Msrc Windows 10 Version 1903 vulnerabilities
891 known vulnerabilities affecting msrc/windows_10_version_1903.
Total CVEs
891
CISA KEV
21
actively exploited
Public exploits
35
Exploited in wild
23
Severity breakdown
CRITICAL4HIGH655MEDIUM228LOW4
Vulnerabilities
Page 3 of 45
CVE-2020-17087HIGHCVSS 7.8KEV2020-11-10
CVE-2020-17087 [HIGH] Windows Kernel Local Elevation of Privilege Vulnerability
Windows Kernel Local Elevation of Privilege Vulnerability
Windows Kernel: Windows Kernel
Microsoft: Microsoft
Customer Action Required: Yes
Impact: Elevation of Privilege
Exploit Status: Publicly Disclosed:Yes;Exploited:Yes;Latest Software Release:Exploitation Detected;Older Software Release:Exploitation Detected;DOS:N/A
Reference: https://catalog.update.microsoft.com/v7/site/Search.aspx?q=KB4586785
Reference:
msrc
CVE-2020-17043HIGHCVSS 7.82020-11-10
CVE-2020-17043 [HIGH] Windows Remote Access Elevation of Privilege Vulnerability
Windows Remote Access Elevation of Privilege Vulnerability
Microsoft Windows: Microsoft Windows
Microsoft: Microsoft
Customer Action Required: Yes
Impact: Elevation of Privilege
Exploit Status: Publicly Disclosed:No;Exploited:No;Latest Software Release:Exploitation Less Likely;Older Software Release:Exploitation Less Likely;DOS:N/A
Reference: https://catalog.update.microsoft.com/v7/site/Search.aspx?q=KB4586785
msrc
CVE-2020-17026HIGHCVSS 7.82020-11-10
CVE-2020-17026 [HIGH] Windows Remote Access Elevation of Privilege Vulnerability
Windows Remote Access Elevation of Privilege Vulnerability
Microsoft Windows: Microsoft Windows
Microsoft: Microsoft
Customer Action Required: Yes
Impact: Elevation of Privilege
Exploit Status: Publicly Disclosed:No;Exploited:No;Latest Software Release:Exploitation Less Likely;Older Software Release:Exploitation Less Likely;DOS:N/A
Reference: https://catalog.update.microsoft.com/v7/site/Search.aspx?q=KB4586785
msrc
CVE-2020-17047HIGHCVSS 7.52020-11-10
CVE-2020-17047 [HIGH] Windows Network File System Denial of Service Vulnerability
Windows Network File System Denial of Service Vulnerability
Microsoft Windows: Microsoft Windows
Microsoft: Microsoft
Customer Action Required: Yes
Impact: Denial of Service
Exploit Status: Publicly Disclosed:No;Exploited:No;Latest Software Release:Exploitation Less Likely;Older Software Release:Exploitation Less Likely;DOS:N/A
Reference: https://catalog.update.microsoft.com/v7/site/Search.aspx?q=KB4586781
R
msrc
CVE-2020-17033HIGHCVSS 7.82020-11-10
CVE-2020-17033 [HIGH] Windows Remote Access Elevation of Privilege Vulnerability
Windows Remote Access Elevation of Privilege Vulnerability
Microsoft Windows: Microsoft Windows
Microsoft: Microsoft
Customer Action Required: Yes
Impact: Elevation of Privilege
Exploit Status: Publicly Disclosed:No;Exploited:No;Latest Software Release:Exploitation Less Likely;Older Software Release:Exploitation Less Likely;DOS:N/A
Reference: https://catalog.update.microsoft.com/v7/site/Search.aspx?q=KB4586785
msrc
CVE-2020-16997HIGHCVSS 7.72020-11-10
CVE-2020-16997 [HIGH] Remote Desktop Protocol Server Information Disclosure Vulnerability
Remote Desktop Protocol Server Information Disclosure Vulnerability
FAQ: What type of information could be disclosed by this vulnerability?
The type of information that could be disclosed if an attacker successfully exploited this vulnerability is unauthorized read access to Windows RDP server process.
Microsoft Windows: Microsoft Windows
Microsoft: Microsoft
Customer Action Required: Yes
Impact: Infor
msrc
CVE-2020-17070HIGHCVSS 7.82020-11-10
CVE-2020-17070 [HIGH] Windows Update Medic Service Elevation of Privilege Vulnerability
Windows Update Medic Service Elevation of Privilege Vulnerability
Windows Update Stack: Windows Update Stack
Microsoft: Microsoft
Customer Action Required: Yes
Impact: Elevation of Privilege
Exploit Status: Publicly Disclosed:No;Exploited:No;Latest Software Release:Exploitation Less Likely;Older Software Release:Exploitation Less Likely;DOS:N/A
Reference: https://catalog.update.microsoft.com/v7/site/Sea
msrc
CVE-2020-17014HIGHCVSS 7.82020-11-10
CVE-2020-17014 [HIGH] Windows Print Spooler Elevation of Privilege Vulnerability
Windows Print Spooler Elevation of Privilege Vulnerability
Microsoft Windows: Microsoft Windows
Microsoft: Microsoft
Customer Action Required: Yes
Impact: Elevation of Privilege
Exploit Status: Publicly Disclosed:No;Exploited:No;Latest Software Release:Exploitation Less Likely;Older Software Release:Exploitation Less Likely;DOS:N/A
Reference: https://catalog.update.microsoft.com/v7/site/Search.aspx?q=KB4586786
msrc
CVE-2020-17030MEDIUMCVSS 5.52020-11-10
CVE-2020-17030 [MEDIUM] Windows MSCTF Server Information Disclosure Vulnerability
Windows MSCTF Server Information Disclosure Vulnerability
FAQ: What type of information could be disclosed by this vulnerability?
The type of information that could be disclosed if an attacker successfully exploited this vulnerability is memory layout - the vulnerability allows an attacker to collect information that facilitates predicting addressing of the memory.
Microsoft Windows: Microsoft Windows
Microsoft:
msrc
CVE-2020-17029MEDIUMCVSS 5.52020-11-10
CVE-2020-17029 [MEDIUM] Windows Canonical Display Driver Information Disclosure Vulnerability
Windows Canonical Display Driver Information Disclosure Vulnerability
FAQ: What type of information could be disclosed by this vulnerability?
The type of information that could be disclosed if an attacker successfully exploited this vulnerability is memory layout - the vulnerability allows an attacker to collect information that facilitates predicting addressing of the memory.
Microsoft Graphics Compo
msrc
CVE-2020-17046MEDIUMCVSS 5.52020-11-10
CVE-2020-17046 [MEDIUM] Windows Error Reporting Denial of Service Vulnerability
Windows Error Reporting Denial of Service Vulnerability
Microsoft Windows: Microsoft Windows
Microsoft: Microsoft
Customer Action Required: Yes
Impact: Denial of Service
Exploit Status: Publicly Disclosed:No;Exploited:No;Latest Software Release:Exploitation Less Likely;Older Software Release:Exploitation Less Likely;DOS:N/A
Reference: https://catalog.update.microsoft.com/v7/site/Search.aspx?q=KB4586781
Referen
msrc
CVE-2020-17004MEDIUMCVSS 5.52020-11-10
CVE-2020-17004 [MEDIUM] Windows Graphics Component Information Disclosure Vulnerability
Windows Graphics Component Information Disclosure Vulnerability
FAQ: What type of information could be disclosed by this vulnerability?
The type of information that could be disclosed if an attacker successfully exploited this vulnerability is the contents of Kernel memory. An attacker could read the contents of Kernel memory from a user mode process.
Microsoft Graphics Component: Microsoft Graphics Compone
msrc
CVE-2020-1599MEDIUMCVSS 5.52020-11-10
CVE-2020-1599 [MEDIUM] Windows Spoofing Vulnerability
Windows Spoofing Vulnerability
Microsoft Windows: Microsoft Windows
Microsoft: Microsoft
Customer Action Required: Yes
Impact: Spoofing
Exploit Status: Publicly Disclosed:No;Exploited:No;Latest Software Release:Exploitation Less Likely;Older Software Release:Exploitation Less Likely;DOS:N/A
Reference: https://catalog.update.microsoft.com/v7/site/Search.aspx?q=KB4586785
Reference: https://catalog.update.microsoft.com/v7/site/Search.aspx
msrc
CVE-2020-17045MEDIUMCVSS 5.52020-11-10
CVE-2020-17045 [MEDIUM] Windows KernelStream Information Disclosure Vulnerability
Windows KernelStream Information Disclosure Vulnerability
FAQ: What type of information could be disclosed by this vulnerability?
The type of information that could be disclosed if an attacker successfully exploited this vulnerability is memory layout - the vulnerability allows an attacker to collect information that facilitates predicting addressing of the memory.
Microsoft Windows: Microsoft Windows
Microsoft:
msrc
CVE-2020-17071MEDIUMCVSS 5.52020-11-10
CVE-2020-17071 [MEDIUM] Windows Delivery Optimization Information Disclosure Vulnerability
Windows Delivery Optimization Information Disclosure Vulnerability
FAQ: What type of information could be disclosed by this vulnerability?
The type of information that could be disclosed if an attacker successfully exploited this vulnerability is memory layout - the vulnerability allows an attacker to collect information that facilitates predicting addressing of the memory.
Windows Update Stack: Windows
msrc
CVE-2020-17069MEDIUMCVSS 5.52020-11-10
CVE-2020-17069 [MEDIUM] Windows NDIS Information Disclosure Vulnerability
Windows NDIS Information Disclosure Vulnerability
FAQ: What type of information could be disclosed by this vulnerability?
The type of information that could be disclosed if an attacker successfully exploited this vulnerability is memory layout - the vulnerability allows an attacker to collect information that facilitates predicting addressing of the memory.
Windows NDIS: Windows NDIS
Microsoft: Microsoft
Customer Actio
msrc
CVE-2020-17013MEDIUMCVSS 5.52020-11-10
CVE-2020-17013 [MEDIUM] Win32k Information Disclosure Vulnerability
Win32k Information Disclosure Vulnerability
FAQ: What type of information could be disclosed by this vulnerability?
The type of information that could be disclosed if an attacker successfully exploited this vulnerability is uninitialized memory and kernel memory - unintentional read access to memory contents in kernel space from a user mode process.
Microsoft Windows: Microsoft Windows
Microsoft: Microsoft
Customer Action Re
msrc
CVE-2020-16999MEDIUMCVSS 5.52020-11-10
CVE-2020-16999 [MEDIUM] Windows WalletService Information Disclosure Vulnerability
Windows WalletService Information Disclosure Vulnerability
FAQ: What type of information could be disclosed by this vulnerability?
The type of information that could be disclosed if an attacker successfully exploited this vulnerability is memory layout - the vulnerability allows an attacker to collect information that facilitates predicting addressing of the memory.
Windows WalletService: Windows WalletService
msrc
CVE-2020-17056MEDIUMCVSS 5.52020-11-10
CVE-2020-17056 [MEDIUM] Windows Network File System Information Disclosure Vulnerability
Windows Network File System Information Disclosure Vulnerability
FAQ: What type of information could be disclosed by this vulnerability?
The type of information that could be disclosed if an attacker successfully exploited this vulnerability is Kernel memory read - unintentional read access to memory contents in kernel space from a user mode process.
Microsoft Windows: Microsoft Windows
Microsoft: Microso
msrc
CVE-2020-17113MEDIUMCVSS 5.52020-11-10
CVE-2020-17113 [MEDIUM] Windows Camera Codec Information Disclosure Vulnerability
Windows Camera Codec Information Disclosure Vulnerability
FAQ: What type of information could be disclosed by this vulnerability?
The type of information that could be disclosed if an attacker successfully exploited this vulnerability is uninitialized memory.
Microsoft Windows Codecs Library: Microsoft Windows Codecs Library
Microsoft: Microsoft
Customer Action Required: Yes
Impact: Information Disclosure
Exp
msrc