Anfälligkeitssuche        Suche in 324607 CVE Beschreibungen
und 145615 Test Beschreibungen,
Zugriff auf 10,000+ Quellverweise.
Tests   CVE   Alle  

Test Kennung:1.3.6.1.4.1.25623.1.0.812768
Kategorie:Windows : Microsoft Bulletins
Titel:Microsoft Windows Multiple Vulnerabilities (KB4074594)
Zusammenfassung:This host is missing a critical security; update according to Microsoft KB4074594
Beschreibung:Summary:
This host is missing a critical security
update according to Microsoft KB4074594

Vulnerability Insight:
Multiple flaws exist due to:

- The scripting engine fails to properly handles objects in memory in
microsoft browsers.

- The windows kernel fails to properly handle objects in memory.

- The Windows Common Log File System (CLFS) driver improperly handles
objects in memory.

- The VBScript improperly discloses the contents of its memory, which could
provide an attacker with information to further compromise the user's
computer or data.

- An improper implementation of the Microsoft Server Message Block 2.

- Microsoft has deprecated the Document Signing functionality in XPS Viewer.

Vulnerability Impact:
Successful exploitation will allow an
attacker who successfully exploited the vulnerability gain the same
user rights as the current user, run arbitrary code in kernel mode, obtain
information to further compromise the user's system, cause the affected system
to stop responding until it is manually restarted, spoof content, perform
phishing attacks, or otherwise manipulate content of a document.

Affected Software/OS:
- Microsoft Windows 8.1 for 32-bit/x64

- Microsoft Windows Server 2012 R2

Solution:
The vendor has released updates. Please see the references for more information.

CVSS Score:
9.3

CVSS Vector:
AV:N/AC:M/Au:N/C:C/I:C/A:C

Querverweis: Common Vulnerability Exposure (CVE) ID: CVE-2018-0742
BugTraq ID: 102937
http://www.securityfocus.com/bid/102937
http://www.securitytracker.com/id/1040373
Common Vulnerability Exposure (CVE) ID: CVE-2018-0757
BugTraq ID: 102947
http://www.securityfocus.com/bid/102947
Common Vulnerability Exposure (CVE) ID: CVE-2018-0820
BugTraq ID: 102945
http://www.securityfocus.com/bid/102945
Common Vulnerability Exposure (CVE) ID: CVE-2018-0825
BugTraq ID: 102920
http://www.securityfocus.com/bid/102920
http://www.securitytracker.com/id/1040366
Common Vulnerability Exposure (CVE) ID: CVE-2018-0829
BugTraq ID: 102948
http://www.securityfocus.com/bid/102948
Common Vulnerability Exposure (CVE) ID: CVE-2018-0830
BugTraq ID: 102949
http://www.securityfocus.com/bid/102949
Common Vulnerability Exposure (CVE) ID: CVE-2018-0832
BugTraq ID: 102923
http://www.securityfocus.com/bid/102923
https://www.exploit-db.com/exploits/44146/
Common Vulnerability Exposure (CVE) ID: CVE-2018-0833
BugTraq ID: 102924
http://www.securityfocus.com/bid/102924
https://www.exploit-db.com/exploits/44189/
https://github.com/KINGSABRI/CVE-in-Ruby/tree/master/CVE-2018-0833
http://www.securitytracker.com/id/1040375
Common Vulnerability Exposure (CVE) ID: CVE-2018-0840
BugTraq ID: 102886
http://www.securityfocus.com/bid/102886
https://www.exploit-db.com/exploits/44077/
http://www.securitytracker.com/id/1040369
http://www.securitytracker.com/id/1040372
Common Vulnerability Exposure (CVE) ID: CVE-2018-0842
BugTraq ID: 102946
http://www.securityfocus.com/bid/102946
http://www.securitytracker.com/id/1040371
Common Vulnerability Exposure (CVE) ID: CVE-2018-0844
BugTraq ID: 102929
http://www.securityfocus.com/bid/102929
http://www.securitytracker.com/id/1040380
Common Vulnerability Exposure (CVE) ID: CVE-2018-0846
BugTraq ID: 102931
http://www.securityfocus.com/bid/102931
Common Vulnerability Exposure (CVE) ID: CVE-2018-0847
BugTraq ID: 102861
http://www.securityfocus.com/bid/102861
http://www.securitytracker.com/id/1040370
Common Vulnerability Exposure (CVE) ID: CVE-2018-0866
BugTraq ID: 103032
http://www.securityfocus.com/bid/103032
https://www.exploit-db.com/exploits/44153/
CopyrightCopyright (C) 2018 Greenbone AG

Dies ist nur einer von 145615 Anfälligkeitstests in unserem Testpaket. Finden Sie mehr über unsere vollständigen Sicherheitsüberprüfungen heraus.

Um einen gratis Test für diese Anfälligkeit auf Ihrem System durchlaufen zu lassen, registrieren Sie sich bitte unten.




© 1998-2025 E-Soft Inc. Alle Rechte vorbehalten.