Microsoft Corporation Windows vulnerabilities

23 known vulnerabilities affecting microsoft_corporation/windows.

Total CVEs
23
CISA KEV
1
actively exploited
Public exploits
7
Exploited in wild
1
Severity breakdown
HIGH14MEDIUM7LOW2

Vulnerabilities

Page 2 of 2
CVE-2017-0188LOWCVSS 3.3vWindows 102017-04-12
CVE-2017-0188 [LOW] CWE-200 CVE-2017-0188: A Win32k information disclosure vulnerability exists in Windows 8.1, Windows RT 8.1, Windows Server A Win32k information disclosure vulnerability exists in Windows 8.1, Windows RT 8.1, Windows Server 2012, Windows Server 2012 R2, Windows 10, and Windows Server 2016 when the win32k component improperly provides kernel information. An attacker who successfully exploited the vulnerability could obtain information to further compromise the user's system, ak
nvd
CVE-2017-0102HIGHCVSS 7.8vWindows Vista SP2; Windows Server 2008 SP2 and R2; Windows 7 SP1; Windows 8.1, Windows Server 2012 Gold and R2, Windows RT 8.1; Windows 10 Gold, 1511, and 1607; and Windows Server 20162017-03-17
CVE-2017-0102 [HIGH] CWE-119 CVE-2017-0102: Microsoft Windows Vista SP2; Windows Server 2008 SP2 and R2; Windows 7 SP1; Windows 8.1, Windows Ser Microsoft Windows Vista SP2; Windows Server 2008 SP2 and R2; Windows 7 SP1; Windows 8.1, Windows Server 2012 Gold and R2, Windows RT 8.1; Windows 10 Gold, 1511, and 1607; and Windows Server 2016 let attackers with access to targets systems gain privileges when Windows fails to properly validate buffer lengths, aka "Windows Elevation of Privilege Vulnera
nvd
CVE-2017-0101HIGHCVSS 7.8KEVPoCvThe kernel-mode drivers in Transaction Manager in Microsoft Windows Vista SP2; Windows Server 2008 SP2 and R2; Windows 7 SP1; Windows 8.1, Windows Server 2012 Gold and R2, Windows RT 8.1; Windows 10 Gold, 1511, and 16072017-03-17
CVE-2017-0101 [HIGH] CWE-119 CVE-2017-0101: The kernel-mode drivers in Transaction Manager in Microsoft Windows Vista SP2; Windows Server 2008 S The kernel-mode drivers in Transaction Manager in Microsoft Windows Vista SP2; Windows Server 2008 SP2 and R2; Windows 7 SP1; Windows 8.1, Windows Server 2012 Gold and R2, Windows RT 8.1; Windows 10 Gold, 1511, and 1607; and Windows Server 2016 allow local users to gain privileges via a crafted application, aka "Windows Elevation of Privilege Vulnerabil
nvd