|
265181
|
5.3 |
MEDIUM
Network
|
microsoft
|
internet_explorer edge
|
The Web Workers implementation in Microsoft Internet Explorer 10 and 11 and Microsoft Edge allows remote attackers to bypass the Same Origin Policy via unspecified vectors, aka "Microsoft Browser Sec…
|
CWE-254
7PK - Security Features
|
CVE-2016-7281
|
2024-11-21 11:57 |
2016-12-20 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
265182
|
6.1 |
MEDIUM
Network
|
microsoft
|
edge
|
Cross-site scripting (XSS) vulnerability in Microsoft Edge allows remote attackers to inject arbitrary web script or HTML via unspecified vectors, aka "Microsoft Edge Information Disclosure Vulnerabi…
|
CWE-79
Cross-site Scripting
|
CVE-2016-7280
|
2024-11-21 11:57 |
2016-12-20 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
265183
|
7.5 |
HIGH
Network
|
microsoft
|
internet_explorer edge
|
Microsoft Internet Explorer 9 through 11 and Microsoft Edge allow remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via a crafted web site, aka "Microsoft Br…
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2016-7279
|
2024-11-21 11:57 |
2016-12-20 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
265184
|
5.3 |
MEDIUM
Network
|
microsoft
|
internet_explorer
|
Microsoft Internet Explorer 9 through 11 allows remote attackers to obtain sensitive information from process memory via a crafted web site, aka "Windows Hyperlink Object Library Information Disclosu…
|
CWE-200
Information Exposure
|
CVE-2016-7278
|
2024-11-21 11:57 |
2016-12-20 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
265185
|
9.6 |
CRITICAL
Network
|
microsoft
|
office
|
Microsoft Office 2016 allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via a crafted document, aka "Microsoft Office Memory Corruption Vulnerability."
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2016-7277
|
2024-11-21 11:57 |
2016-12-20 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
265186
|
7.1 |
HIGH
Local
|
microsoft
|
office_for_mac office
|
Microsoft Office 2007 SP3, Office 2010 SP2, Office 2013 SP1, Office for Mac 2011, and Office 2016 for Mac allow remote attackers to obtain sensitive information from process memory or cause a denial …
|
CWE-125
Out-of-bounds Read
|
CVE-2016-7276
|
2024-11-21 11:57 |
2016-12-20 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
265187
|
7.8 |
HIGH
Local
|
microsoft
|
office
|
Microsoft Office 2010 SP2, 2013 SP1, 2013 RT SP1, and 2016 mishandles library loading, which allows local users to gain privileges via a crafted application, aka "Microsoft Office OLE DLL Side Loadin…
|
CWE-264 CWE-19
Permissions, Privileges, and Access Controls Data Processing Errors
|
CVE-2016-7275
|
2024-11-21 11:57 |
2016-12-20 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
265188
|
8.8 |
HIGH
Network
|
microsoft
|
windows_rt_8.1 windows_server_2012 windows_server_2016 windows_7 windows_10 windows_8.1 windows_server_2008 windows_vista
|
Uniscribe in Microsoft Windows Vista SP2, Windows Server 2008 SP2 and R2 SP1, Windows 7 SP1, Windows 8.1, Windows Server 2012 Gold and R2, Windows RT 8.1, Windows 10 Gold, 1511, and 1607, and Windows…
|
CWE-19
Data Processing Errors
|
CVE-2016-7274
|
2024-11-21 11:57 |
2016-12-20 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
265189
|
8.8 |
HIGH
Network
|
microsoft
|
windows_server_2016 windows_10
|
The Graphics component in Microsoft Windows 10 Gold, 1511, and 1607 and Windows Server 2016 allows remote attackers to execute arbitrary code via a crafted web site, aka "Windows Graphics Remote Code…
|
CWE-19
Data Processing Errors
|
CVE-2016-7273
|
2024-11-21 11:57 |
2016-12-20 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
265190
|
7.8 |
HIGH
Local
|
microsoft
|
windows_server_2016 windows_10
|
The Secure Kernel Mode implementation in Microsoft Windows 10 Gold, 1511, and 1607 and Windows Server 2016 allows local users to bypass the virtual trust level (VTL) protection mechanism via a crafte…
|
CWE-264
Permissions, Privileges, and Access Controls
|
CVE-2016-7271
|
2024-11-21 11:57 |
2016-12-20 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|