|
248841
|
8.8 |
HIGH
Network
|
microsoft
|
word office_online_server sharepoint_server office
|
Microsoft Word 2016 in Microsoft Office 2016 allows a remote code execution vulnerability due to the way objects are handled in memory, aka "Microsoft Word Remote Code Execution Vulnerability". This …
|
CWE-787
Out-of-bounds Write
|
CVE-2018-0792
|
2024-11-21 12:38 |
2018-01-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
248842
|
7.8 |
HIGH
Local
|
microsoft
|
outlook office
|
Microsoft Outlook 2007, Microsoft Outlook 2010, Microsoft Outlook 2013, and Microsoft Outlook 2016 allow a remote code execution vulnerability due to the way email messages are parsed, aka "Microsoft…
|
NVD-CWE-noinfo
|
CVE-2018-0791
|
2024-11-21 12:38 |
2018-01-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
248843
|
8.8 |
HIGH
Network
|
microsoft
|
sharepoint_foundation sharepoint_enterprise_server
|
Microsoft SharePoint Foundation 2010, Microsoft SharePoint Server 2013 and Microsoft SharePoint Server 2016 allow an elevation of privilege vulnerability due to the way web requests are handled, aka …
|
NVD-CWE-noinfo
|
CVE-2018-0790
|
2024-11-21 12:38 |
2018-01-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
248844
|
8.8 |
HIGH
Network
|
microsoft
|
sharepoint_server sharepoint_enterprise_server
|
Microsoft SharePoint Foundation 2010, Microsoft SharePoint Server 2013 and Microsoft SharePoint Server 2016 allow an elevation of privilege vulnerability due to the way web requests are handled, aka …
|
NVD-CWE-noinfo
|
CVE-2018-0789
|
2024-11-21 12:38 |
2018-01-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
248845
|
7.5 |
HIGH
Network
|
microsoft
|
.net_core powershell_core .net_framework
|
Microsoft .NET Framework 2.0 SP2, 3.0 SP2, 3.5, 3.5.1, 4.5.2, 4.6, 4.6.1, 4.6.2, 4.7, 4.7.1, .NET Core 1.0 and 2.0, and PowerShell Core 6.0.0 allow a security feature bypass vulnerability due to the …
|
CWE-295
Improper Certificate Validation
|
CVE-2018-0786
|
2024-11-21 12:38 |
2018-01-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
248846
|
6.5 |
MEDIUM
Network
|
microsoft
|
asp.net_core
|
ASP.NET Core 1.0. 1.1, and 2.0 allow a cross site request forgery vulnerability due to the ASP.NET Core project templates, aka "ASP.NET Core Cross Site Request Forgery Vulnerability".
|
CWE-352
Origin Validation Error
|
CVE-2018-0785
|
2024-11-21 12:38 |
2018-01-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
248847
|
8.8 |
HIGH
Network
|
microsoft
|
asp.net_core
|
ASP.NET Core 1.0. 1.1, and 2.0 allow an elevation of privilege vulnerability due to the ASP.NET Core project templates, aka "ASP.NET Core Elevation Of Privilege Vulnerability". This CVE is unique fro…
|
NVD-CWE-noinfo
|
CVE-2018-0784
|
2024-11-21 12:38 |
2018-01-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
248848
|
7.5 |
HIGH
Network
|
microsoft
|
.net_core powershell_core .net_framework
|
Microsoft .NET Framework 1.1, 2.0, 3.0, 3.5, 3.5.1, 4, 4.5, 4.5.1, 4.5.2, 4.6, 4.6.1, 4.6.2 and 5.7 and .NET Core 1.0. 1.1 and 2.0 allow a denial of service vulnerability due to the way XML documents…
|
NVD-CWE-noinfo
|
CVE-2018-0764
|
2024-11-21 12:38 |
2018-01-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
248849
|
4.2 |
MEDIUM
Network
|
microsoft
|
edge
|
Microsoft Edge in Microsoft Windows 10 Gold, 1511, 1607, 1703, 1709, and Windows Server 2016 allows an attacker to access information from one domain and inject it into another domain, due to how Mic…
|
CWE-863
Incorrect Authorization
|
CVE-2018-0803
|
2024-11-21 12:38 |
2018-01-4 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
248850
|
5.3 |
MEDIUM
Network
|
microsoft
|
chakracore edge
|
Microsoft Edge in Microsoft Windows 10 1709 allows an attacker to obtain information to further compromise the user's system, due to how the scripting engine handles objects in memory, aka "Scripting…
|
CWE-200
Information Exposure
|
CVE-2018-0800
|
2024-11-21 12:38 |
2018-01-4 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|