cbcvebase.

Microsoft Windows vulnerabilities

459 known vulnerabilities affecting microsoft/windows.

Total CVEs
459
CISA KEV
22
actively exploited
Public exploits
29
Exploited in wild
30
Severity breakdown
CRITICAL12HIGH301MEDIUM144LOW2

Vulnerabilities

Page 22 of 23
CVE-2018-12207P4MEDIUMCVSS 6.5v7 for 32-bit Systems Service Pack 1v7 for x64-based Systems Service Pack 1+16 more2019-11-14
CVE-2018-12207 [MEDIUM] CWE-20 CVE-2018-12207: Improper invalidation for page table updates by a virtual guest operating system for multiple Intel( Improper invalidation for page table updates by a virtual guest operating system for multiple Intel(R) Processors may allow an authenticated user to potentially enable denial of service of the host system via local access.
nvd
CVE-2019-1480P4MEDIUMCVSS 4.3v7 for 32-bit Systems Service Pack 1v7 for x64-based Systems Service Pack 12019-12-10
CVE-2019-1480 [MEDIUM] CWE-125 CVE-2019-1480: An information disclosure vulnerability exists in Windows Media Player when it fails to properly han An information disclosure vulnerability exists in Windows Media Player when it fails to properly handle objects in memory, aka 'Windows Media Player Information Disclosure Vulnerability'. This CVE ID is unique from CVE-2019-1481.
nvd
CVE-2019-1091P4MEDIUMCVSS 5.5v10 for 32-bit Systemsv10 for x64-based Systems+13 more2019-07-15
CVE-2019-1091 [MEDIUM] CWE-200 CVE-2019-1091: An information disclosure vulnerability exists when Unistore.dll fails to properly handle objects in An information disclosure vulnerability exists when Unistore.dll fails to properly handle objects in memory, aka 'Microsoft unistore.dll Information Disclosure Vulnerability'.
nvd
CVE-2020-0699P4MEDIUMCVSS 5.5v10 Version 1803 for 32-bit Systemsv10 Version 1803 for x64-based Systems+16 more2020-04-15
CVE-2020-0699 [MEDIUM] CVE-2020-0699: An information disclosure vulnerability exists when the win32k component improperly provides kernel An information disclosure vulnerability exists when the win32k component improperly provides kernel information, aka 'Win32k Information Disclosure Vulnerability'. This CVE ID is unique from CVE-2020-0962.
nvd
CVE-2020-0821P4MEDIUMCVSS 5.5v10 Version 1803 for 32-bit Systemsv10 Version 1803 for x64-based Systems+16 more2020-04-15
CVE-2020-0821 [MEDIUM] CVE-2020-0821: An information disclosure vulnerability exists when the Windows kernel improperly handles objects in An information disclosure vulnerability exists when the Windows kernel improperly handles objects in memory, aka 'Windows Kernel Information Disclosure Vulnerability'. This CVE ID is unique from CVE-2020-1007.
nvd
CVE-2020-0736P4MEDIUMCVSS 5.5v7 for 32-bit Systems Service Pack 1v7 for x64-based Systems Service Pack 12020-02-11
CVE-2020-0736 [MEDIUM] CVE-2020-0736: An information disclosure vulnerability exists when the Windows kernel improperly handles objects in An information disclosure vulnerability exists when the Windows kernel improperly handles objects in memory, aka 'Windows Kernel Information Disclosure Vulnerability'.
nvd
CVE-2020-0698P4MEDIUMCVSS 5.5v10 Version 1803 for 32-bit Systemsv10 Version 1803 for x64-based Systems+16 more2020-02-11
CVE-2020-0698 [MEDIUM] CVE-2020-0698: An information disclosure vulnerability exists when the Telephony Service improperly discloses the c An information disclosure vulnerability exists when the Telephony Service improperly discloses the contents of its memory, aka 'Windows Information Disclosure Vulnerability'.
nvd
CVE-2020-0716P4MEDIUMCVSS 5.5v10 Version 1803 for 32-bit Systemsv10 Version 1803 for x64-based Systems+7 more2020-02-11
CVE-2020-0716 [MEDIUM] CVE-2020-0716: An information disclosure vulnerability exists when the win32k component improperly provides kernel An information disclosure vulnerability exists when the win32k component improperly provides kernel information, aka 'Win32k Information Disclosure Vulnerability'. This CVE ID is unique from CVE-2020-0717.
nvd
CVE-2020-1351P4MEDIUMCVSS 5.5v10 Version 1803 for 32-bit Systemsv10 Version 1803 for x64-based Systems+16 more2020-07-14
CVE-2020-1351 [MEDIUM] CVE-2020-1351: An information disclosure vulnerability exists when the Windows Graphics component improperly handle An information disclosure vulnerability exists when the Windows Graphics component improperly handles objects in memory, aka 'Microsoft Graphics Component Information Disclosure Vulnerability'.
nvd
CVE-2020-0982P4MEDIUMCVSS 5.5v10 Version 1803 for 32-bit Systemsv10 Version 1803 for x64-based Systems+16 more2020-04-15
CVE-2020-0982 [MEDIUM] CVE-2020-0982: An information disclosure vulnerability exists when the Microsoft Windows Graphics Component imprope An information disclosure vulnerability exists when the Microsoft Windows Graphics Component improperly handles objects in memory, aka 'Microsoft Graphics Component Information Disclosure Vulnerability'. This CVE ID is unique from CVE-2020-0987, CVE-2020-1005.
nvd
CVE-2020-0608P4MEDIUMCVSS 5.5v10 Version 1803 for 32-bit Systemsv10 Version 1803 for x64-based Systems+16 more2020-01-14
CVE-2020-0608 [MEDIUM] CVE-2020-0608: An information disclosure vulnerability exists when the win32k component improperly provides kernel An information disclosure vulnerability exists when the win32k component improperly provides kernel information, aka 'Win32k Information Disclosure Vulnerability'.
nvd
CVE-2019-1409P4MEDIUMCVSS 5.5v7 for 32-bit Systems Service Pack 1v7 for x64-based Systems Service Pack 1+16 more2019-11-12
CVE-2019-1409 [MEDIUM] CWE-665 CVE-2019-1409: An information disclosure vulnerability exists when the Windows Remote Procedure Call (RPC) runtime An information disclosure vulnerability exists when the Windows Remote Procedure Call (RPC) runtime improperly initializes objects in memory, aka 'Windows Remote Procedure Call Information Disclosure Vulnerability'.
nvd
CVE-2020-0622P4MEDIUMCVSS 5.5v10 Version 1803 for 32-bit Systemsv10 Version 1803 for x64-based Systems+8 more2020-01-14
CVE-2020-0622 [MEDIUM] CVE-2020-0622: An information disclosure vulnerability exists when the Microsoft Windows Graphics Component imprope An information disclosure vulnerability exists when the Microsoft Windows Graphics Component improperly handles objects in memory, aka 'Microsoft Graphics Component Information Disclosure Vulnerability'.
nvd
CVE-2020-0820P4MEDIUMCVSS 5.5v10 Version 1803 for 32-bit Systemsv10 Version 1803 for x64-based Systems+11 more2020-03-12
CVE-2020-0820 [MEDIUM] CVE-2020-0820: An information disclosure vulnerability exists when Media Foundation improperly handles objects in m An information disclosure vulnerability exists when Media Foundation improperly handles objects in memory, aka 'Media Foundation Information Disclosure Vulnerability'.
nvd
CVE-2020-1296P4MEDIUMCVSS 5.5v10 Version 1809 for 32-bit Systemsv10 Version 1809 for x64-based Systems+1 more2020-06-09
CVE-2020-1296 [MEDIUM] CVE-2020-1296: A vulnerability exists in the way the Windows Diagnostics & feedback settings app handles object A vulnerability exists in the way the Windows Diagnostics & feedback settings app handles objects in memory, aka 'Windows Diagnostics & feedback Information Disclosure Vulnerability'.
nvd
CVE-2020-1367P4MEDIUMCVSS 5.5v10 Version 1803 for 32-bit Systemsv10 Version 1803 for x64-based Systems+4 more2020-07-14
CVE-2020-1367 [MEDIUM] CVE-2020-1367: An information disclosure vulnerability exists when the Windows kernel improperly handles objects in An information disclosure vulnerability exists when the Windows kernel improperly handles objects in memory, aka 'Windows Kernel Information Disclosure Vulnerability'. This CVE ID is unique from CVE-2020-1389, CVE-2020-1419, CVE-2020-1426.
nvd
CVE-2020-1290P4MEDIUMCVSS 5.5v10 Version 1803 for 32-bit Systemsv10 Version 1803 for x64-based Systems+7 more2020-06-09
CVE-2020-1290 [MEDIUM] CVE-2020-1290: An information disclosure vulnerability exists when the win32k component improperly provides kernel An information disclosure vulnerability exists when the win32k component improperly provides kernel information, aka 'Win32k Information Disclosure Vulnerability'.
nvd
CVE-2020-1072P4MEDIUMCVSS 5.5v10 Version 1803 for 32-bit Systemsv10 Version 1803 for x64-based Systems+16 more2020-05-21
CVE-2020-1072 [MEDIUM] CVE-2020-1072: An information disclosure vulnerability exists when the Windows kernel improperly handles objects in An information disclosure vulnerability exists when the Windows kernel improperly handles objects in memory, aka 'Windows Kernel Information Disclosure Vulnerability'.
nvd
CVE-2020-0779P4MEDIUMCVSS 5.5v10 Version 1803 for 32-bit Systemsv10 Version 1803 for x64-based Systems+16 more2020-03-12
CVE-2020-0779 [MEDIUM] CWE-59 CVE-2020-0779: An elevation of privilege vulnerability exists in the Windows Installer when MSI packages process sy An elevation of privilege vulnerability exists in the Windows Installer when MSI packages process symbolic links, aka 'Windows Installer Elevation of Privilege Vulnerability'. This CVE ID is unique from CVE-2020-0798, CVE-2020-0814, CVE-2020-0842, CVE-2020-0843.
nvd
CVE-2019-1270P4MEDIUMCVSS 5.5v10 for 32-bit Systemsv10 for x64-based Systems+13 more2019-09-11
CVE-2019-1270 [MEDIUM] CWE-59 CVE-2019-1270: An elevation of privilege vulnerability exists in Windows store installer where WindowsApps director An elevation of privilege vulnerability exists in Windows store installer where WindowsApps directory is vulnerable to symbolic link attack, aka 'Microsoft Windows Store Installer Elevation of Privilege Vulnerability'.
nvd
Microsoft Windows vulnerabilities | cvebase