Количество 24 658
Количество 24 658
CVE-2018-1011
Microsoft Excel Remote Code Execution Vulnerability
CVE-2018-1010
Microsoft Graphics Remote Code Execution Vulnerability
CVE-2018-1009
Microsoft DirectX Graphics Kernel Subsystem Elevation of Privilege Vulnerability
CVE-2018-1008
Graphics Component Font Parsing Elevation of Privilege Vulnerability
CVE-2018-1007
Microsoft Office Information Disclosure Vulnerability
CVE-2018-1005
Microsoft SharePoint Elevation of Privilege Vulnerability
CVE-2018-1004
Windows VBScript Engine Remote Code Execution Vulnerability
CVE-2018-1003
Microsoft JET Database Engine Remote Code Execution Vulnerability
CVE-2018-1001
Scripting Engine Memory Corruption Vulnerability
CVE-2018-1000
Scripting Engine Memory Corruption Vulnerability
CVE-2018-1000500
CVE-2018-1000217
Dave Gamble cJSON version 1.7.3 and earlier contains a CWE-416: Use After Free vulnerability
CVE-2018-1000216
Dave Gamble cJSON version 1.7.2 and earlier contains a CWE-415: Double Free vulnerability in cJSON library that can result in Possible crash or RCE. This attack appear to be exploitable via Attacker must be able to force victim to print JSON data, depending on how cJSON library is used this could be either local or over a network. This vulnerability appears to have been fixed in 1.7.3.
CVE-2018-1000215
Dave Gamble cJSON version 1.7.6 and earlier contains a CWE-772 vulnerability in cJSON library that can result in Denial of Service
CVE-2018-1000182
CVE-2018-1000168
nghttp2 version >= 1.10.0 and nghttp2 <= v1.31.0 contains an Improper Input Validation CWE-20 vulnerability in ALTSVC frame handling that can result in segmentation fault leading to denial of service. This attack appears to be exploitable via network client. This vulnerability appears to have been fixed in >= 1.31.1.
CVE-2018-1000156
CVE-2018-1000110
CVE-2018-1000097
CVE-2018-1000035
Уязвимостей на страницу
Уязвимость | CVSS | EPSS | Опубликовано | |
|---|---|---|---|---|
CVE-2018-1011 Microsoft Excel Remote Code Execution Vulnerability | 20% Средний | больше 8 лет назад | ||
CVE-2018-1010 Microsoft Graphics Remote Code Execution Vulnerability | CVSS3: 8.8 | 41% Средний | больше 8 лет назад | |
CVE-2018-1009 Microsoft DirectX Graphics Kernel Subsystem Elevation of Privilege Vulnerability | CVSS3: 7 | 1% Низкий | больше 8 лет назад | |
CVE-2018-1008 Graphics Component Font Parsing Elevation of Privilege Vulnerability | CVSS3: 7 | 1% Низкий | больше 8 лет назад | |
CVE-2018-1007 Microsoft Office Information Disclosure Vulnerability | 7% Низкий | больше 8 лет назад | ||
CVE-2018-1005 Microsoft SharePoint Elevation of Privilege Vulnerability | 2% Низкий | больше 8 лет назад | ||
CVE-2018-1004 Windows VBScript Engine Remote Code Execution Vulnerability | CVSS3: 5 | 19% Средний | больше 8 лет назад | |
CVE-2018-1003 Microsoft JET Database Engine Remote Code Execution Vulnerability | CVSS3: 7.1 | 24% Средний | больше 8 лет назад | |
CVE-2018-1001 Scripting Engine Memory Corruption Vulnerability | CVSS3: 6.4 | 15% Средний | больше 8 лет назад | |
CVE-2018-1000 Scripting Engine Memory Corruption Vulnerability | CVSS3: 6.4 | 8% Низкий | больше 8 лет назад | |
CVSS3: 8.1 | 2% Низкий | почти 6 лет назад | ||
CVE-2018-1000217 Dave Gamble cJSON version 1.7.3 and earlier contains a CWE-416: Use After Free vulnerability | CVSS3: 9.8 | 2% Низкий | 11 месяцев назад | |
CVE-2018-1000216 Dave Gamble cJSON version 1.7.2 and earlier contains a CWE-415: Double Free vulnerability in cJSON library that can result in Possible crash or RCE. This attack appear to be exploitable via Attacker must be able to force victim to print JSON data, depending on how cJSON library is used this could be either local or over a network. This vulnerability appears to have been fixed in 1.7.3. | CVSS3: 8.8 | 1% Низкий | 11 месяцев назад | |
CVE-2018-1000215 Dave Gamble cJSON version 1.7.6 and earlier contains a CWE-772 vulnerability in cJSON library that can result in Denial of Service | CVSS3: 7.5 | 2% Низкий | 11 месяцев назад | |
CVSS3: 6.4 | 1% Низкий | почти 6 лет назад | ||
CVE-2018-1000168 nghttp2 version >= 1.10.0 and nghttp2 <= v1.31.0 contains an Improper Input Validation CWE-20 vulnerability in ALTSVC frame handling that can result in segmentation fault leading to denial of service. This attack appears to be exploitable via network client. This vulnerability appears to have been fixed in >= 1.31.1. | CVSS3: 7.5 | 11% Средний | около 5 лет назад | |
CVSS3: 7.8 | 6% Низкий | почти 6 лет назад | ||
CVSS3: 5.3 | 4% Низкий | почти 6 лет назад | ||
CVSS3: 7.8 | 2% Низкий | больше 4 лет назад | ||
CVSS3: 7.8 | 30% Средний | почти 6 лет назад |
Уязвимостей на страницу