka 'SMB Server Elevation of Privilege Vulnerability'.
Categories: Security News

CVE-2019-0790

National Vulnerability Database - Tue, 04/09/2019 - 17:29
A remote code execution vulnerability exists when the Microsoft XML Core Services MSXML parser processes user input, aka 'MS XML Remote Code Execution Vulnerability'. This CVE ID is unique from CVE-2019-0791, CVE-2019-0792, CVE-2019-0793, CVE-2019-0795.
Categories: Security News

CVE-2019-0791

National Vulnerability Database - Tue, 04/09/2019 - 17:29
A remote code execution vulnerability exists when the Microsoft XML Core Services MSXML parser processes user input, aka 'MS XML Remote Code Execution Vulnerability'. This CVE ID is unique from CVE-2019-0790, CVE-2019-0792, CVE-2019-0793, CVE-2019-0795.
Categories: Security News

CVE-2019-0792

National Vulnerability Database - Tue, 04/09/2019 - 17:29
A remote code execution vulnerability exists when the Microsoft XML Core Services MSXML parser processes user input, aka 'MS XML Remote Code Execution Vulnerability'. This CVE ID is unique from CVE-2019-0790, CVE-2019-0791, CVE-2019-0793, CVE-2019-0795.
Categories: Security News

Pages