|
266401
|
7.8 |
HIGH
Local
|
microsoft
|
windows_rt_8.1 windows_server_2012 windows_7 windows_10 windows_8.1 windows_server_2008 windows_vista
|
atmfd.dll in the Adobe Type Manager Font Driver in Microsoft Windows Vista SP2, Windows Server 2008 SP2 and R2 SP1, Windows 7 SP1, Windows 8.1, Windows Server 2012 Gold and R2, Windows RT 8.1, and Wi…
|
CWE-264
Permissions, Privileges, and Access Controls
|
CVE-2016-3220
|
2024-11-21 11:49 |
2016-06-16 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
266402
|
7.8 |
HIGH
Local
|
microsoft
|
windows_10
|
The kernel-mode driver in Microsoft Windows 10 Gold and 1511 allows local users to gain privileges via a crafted application, aka "Win32k Elevation of Privilege Vulnerability."
|
CWE-264
Permissions, Privileges, and Access Controls
|
CVE-2016-3219
|
2024-11-21 11:49 |
2016-06-16 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
266403
|
7.8 |
HIGH
Local
|
microsoft
|
windows_rt_8.1 windows_server_2012 windows_7 windows_10 windows_8.1 windows_server_2008 windows_vista
|
The kernel-mode drivers in Microsoft Windows Vista SP2, Windows Server 2008 SP2 and R2 SP1, Windows 7 SP1, Windows 8.1, Windows Server 2012 Gold and R2, Windows RT 8.1, and Windows 10 Gold and 1511 a…
|
CWE-264
Permissions, Privileges, and Access Controls
|
CVE-2016-3218
|
2024-11-21 11:49 |
2016-06-16 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
266404
|
4.3 |
MEDIUM
Network
|
microsoft
|
windows_rt_8.1 windows_server_2012 windows_10 windows_8.1 windows_7 windows_server_2008 windows_vista
|
GDI32.dll in the Graphics component in Microsoft Windows Vista SP2, Windows Server 2008 SP2 and R2 SP1, Windows 7 SP1, Windows 8.1, Windows Server 2012 Gold and R2, Windows RT 8.1, and Windows 10 Gol…
|
CWE-200
Information Exposure
|
CVE-2016-3216
|
2024-11-21 11:49 |
2016-06-16 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
266405
|
5.5 |
MEDIUM
Local
|
microsoft
|
windows_server_2012 windows_10 windows_8.1 edge
|
Microsoft Windows 8.1, Windows Server 2012 Gold and R2, Windows 10 1511, and Microsoft Edge allow remote attackers to obtain sensitive information from process memory via a crafted PDF document, aka …
|
CWE-200
Information Exposure
|
CVE-2016-3215
|
2024-11-21 11:49 |
2016-06-16 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
266406
|
8.8 |
HIGH
Network
|
microsoft
|
edge
|
The Chakra JavaScript engine in Microsoft Edge allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via a crafted web site, aka "Scripting Engine Memory …
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2016-3214
|
2024-11-21 11:49 |
2016-06-16 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
266407
|
6.1 |
MEDIUM
Network
|
microsoft
|
internet_explorer
|
The XSS Filter in Microsoft Internet Explorer 9 through 11 does not properly identify JavaScript, which makes it easier for remote attackers to conduct cross-site scripting (XSS) attacks via a crafte…
|
CWE-79
Cross-site Scripting
|
CVE-2016-3212
|
2024-11-21 11:49 |
2016-06-16 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
266408
|
8.8 |
HIGH
Network
|
microsoft
|
internet_explorer
|
Microsoft Internet Explorer 9 through 11 allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via a crafted web site, aka "Internet Explorer Memory Corru…
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2016-3211
|
2024-11-21 11:49 |
2016-06-16 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
266409
|
8.8 |
HIGH
Network
|
microsoft
|
internet_explorer
|
The Microsoft (1) JScript and (2) VBScript engines, as used in Internet Explorer 11, allow remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via a crafted we…
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2016-3210
|
2024-11-21 11:49 |
2016-06-16 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
266410
|
9.8 |
CRITICAL
Network
|
microsoft
|
windows_rt_8.1 windows_server_2012 windows_7 windows_10 windows_8.1 windows_server_2008 windows_vista
|
The Web Proxy Auto Discovery (WPAD) protocol implementation in Microsoft Windows Vista SP2, Windows Server 2008 SP2 and R2 SP1, Windows 7 SP1, Windows 8.1, Windows Server 2012 Gold and R2, Windows RT…
|
CWE-19
Data Processing Errors
|
CVE-2016-3236
|
2024-11-21 11:49 |
2016-06-16 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|