Msrc Windows 8.1 For 32-Bit Systems vulnerabilities

108 known vulnerabilities affecting msrc/windows_8.1_for_32-bit_systems.

Total CVEs
108
CISA KEV
3
actively exploited
Public exploits
23
Exploited in wild
4
Severity breakdown
CRITICAL5HIGH45MEDIUM50LOW8

Vulnerabilities

Page 6 of 6
CVE-2016-3230HIGHCVSS 5.02016-06-14
CVE-2016-3230 [MEDIUM] Windows Search Denial of Service Vulnerability Windows Search Denial of Service Vulnerability Description: This vulnerability occurs when the Windows Search component fails to properly handle certain objects in memory. An attacker who successfully exploited this vulnerability could cause server performance to degrade sufficiently to cause a denial of service condition. To exploit this vulnerability, an attacker could use it to cause a denial of service attack and disrupt
msrc
CVE-2016-3215HIGHCVSS 6.52016-06-14
CVE-2016-3215 [MEDIUM] Windows PDF Information Disclosure Vulnerability Windows PDF Information Disclosure Vulnerability Description: An information disclosure vulnerability exists in Microsoft Windows when a user opens a specially crafted PDF file. An attacker who successfully exploited the vulnerability could read memory in the context of the current user. To exploit the vulnerability, an attacker would have to trick the user into opening the PDF file. The update addresses the vulnerability b
msrc
CVE-2016-0182CRITICALCVSS 7.82016-05-10
CVE-2016-0182 [HIGH] Windows Journal Memory Corruption Vulnerability Windows Journal Memory Corruption Vulnerability Description: A remote code execution vulnerability exists in Microsoft Windows when a specially crafted Journal file is opened in Windows Journal. An attacker who successfully exploited this vulnerability could cause arbitrary code to execute in the context of the current user. If a user is logged on with administrative user rights, an attacker could take control of the affected
msrc
CVE-2016-0179CRITICALCVSS 7.82016-05-10
CVE-2016-0179 [HIGH] Windows Shell Remote Code Execution Vulnerability Windows Shell Remote Code Execution Vulnerability Description: A remote code execution vulnerability exists when Windows Shell improperly handles objects in memory. An attacker who successfully exploited this vulnerability could execute arbitrary code and take control of the affected system. An attacker could then install programs; view, change, or delete data; or create new accounts with full user rights. Users whose accoun
msrc
CVE-2016-0176HIGHCVSS 7.82016-05-10
CVE-2016-0176 [HIGH] DirectX Elevation of Privilege Vulnerability DirectX Elevation of Privilege Vulnerability Description: An elevation of privilege vulnerability exists when DirectX improperly handles objects in memory. An attacker who successfully exploited this vulnerability could run arbitrary code in kernel mode. An attacker could then install programs; view, change, or delete data; or create new accounts with full user rights. To exploit this vulnerability, an attacker would first have t
msrc
CVE-2016-0185HIGHCVSS 7.8KEVPoC2016-05-10
CVE-2016-0185 [HIGH] Windows Media Center Remote Code Execution Vulnerability Windows Media Center Remote Code Execution Vulnerability Description: A vulnerability exists in Windows Media Center that could allow remote code execution if Windows Media Center opens a specially crafted Media Center link (.mcl) file that references malicious code. An attacker who successfully exploited this vulnerability could take control of an affected system. Customers whose accounts are configured to have fewer
msrc
CVE-2016-0151HIGHCVSS 7.8KEVPoC2016-04-12
CVE-2016-0151 [HIGH] Windows CSRSS Security Feature Bypass Vulnerability Windows CSRSS Security Feature Bypass Vulnerability Description: A security feature bypass vulnerability exists in Microsoft Windows when the Client-Server Run-time Subsystem (CSRSS) fails to properly manage process tokens in memory. An attacker who successfully exploited this vulnerability could run arbitrary code as an administrator. An attacker could then install programs; view, change, or delete data; or create new acc
msrc
CVE-2016-0153HIGHCVSS 7.82016-04-12
CVE-2016-0153 [HIGH] Windows OLE Remote Code Execution Vulnerability Windows OLE Remote Code Execution Vulnerability Description: A remote code execution vulnerability exists when Microsoft Windows OLE fails to properly validate user input. An attacker could exploit the vulnerability to execute malicious code. To exploit the vulnerability, an attacker would have to convince a user to open either a specially crafted file or a program from either a webpage or an email message. The update addresse
msrc