Filtered by vendor Microsoft Subscriptions
Filtered by product Windows 7 Subscriptions
Total 3090 CVE
CVE Vendors Products Updated CVSS v3.1
CVE-2020-17014 1 Microsoft 21 Windows 10, Windows 10 1507, Windows 10 1607 and 18 more 2024-09-10 7.8 High
Windows Print Spooler Elevation of Privilege Vulnerability
CVE-2020-17011 1 Microsoft 21 Windows 10, Windows 10 1507, Windows 10 1607 and 18 more 2024-09-10 7.8 High
Windows Port Class Library Elevation of Privilege Vulnerability
CVE-2020-1599 1 Microsoft 21 Windows 10, Windows 10 1507, Windows 10 1607 and 18 more 2024-09-10 5.5 Medium
Windows Spoofing Vulnerability
CVE-2020-17088 1 Microsoft 21 Windows 10, Windows 10 1507, Windows 10 1607 and 18 more 2024-09-10 7.8 High
Windows Common Log File System Driver Elevation of Privilege Vulnerability
CVE-2020-17087 1 Microsoft 21 Windows 10, Windows 10 1507, Windows 10 1607 and 18 more 2024-09-10 7.8 High
Windows Kernel Local Elevation of Privilege Vulnerability
CVE-2020-17069 1 Microsoft 21 Windows 10, Windows 10 1507, Windows 10 1607 and 18 more 2024-09-10 5.5 Medium
Windows NDIS Information Disclosure Vulnerability
CVE-2020-17068 1 Microsoft 21 Windows 10, Windows 10 1507, Windows 10 1607 and 18 more 2024-09-10 7.8 High
Windows GDI+ Remote Code Execution Vulnerability
CVE-2020-17004 1 Microsoft 21 Windows 10, Windows 10 1507, Windows 10 1607 and 18 more 2024-09-10 5.5 Medium
Windows Graphics Component Information Disclosure Vulnerability
CVE-2020-17001 1 Microsoft 21 Windows 10, Windows 10 1507, Windows 10 1607 and 18 more 2024-09-10 7.8 High
Windows Print Spooler Elevation of Privilege Vulnerability
CVE-2020-17000 1 Microsoft 16 Windows 10, Windows 10 1507, Windows 10 1607 and 13 more 2024-09-10 5.5 Medium
Remote Desktop Protocol Client Information Disclosure Vulnerability
CVE-2020-16997 1 Microsoft 20 Windows 10, Windows 10 1507, Windows 10 1607 and 17 more 2024-09-10 7.7 High
Remote Desktop Protocol Server Information Disclosure Vulnerability
CVE-2022-34718 1 Microsoft 20 Windows 10, Windows 10 1507, Windows 10 1607 and 17 more 2024-09-10 9.8 Critical
Windows TCP/IP Remote Code Execution Vulnerability
CVE-2022-26809 1 Microsoft 22 Windows 10, Windows 10 1507, Windows 10 1607 and 19 more 2024-08-20 9.8 Critical
Remote Procedure Call Runtime Remote Code Execution Vulnerability
CVE-2012-4792 1 Microsoft 6 Internet Explorer, Windows 7, Windows Server 2003 and 3 more 2024-08-14 8.8 High
Use-after-free vulnerability in Microsoft Internet Explorer 6 through 8 allows remote attackers to execute arbitrary code via a crafted web site that triggers access to an object that (1) was not properly allocated or (2) is deleted, as demonstrated by a CDwnBindInfo object, and exploited in the wild in December 2012.
CVE-2018-0824 1 Microsoft 13 Windows 10 1507, Windows 10 1607, Windows 10 1703 and 10 more 2024-08-08 8.8 High
A remote code execution vulnerability exists in "Microsoft COM for Windows" when it fails to properly handle serialized objects, aka "Microsoft COM for Windows Remote Code Execution Vulnerability." This affects Windows 7, Windows Server 2012 R2, Windows RT 8.1, Windows Server 2008, Windows Server 2012, Windows 8.1, Windows Server 2016, Windows Server 2008 R2, Windows 10, Windows 10 Servers.
CVE-2007-6753 1 Microsoft 5 Windows 2000, Windows 7, Windows Server 2008 and 2 more 2024-08-07 N/A
Untrusted search path vulnerability in Shell32.dll in Microsoft Windows 2000, Windows XP, Windows Vista, Windows Server 2008, and Windows 7, when using an environment configured with a string such as %APPDATA% or %PROGRAMFILES% in a certain way, allows local users to gain privileges via a Trojan horse DLL under the current working directory, as demonstrated by iTunes and Safari.
CVE-2008-4033 1 Microsoft 13 Expression Web, Groove, Office and 10 more 2024-08-07 N/A
Cross-domain vulnerability in Microsoft XML Core Services 3.0 through 6.0, as used in Microsoft Expression Web, Office, Internet Explorer, and other products, allows remote attackers to obtain sensitive information from another domain and corrupt the session state via HTTP request header fields, as demonstrated by the Transfer-Encoding field, aka "MSXML Header Request Vulnerability."
CVE-2009-4215 2 Microsoft, Pandasecurity 6 Windows 7, Windows Vista, Windows Xp and 3 more 2024-08-07 N/A
Panda Global Protection 2010, Internet Security 2010, and Antivirus Pro 2010 use weak permissions (Everyone: Full Control) for the product files, which allows local users to gain privileges by replacing executables with Trojan horse programs.
CVE-2009-3678 1 Microsoft 2 Windows 7, Windows Server 2008 2024-08-07 N/A
Integer overflow in cdd.dll in the Canonical Display Driver (CDD) in Microsoft Windows Server 2008 R2 and Windows 7 on 64-bit platforms, when the Windows Aero theme is installed, allows context-dependent attackers to cause a denial of service (reboot) or possibly execute arbitrary code via a crafted image file that triggers incorrect data parsing after user-mode data is copied to kernel mode, as demonstrated using "Browse with Irfanview" and certain actions on a folder containing a large number of thumbnail images in Resample mode, possibly related to the ATI graphics driver or win32k.sys, aka "Canonical Display Driver Integer Overflow Vulnerability."
CVE-2009-3674 1 Microsoft 7 Internet Explorer, Windows 2000, Windows 7 and 4 more 2024-08-07 N/A
Microsoft Internet Explorer 8 does not properly handle objects in memory, which allows remote attackers to execute arbitrary code by accessing an object that (1) was not properly initialized or (2) is deleted, leading to memory corruption, aka "Uninitialized Memory Corruption Vulnerability," a different vulnerability than CVE-2009-3671.