|
257821
|
7.0 |
HIGH
Local
|
microsoft
|
windows_server_2008 windows_7 windows_vista windows_server_2012
|
The kernel API in Microsoft Windows Vista SP2, Windows Server 2008 SP2 and R2 SP1, Windows 7 SP1, and Windows Server 2012 mishandles registry objects in memory, which allows local users to gain privi…
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2017-0103
|
2024-11-21 12:02 |
2017-03-17 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
257822
|
7.8 |
HIGH
Local
|
microsoft
|
windows_server_2012 windows_server_2008 windows_10 windows_server_2016 windows_8.1 windows_7 windows_rt_8.1
|
A DCOM object in Helppane.exe in Microsoft Windows 7 SP1; Windows Server 2008 R2; Windows 8.1; Windows Server 2012 Gold and R2; Windows RT 8.1; Windows 10 Gold, 1511, and 1607; and Windows Server 201…
|
CWE-287
Improper Authentication
|
CVE-2017-0100
|
2024-11-21 12:02 |
2017-03-17 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
257823
|
7.5 |
HIGH
Network
|
microsoft
|
edge
|
A remote code execution vulnerability exists in the way affected Microsoft scripting engines render when handling objects in memory in Microsoft browsers. These vulnerabilities could corrupt memory i…
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2017-0132
|
2024-11-21 12:02 |
2017-03-17 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
257824
|
7.5 |
HIGH
Network
|
microsoft
|
edge
|
A remote code execution vulnerability exists in the way affected Microsoft scripting engines render when handling objects in memory in Microsoft browsers. These vulnerabilities could corrupt memory i…
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2017-0131
|
2024-11-21 12:02 |
2017-03-17 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
257825
|
4.3 |
MEDIUM
Network
|
microsoft
|
windows_7 windows_server_2008 windows_vista
|
Uniscribe in Microsoft Windows Vista SP2, Windows Server 2008 SP2 and R2 SP1, and Windows 7 SP1 allows remote attackers to obtain sensitive information from process memory via a crafted web site, aka…
|
CWE-200
Information Exposure
|
CVE-2017-0128
|
2024-11-21 12:02 |
2017-03-17 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
257826
|
4.3 |
MEDIUM
Network
|
microsoft
|
windows_7 windows_server_2008 windows_vista
|
Uniscribe in Microsoft Windows Vista SP2, Windows Server 2008 SP2 and R2 SP1, and Windows 7 SP1 allows remote attackers to obtain sensitive information from process memory via a crafted web site, aka…
|
CWE-200
Information Exposure
|
CVE-2017-0127
|
2024-11-21 12:02 |
2017-03-17 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
257827
|
4.3 |
MEDIUM
Network
|
microsoft
|
windows_7 windows_server_2008 windows_vista
|
Uniscribe in Microsoft Windows Vista SP2, Windows Server 2008 SP2 and R2 SP1, and Windows 7 SP1 allows remote attackers to obtain sensitive information from process memory via a crafted web site, aka…
|
CWE-200
Information Exposure
|
CVE-2017-0126
|
2024-11-21 12:02 |
2017-03-17 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
257828
|
5.4 |
MEDIUM
Adjacent
|
microsoft
|
windows_server_2016 windows_10
|
Hyper-V in Microsoft Windows 10 Gold, 1511, and 1607; and Windows Server 2016 allows guest OS users, running as virtual machines, to cause a denial of service via a crafted application, aka "Hyper-V …
|
CWE-20
Improper Input Validation
|
CVE-2017-0098
|
2024-11-21 12:02 |
2017-03-17 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
257829
|
2.6 |
LOW
Adjacent
|
microsoft
|
windows_server_2012 windows_server_2008 windows_server_2016 windows_7 windows_10 windows_8.1 windows_vista
|
Hyper-V in Microsoft Windows Vista SP2; Windows Server 2008 SP2 and R2; Windows 7 SP1; Windows 8.1, Windows Server 2012 Gold and R2; Windows 10 Gold, 1511, and 1607; and Windows Server 2016 allows gu…
|
CWE-200
Information Exposure
|
CVE-2017-0096
|
2024-11-21 12:02 |
2017-03-17 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
257830
|
7.6 |
HIGH
Adjacent
|
microsoft
|
windows_server_2016 windows_10
|
Hyper-V in Microsoft Windows 10 Gold, 1511, and 1607 and Windows Server 2016 does not properly validate vSMB packet data, which allows attackers to execute arbitrary code on a target OS, aka "Hyper-V…
|
CWE-20
Improper Input Validation
|
CVE-2017-0095
|
2024-11-21 12:02 |
2017-03-17 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|