|
265801
|
7.8 |
HIGH
Local
|
microsoft
|
excel excel_viewer excel_for_mac sharepoint_designer office_compatibility_pack office_online_server
|
Microsoft Excel 2007 SP3, Excel 2010 SP2, Excel 2013 SP1, Excel 2013 RT SP1, Excel 2016, Excel 2016 for Mac, Office Compatibility Pack SP3, Excel Viewer, Excel Services on SharePoint Server 2007 SP3,…
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2016-3358
|
2024-11-21 11:49 |
2016-09-14 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
265802
|
7.8 |
HIGH
Local
|
microsoft
|
sharepoint_foundation office word_for_mac office_web_apps office_web_apps_server word_viewer
|
Microsoft Office 2007 SP3, Office 2010 SP2, Office 2013 SP1, Office 2013 RT SP1, Office 2016, Word for Mac 2011, Word 2016 for Mac, Word Viewer, Word Automation Services on SharePoint Server 2010 SP2…
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2016-3357
|
2024-11-21 11:49 |
2016-09-14 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
265803
|
3.3 |
LOW
Local
|
microsoft
|
windows_rt_8.1 windows_server_2012 windows_7 windows_10 windows_8.1 windows_server_2008 windows_vista
|
The Graphics Device Interface (GDI) in Microsoft Windows Vista SP2, Windows Server 2008 SP2 and R2 SP1, Windows 7 SP1, Windows 8.1, Windows Server 2012 Gold and R2, Windows RT 8.1, and Windows 10 Gol…
|
CWE-254
7PK - Security Features
|
CVE-2016-3354
|
2024-11-21 11:49 |
2016-09-14 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
265804
|
8.3 |
HIGH
Network
|
microsoft
|
internet_explorer
|
Microsoft Internet Explorer 9 through 11 mishandles .url files from the Internet zone, which allows remote attackers to bypass intended access restrictions via a crafted file, aka "Internet Explorer …
|
CWE-254
7PK - Security Features
|
CVE-2016-3353
|
2024-11-21 11:49 |
2016-09-14 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
265805
|
8.8 |
HIGH
Network
|
microsoft
|
windows_rt_8.1 windows_10 windows_8.1
|
Microsoft Windows 8.1, Windows RT 8.1, and Windows 10 Gold, 1511, and 1607 do not properly check NTLM SSO requests for MSA logins, which makes it easier for remote attackers to determine passwords vi…
|
CWE-285
Improper Authorization
|
CVE-2016-3352
|
2024-11-21 11:49 |
2016-09-14 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
265806
|
7.5 |
HIGH
Network
|
microsoft
|
edge
|
The Chakra JavaScript engine in Microsoft Edge allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via a crafted web site, aka "Scripting Engine Memory …
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2016-3350
|
2024-11-21 11:49 |
2016-09-14 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
265807
|
7.8 |
HIGH
Local
|
microsoft
|
windows_rt_8.1 windows_server_2012 windows_10 windows_8.1
|
The kernel-mode drivers in Microsoft Windows 8.1, Windows Server 2012 Gold and R2, Windows RT 8.1, and Windows 10 Gold and 1511 allow local users to gain privileges via a crafted application, aka "Wi…
|
CWE-264
Permissions, Privileges, and Access Controls
|
CVE-2016-3349
|
2024-11-21 11:49 |
2016-09-14 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
265808
|
7.8 |
HIGH
Local
|
microsoft
|
windows_rt_8.1 windows_server_2012 windows_7 windows_10 windows_8.1 windows_server_2008 windows_vista
|
The kernel-mode drivers in Microsoft Windows Vista SP2, Windows Server 2008 SP2 and R2 SP1, Windows 7 SP1, Windows 8.1, Windows Server 2012 Gold and R2, Windows RT 8.1, and Windows 10 Gold, 1511, and…
|
CWE-264
Permissions, Privileges, and Access Controls
|
CVE-2016-3348
|
2024-11-21 11:49 |
2016-09-14 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
265809
|
7.8 |
HIGH
Local
|
microsoft
|
windows_10
|
Microsoft Windows 10 Gold, 1511, and 1607 does not properly enforce permissions, which allows local users to obtain Administrator access via a crafted DLL, aka "Windows Permissions Enforcement Elevat…
|
CWE-264
Permissions, Privileges, and Access Controls
|
CVE-2016-3346
|
2024-11-21 11:49 |
2016-09-14 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
265810
|
8.8 |
HIGH
Network
|
microsoft
|
windows_rt_8.1 windows_server_2012 windows_7 windows_10 windows_8.1 windows_server_2008 windows_vista
|
The SMBv1 server in Microsoft Windows Vista SP2, Windows Server 2008 SP2 and R2 SP1, Windows 7 SP1, Windows 8.1, Windows Server 2012 Gold and R2, Windows RT 8.1, and Windows 10 Gold, 1511, and 1607 a…
|
CWE-284
Improper Access Control
|
CVE-2016-3345
|
2024-11-21 11:49 |
2016-09-14 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|