VulnSea

windows_server_1903 vulnerabilities

CVEs whose affected-version data names the windows_server_1903 package. Each record lists the affected and patched versions; check a specific version with the dependency checker or POST /api/sbom.

7 CVEsRSS

CVE-2020-1054High· 7.0CISA KEVPoC
6y ago

An elevation of privilege vulnerability exists in Windows when the Windows kernel-mode driver fails to properly handle objects in memory

An elevation of privilege vulnerability exists in Windows when the Windows kernel-mode driver fails to properly handle objects in memory. An attacker who successfully exploited this vulnerability could run arbitrary code in kernel mode. …

Abyssalmicrosoft · windows_10_1507EPSS 54%via NVD
CVE-2020-0796Critical· 10.0CISA KEVPoC
6y ago

A remote code execution vulnerability exists in the way that the Microsoft Server Message Block 3.1.1 (SMBv3) protocol handles certain requests, aka 'Windows SMBv3 Client/Server Remote Code Execution Vulnerability'.

A remote code execution vulnerability exists in the way that the Microsoft Server Message Block 3.1.1 (SMBv3) protocol handles certain requests, aka 'Windows SMBv3 Client/Server Remote Code Execution Vulnerability'.

Hadalmicrosoft · windows_10_1903EPSS 100%via NVD
CVE-2020-0787High· 7.8CISA KEVPoC
6y ago

An elevation of privilege vulnerability exists when the Windows Background Intelligent Transfer Service (BITS) improperly handles symbolic links, aka 'Windows Background Intelligent Transfer Service Elevation of Privilege Vulnerability'.

An elevation of privilege vulnerability exists when the Windows Background Intelligent Transfer Service (BITS) improperly handles symbolic links, aka 'Windows Background Intelligent Transfer Service Elevation of Privilege Vulnerability'.

Abyssalmicrosoft · windows_10_1507EPSS 43%via NVD
CVE-2020-0638High· 7.8CISA KEV
6y ago

An elevation of privilege vulnerability exists in the way the Update Notification Manager handles files.To exploit this vulnerability, an attacker would first have to gain execution on the victim system, aka 'Update Notification Manager …

An elevation of privilege vulnerability exists in the way the Update Notification Manager handles files.To exploit this vulnerability, an attacker would first have to gain execution on the victim system, aka 'Update Notification Manager …

Abyssalmicrosoft · windows_10_1709EPSS 3.0%via NVD
CVE-2019-1405High· 7.8CISA KEVPoC
6y ago

An elevation of privilege vulnerability exists when the Windows Universal Plug and Play (UPnP) service improperly allows COM object creation, aka 'Windows UPnP Service Elevation of Privilege Vulnerability'.

An elevation of privilege vulnerability exists when the Windows Universal Plug and Play (UPnP) service improperly allows COM object creation, aka 'Windows UPnP Service Elevation of Privilege Vulnerability'.

Abyssalmicrosoft · windows_10_1507EPSS 30%via NVD
CVE-2019-1130High· 7.8CISA KEV0day
7y ago

An elevation of privilege vulnerability exists when Windows AppX Deployment Service (AppXSVC) improperly handles hard links, aka 'Windows Elevation of Privilege Vulnerability'

An elevation of privilege vulnerability exists when Windows AppX Deployment Service (AppXSVC) improperly handles hard links, aka 'Windows Elevation of Privilege Vulnerability'. This CVE ID is unique from CVE-2019-1129.

Abyssalmicrosoft · windows_10_1507EPSS 2.3%via NVD
CVE-2019-1069High· 7.8CISA KEVPoC
7y ago

An elevation of privilege vulnerability exists in the way the Task Scheduler Service validates certain file operations

An elevation of privilege vulnerability exists in the way the Task Scheduler Service validates certain file operations. An attacker who successfully exploited the vulnerability could gain elevated privileges on a victim system. To exploi…

Abyssalmicrosoft · windows_10_1507EPSS 6.1%via NVD
windows_server_1903 vulnerabilities (CVEs) · VulnSea