|
267621
|
7.1 |
HIGH
Local
|
microsoft
|
word_for_mac office_web_apps sharepoint_server office office_compatibility_pack word_viewer word
|
Microsoft Word 2007 SP3, Office 2010 SP2, Word 2010 SP2, Office Compatibility Pack SP3, Word Viewer, Word for Mac 2011, Word Automation Services on SharePoint Server 2010 SP2, and Office Web Apps 201…
|
CWE-125
Out-of-bounds Read
|
CVE-2016-7268
|
2024-11-21 11:57 |
2016-12-20 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
267622
|
7.1 |
HIGH
Local
|
microsoft
|
excel sharepoint_server excel_viewer office_compatibility_pack
|
Microsoft Excel 2007 SP3, Excel 2010 SP2, Excel 2013 SP1, Excel 2013 RT SP1, Excel 2016, Office Compatibility Pack SP3, Excel Viewer, Excel Services on SharePoint Server 2007 SP3, and Excel Services …
|
CWE-125
Out-of-bounds Read
|
CVE-2016-7265
|
2024-11-21 11:57 |
2016-12-20 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
267623
|
7.1 |
HIGH
Local
|
microsoft
|
excel_viewer excel_for_mac office_compatibility_pack excel
|
Microsoft Excel 2007 SP3, Office Compatibility Pack SP3, Excel Viewer, Excel for Mac 2011, and Excel 2016 for Mac allow remote attackers to obtain sensitive information from process memory or cause a…
|
CWE-125
Out-of-bounds Read
|
CVE-2016-7264
|
2024-11-21 11:57 |
2016-12-20 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
267624
|
7.8 |
HIGH
Local
|
microsoft
|
excel_for_mac
|
Microsoft Excel for Mac 2011 and Excel 2016 for Mac allow remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via a crafted document, aka "Microsoft Office Mem…
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2016-7263
|
2024-11-21 11:57 |
2016-12-20 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
267625
|
7.8 |
HIGH
Local
|
microsoft
|
windows_rt_8.1 windows_server_2012 windows_server_2016 windows_7 windows_10 windows_8.1 windows_server_2008 windows_vista
|
The kernel-mode drivers in Microsoft Windows Vista SP2, Windows Server 2008 SP2 and R2 SP1, Windows 7 SP1, Windows 8.1, Windows Server 2012 Gold and R2, Windows RT 8.1, Windows 10 Gold, 1511, and 160…
|
CWE-264
Permissions, Privileges, and Access Controls
|
CVE-2016-7260
|
2024-11-21 11:57 |
2016-12-20 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
267626
|
7.8 |
HIGH
Local
|
microsoft
|
windows_rt_8.1 windows_server_2012 windows_server_2016 windows_7 windows_10 windows_8.1 windows_server_2008 windows_vista
|
The Graphics Component in the kernel-mode drivers in Microsoft Windows Vista SP2, Windows Server 2008 SP2 and R2 SP1, Windows 7 SP1, Windows 8.1, Windows Server 2012 Gold and R2, Windows RT 8.1, Wind…
|
CWE-19
Data Processing Errors
|
CVE-2016-7259
|
2024-11-21 11:57 |
2016-12-20 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
267627
|
5.5 |
MEDIUM
Local
|
microsoft
|
windows_server_2016 windows_10
|
The kernel in Microsoft Windows 10 Gold, 1511, and 1607 and Windows Server 2016 mishandles page-fault system calls, which allows local users to obtain sensitive information from arbitrary processes v…
|
CWE-200
Information Exposure
|
CVE-2016-7258
|
2024-11-21 11:57 |
2016-12-20 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
267628
|
6.5 |
MEDIUM
Network
|
microsoft
|
office_for_mac windows_7 windows_server_2008 windows_vista
|
The GDI component in Microsoft Windows Vista SP2, Windows Server 2008 SP2 and R2 SP1, Windows 7 SP1, Office for Mac 2011, and Office 2016 for Mac allows remote attackers to obtain sensitive informati…
|
CWE-200
Information Exposure
|
CVE-2016-7257
|
2024-11-21 11:57 |
2016-12-20 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
267629
|
5.5 |
MEDIUM
Local
|
microsoft
|
windows_rt_8.1 windows_server_2012 windows_server_2016 windows_7 windows_10 windows_8.1 windows_server_2008 windows_vista
|
The Crypto driver in Microsoft Windows Vista SP2, Windows Server 2008 SP2 and R2 SP1, Windows 7 SP1, Windows 8.1, Windows Server 2012 Gold and R2, Windows RT 8.1, Windows 10 Gold, 1511, and 1607, and…
|
CWE-200
Information Exposure
|
CVE-2016-7219
|
2024-11-21 11:57 |
2016-12-20 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
267630
|
6.1 |
MEDIUM
Network
|
microsoft
|
edge
|
Cross-site scripting (XSS) vulnerability in Microsoft Edge allows remote attackers to inject arbitrary web script or HTML via unspecified vectors, aka "Microsoft Edge Information Disclosure Vulnerabi…
|
CWE-79
Cross-site Scripting
|
CVE-2016-7206
|
2024-11-21 11:57 |
2016-12-20 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|