Vulnerabilities (CVE)

Filtered by vendor Microsoft Subscribe
Filtered by product Windows 7
Total 3087 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2011-1271 1 Microsoft 7 .net Framework, Windows 2003 Server, Windows 7 and 4 more 2024-10-17 5.1 MEDIUM N/A
The JIT compiler in Microsoft .NET Framework 3.5 Gold and SP1, 3.5.1, and 4.0, when IsJITOptimizerDisabled is false, does not properly handle expressions related to null strings, which allows context-dependent attackers to bypass intended access restrictions, and consequently execute arbitrary code, in opportunistic circumstances by leveraging a crafted application, as demonstrated by (1) a crafted XAML browser application (aka XBAP), (2) a crafted ASP.NET application, or (3) a crafted .NET Framework application, aka ".NET Framework JIT Optimization Vulnerability."
CVE-2013-0022 1 Microsoft 4 Internet Explorer, Windows 7, Windows Server 2008 and 1 more 2024-10-17 9.3 HIGH N/A
Use-after-free vulnerability in Microsoft Internet Explorer 9 allows remote attackers to execute arbitrary code via a crafted web site that triggers access to a deleted object, aka "Internet Explorer LsGetTrailInfo Use After Free Vulnerability."
CVE-2013-1340 1 Microsoft 8 Windows 7, Windows 8, Windows Rt and 5 more 2024-10-17 7.2 HIGH N/A
win32k.sys in the kernel-mode drivers in Microsoft Windows XP SP2 and SP3, Windows Server 2003 SP2, Windows Vista SP2, Windows Server 2008 SP2 and R2 SP1, Windows 7 SP1, Windows 8, Windows Server 2012, and Windows RT does not properly handle objects in memory, which allows local users to gain privileges via a crafted application, aka "Win32k Dereference Vulnerability."
CVE-2012-1879 1 Microsoft 7 Internet Explorer, Windows 2003 Server, Windows 7 and 4 more 2024-10-17 9.3 HIGH N/A
Microsoft Internet Explorer 6 through 9 does not properly handle objects in memory, which allows remote attackers to execute arbitrary code by attempting to access an undefined memory location, aka "insertAdjacentText Remote Code Execution Vulnerability."
CVE-2012-4787 1 Microsoft 7 Internet Explorer, Windows 7, Windows 8 and 4 more 2024-10-17 9.3 HIGH N/A
Use-after-free vulnerability in Microsoft Internet Explorer 9 and 10 allows remote attackers to execute arbitrary code via a crafted web site that triggers access to an object that (1) was not properly initialized or (2) is deleted, aka "Improper Ref Counting Use After Free Vulnerability."
CVE-2012-1891 1 Microsoft 7 Data Access Components, Windows 7, Windows Data Access Components and 4 more 2024-10-17 9.3 HIGH N/A
Heap-based buffer overflow in Microsoft Data Access Components (MDAC) 2.8 SP1 and SP2 and Windows Data Access Components (WDAC) 6.0 allows remote attackers to execute arbitrary code via crafted XML data that triggers access to an uninitialized object in memory, aka "ADO Cachesize Heap Overflow RCE Vulnerability."
CVE-2013-3888 1 Microsoft 3 Windows 7, Windows Server 2008, Windows Vista 2024-10-17 7.2 HIGH N/A
dxgkrnl.sys in the kernel-mode drivers in Microsoft Windows Vista SP2, Windows Server 2008 SP2 and R2 SP1, and Windows 7 SP1 allows local users to gain privileges via a crafted application, aka "DirectX Graphics Kernel Subsystem Double Fetch Vulnerability."
CVE-2021-1694 1 Microsoft 8 Windows 10, Windows 7, Windows 8.1 and 5 more 2024-10-08 7.5 HIGH 7.5 HIGH
Windows Update Stack Elevation of Privilege Vulnerability
CVE-2021-1649 1 Microsoft 8 Windows 10, Windows 7, Windows 8.1 and 5 more 2024-10-08 7.2 HIGH 7.8 HIGH
Active Template Library Elevation of Privilege Vulnerability
CVE-2021-1659 1 Microsoft 8 Windows 10, Windows 7, Windows 8.1 and 5 more 2024-10-08 4.6 MEDIUM 7.8 HIGH
Windows CSC Service Elevation of Privilege Vulnerability
CVE-2021-1688 1 Microsoft 8 Windows 10, Windows 7, Windows 8.1 and 5 more 2024-10-08 4.6 MEDIUM 7.8 HIGH
Windows CSC Service Elevation of Privilege Vulnerability
CVE-2021-1652 1 Microsoft 8 Windows 10, Windows 7, Windows 8.1 and 5 more 2024-10-08 7.2 HIGH 7.8 HIGH
Windows CSC Service Elevation of Privilege Vulnerability
CVE-2021-1708 1 Microsoft 8 Windows 10, Windows 7, Windows 8.1 and 5 more 2024-10-08 3.5 LOW 5.7 MEDIUM
Windows GDI+ Information Disclosure Vulnerability
CVE-2021-1666 1 Microsoft 8 Windows 10, Windows 7, Windows 8.1 and 5 more 2024-10-08 6.5 MEDIUM 8.8 HIGH
Remote Procedure Call Runtime Remote Code Execution Vulnerability
CVE-2021-1696 1 Microsoft 8 Windows 10, Windows 7, Windows 8.1 and 5 more 2024-10-08 4.3 MEDIUM 5.5 MEDIUM
Windows Graphics Component Information Disclosure Vulnerability
CVE-2021-1678 1 Microsoft 8 Windows 10, Windows 7, Windows 8.1 and 5 more 2024-10-08 5.0 MEDIUM 8.8 HIGH
Windows Print Spooler Spoofing Vulnerability
CVE-2021-1706 1 Microsoft 8 Windows 10, Windows 7, Windows 8.1 and 5 more 2024-10-08 9.0 HIGH 7.3 HIGH
Windows LUAFV Elevation of Privilege Vulnerability
CVE-2021-1695 1 Microsoft 8 Windows 10, Windows 7, Windows 8.1 and 5 more 2024-10-08 7.2 HIGH 7.8 HIGH
Windows Print Spooler Elevation of Privilege Vulnerability
CVE-2021-1654 1 Microsoft 8 Windows 10, Windows 7, Windows 8.1 and 5 more 2024-10-08 7.2 HIGH 7.8 HIGH
Windows CSC Service Elevation of Privilege Vulnerability
CVE-2021-1702 1 Microsoft 8 Windows 10, Windows 7, Windows 8.1 and 5 more 2024-10-08 7.2 HIGH 7.8 HIGH
Windows Remote Procedure Call Runtime Elevation of Privilege Vulnerability