Microsoft Windows 10 Version 1709 vulnerabilities
269 known vulnerabilities affecting microsoft/windows_10_version_1709.
Total CVEs
269
CISA KEV
3
actively exploited
Public exploits
15
Exploited in wild
6
Severity breakdown
CRITICAL4HIGH200MEDIUM65
Vulnerabilities
Page 9 of 14
CVE-2020-1527P3HIGHCVSS 7.8≥ 10.0.0, < publication2020-08-17
CVE-2020-1527 [HIGH] CVE-2020-1527: An elevation of privilege vulnerability exists when the Windows Custom Protocol Engine improperly ha
An elevation of privilege vulnerability exists when the Windows Custom Protocol Engine improperly handles memory.
To exploit this vulnerability, an attacker would first have to gain execution on the victim system. An attacker could then run a specially crafted application to elevate privileges.
The security update addresses the vulnerability by correcting how t
nvd
CVE-2020-1559P3HIGHCVSS 7.8≥ 10.0.0, < publication2020-09-11
CVE-2020-1559 [HIGH] CVE-2020-1559: <p>An elevation of privilege vulnerability exists when the Windows Storage Services improperly handl
An elevation of privilege vulnerability exists when the Windows Storage Services improperly handle file operations. An attacker who successfully exploited this vulnerability could gain elevated privileges.
To exploit the vulnerability, an attacker would first need code execution on a victim system. An attacker could then run a specially crafted application.
The
nvd
CVE-2020-1556P3HIGHCVSS 7.8≥ 10.0.0, < publication2020-08-17
CVE-2020-1556 [HIGH] CVE-2020-1556: An elevation of privilege vulnerability exists in the way that the Windows WalletService handles obj
An elevation of privilege vulnerability exists in the way that the Windows WalletService handles objects in memory. An attacker who successfully exploited the vulnerability could execute code with elevated permissions.
To exploit the vulnerability, a locally authenticated attacker could run a specially crafted application.
The security update addresses the vuln
nvd
CVE-2020-16976P3HIGHCVSS 7.8≥ 10.0.0, < publication2020-10-16
CVE-2020-16976 [HIGH] CVE-2020-16976: <p>An elevation of privilege vulnerability exists when the Windows Backup Service improperly handles
An elevation of privilege vulnerability exists when the Windows Backup Service improperly handles file operations.
To exploit this vulnerability, an attacker would first have to gain execution on the victim system. An attacker could then run a specially crafted application to elevate privileges.
The security update addresses the vulnerability by correcting ho
nvd
CVE-2020-16876P3HIGHCVSS 7.8≥ 10.0.0, < publication2020-10-16
CVE-2020-16876 [HIGH] CVE-2020-16876: <p>An elevation of privilege vulnerability exists when the Windows Application Compatibility Client
An elevation of privilege vulnerability exists when the Windows Application Compatibility Client Library improperly handles registry operations. An attacker who successfully exploited this vulnerability could gain elevated privileges.
To exploit the vulnerability, an attacker would first need code execution on a victim system. An attacker could then run a spec
nvd
CVE-2020-1547P3HIGHCVSS 7.8≥ 10.0.0, < publication2020-08-17
CVE-2020-1547 [HIGH] CVE-2020-1547: An elevation of privilege vulnerability exists when the Windows Backup Engine improperly handles mem
An elevation of privilege vulnerability exists when the Windows Backup Engine improperly handles memory.
To exploit this vulnerability, an attacker would first have to gain execution on the victim system. An attacker could then run a specially crafted application to elevate privileges.
The security update addresses the vulnerability by correcting how the Window
nvd
CVE-2020-1541P3HIGHCVSS 7.8≥ 10.0.0, < publication2020-08-17
CVE-2020-1541 [HIGH] CVE-2020-1541: An elevation of privilege vulnerability exists when the Windows Backup Engine improperly handles mem
An elevation of privilege vulnerability exists when the Windows Backup Engine improperly handles memory.
To exploit this vulnerability, an attacker would first have to gain execution on the victim system. An attacker could then run a specially crafted application to elevate privileges.
The security update addresses the vulnerability by correcting how the Window
nvd
CVE-2020-1540P3HIGHCVSS 7.8≥ 10.0.0, < publication2020-08-17
CVE-2020-1540 [HIGH] CVE-2020-1540: An elevation of privilege vulnerability exists when the Windows Backup Engine improperly handles mem
An elevation of privilege vulnerability exists when the Windows Backup Engine improperly handles memory.
To exploit this vulnerability, an attacker would first have to gain execution on the victim system. An attacker could then run a specially crafted application to elevate privileges.
The security update addresses the vulnerability by correcting how the Window
nvd
CVE-2020-1513P3HIGHCVSS 7.8≥ 10.0.0, < publication2020-08-17
CVE-2020-1513 [HIGH] CVE-2020-1513: An elevation of privilege vulnerability exists when the Windows CSC Service improperly handles memor
An elevation of privilege vulnerability exists when the Windows CSC Service improperly handles memory.
To exploit this vulnerability, an attacker would first have to gain execution on the victim system. An attacker could then run a specially crafted application to elevate privileges.
The security update addresses the vulnerability by correcting how the Windows
nvd
CVE-2020-1546P3HIGHCVSS 7.8≥ 10.0.0, < publication2020-08-17
CVE-2020-1546 [HIGH] CVE-2020-1546: An elevation of privilege vulnerability exists when the Windows Backup Engine improperly handles mem
An elevation of privilege vulnerability exists when the Windows Backup Engine improperly handles memory.
To exploit this vulnerability, an attacker would first have to gain execution on the victim system. An attacker could then run a specially crafted application to elevate privileges.
The security update addresses the vulnerability by correcting how the Window
nvd
CVE-2020-1533P3HIGHCVSS 7.8≥ 10.0.0, < publication2020-08-17
CVE-2020-1533 [HIGH] CVE-2020-1533: An elevation of privilege vulnerability exists in the way that the Windows WalletService handles obj
An elevation of privilege vulnerability exists in the way that the Windows WalletService handles objects in memory. An attacker who successfully exploited the vulnerability could execute code with elevated permissions.
To exploit the vulnerability, a locally authenticated attacker could run a specially crafted application.
The security update addresses the vuln
nvd
CVE-2020-1545P3HIGHCVSS 7.8≥ 10.0.0, < publication2020-08-17
CVE-2020-1545 [HIGH] CVE-2020-1545: An elevation of privilege vulnerability exists when the Windows Backup Engine improperly handles mem
An elevation of privilege vulnerability exists when the Windows Backup Engine improperly handles memory.
To exploit this vulnerability, an attacker would first have to gain execution on the victim system. An attacker could then run a specially crafted application to elevate privileges.
The security update addresses the vulnerability by correcting how the Window
nvd
CVE-2020-1516P3HIGHCVSS 7.8≥ 10.0.0, < publication2020-08-17
CVE-2020-1516 [HIGH] CVE-2020-1516: An elevation of privilege vulnerability exists when the Windows Work Folders Service improperly hand
An elevation of privilege vulnerability exists when the Windows Work Folders Service improperly handles memory.
To exploit this vulnerability, an attacker would first have to gain execution on the victim system. An attacker could then run a specially crafted application to elevate privileges.
The security update addresses the vulnerability by correcting how the
nvd
CVE-2020-1539P3HIGHCVSS 7.8≥ 10.0.0, < publication2020-08-17
CVE-2020-1539 [HIGH] CVE-2020-1539: An elevation of privilege vulnerability exists when the Windows Backup Engine improperly handles mem
An elevation of privilege vulnerability exists when the Windows Backup Engine improperly handles memory.
To exploit this vulnerability, an attacker would first have to gain execution on the victim system. An attacker could then run a specially crafted application to elevate privileges.
The security update addresses the vulnerability by correcting how the Window
nvd
CVE-2020-1489P3HIGHCVSS 7.8≥ 10.0.0, < publication2020-08-17
CVE-2020-1489 [HIGH] CVE-2020-1489: An elevation of privilege vulnerability exists when the Windows CSC Service improperly handles memor
An elevation of privilege vulnerability exists when the Windows CSC Service improperly handles memory.
To exploit this vulnerability, an attacker would first have to gain execution on the victim system. An attacker could then run a specially crafted application to elevate privileges.
The security update addresses the vulnerability by correcting how the Windows
nvd
CVE-2020-1544P3HIGHCVSS 7.8≥ 10.0.0, < publication2020-08-17
CVE-2020-1544 [HIGH] CVE-2020-1544: An elevation of privilege vulnerability exists when the Windows Backup Engine improperly handles mem
An elevation of privilege vulnerability exists when the Windows Backup Engine improperly handles memory.
To exploit this vulnerability, an attacker would first have to gain execution on the victim system. An attacker could then run a specially crafted application to elevate privileges.
The security update addresses the vulnerability by correcting how the Window
nvd
CVE-2020-1535P3HIGHCVSS 7.8≥ 10.0.0, < publication2020-08-17
CVE-2020-1535 [HIGH] CVE-2020-1535: An elevation of privilege vulnerability exists when the Windows Backup Engine improperly handles mem
An elevation of privilege vulnerability exists when the Windows Backup Engine improperly handles memory.
To exploit this vulnerability, an attacker would first have to gain execution on the victim system. An attacker could then run a specially crafted application to elevate privileges.
The security update addresses the vulnerability by correcting how the Window
nvd
CVE-2020-16892P3HIGHCVSS 7.8≥ 10.0.0, < publication2020-10-16
CVE-2020-16892 [HIGH] CVE-2020-16892: <p>An elevation of privilege vulnerability exists in the way that the Windows kernel image handles o
An elevation of privilege vulnerability exists in the way that the Windows kernel image handles objects in memory.
An attacker who successfully exploited the vulnerability could execute code with elevated permissions.
To exploit the vulnerability, a locally authenticated attacker could run a specially crafted application.
The security update addresses the vul
nvd
CVE-2020-16975P3HIGHCVSS 7.8≥ 10.0.0, < publication2020-10-16
CVE-2020-16975 [HIGH] CVE-2020-16975: <p>An elevation of privilege vulnerability exists when the Windows Backup Service improperly handles
An elevation of privilege vulnerability exists when the Windows Backup Service improperly handles file operations.
To exploit this vulnerability, an attacker would first have to gain execution on the victim system. An attacker could then run a specially crafted application to elevate privileges.
The security update addresses the vulnerability by correcting ho
nvd
CVE-2020-16912P3HIGHCVSS 7.8≥ 10.0.0, < publication2020-10-16
CVE-2020-16912 [HIGH] CVE-2020-16912: <p>An elevation of privilege vulnerability exists when the Windows Backup Service improperly handles
An elevation of privilege vulnerability exists when the Windows Backup Service improperly handles file operations.
To exploit this vulnerability, an attacker would first have to gain execution on the victim system. An attacker could then run a specially crafted application to elevate privileges.
The security update addresses the vulnerability by correcting ho
nvd