cve,link,title,description,vendor,products,score,severity,epss,cisa,article,ransomware,exploited,poc,trended,trended_no_1,published,trended_score CVE-2022-26903,https://securityvulnerability.io/vulnerability/CVE-2022-26903,Windows Graphics Component Remote Code Execution Vulnerability,Windows Graphics Component Remote Code Execution Vulnerability,Microsoft,"Windows 10 Version 1809,Windows Server 2019,Windows Server 2019 (server Core Installation),Windows 10 Version 1909,Windows 10 Version 21h1,Windows Server 2022,Windows 10 Version 20h2,Windows Server Version 20h2,Windows 10 Version 21h2,Windows 10 Version 1507,Windows 10 Version 1607,Windows Server 2016,Windows Server 2016 (server Core Installation),Windows 7,Windows 7 Service Pack 1,Windows 8.1,Windows Server 2008 Service Pack 2,Windows Server 2008 Service Pack 2 (server Core Installation),Windows Server 2008 Service Pack 2,Windows Server 2008 R2 Service Pack 1,Windows Server 2008 R2 Service Pack 1 (server Core Installation),Windows Server 2012,Windows Server 2012 (server Core Installation),Windows Server 2012 R2,Windows Server 2012 R2 (server Core Installation),Microsoft Excel For Android,Microsoft Powerpoint For Android,Microsoft Word For Android,Microsoft Word Mobile,Microsoft Excel Mobile,Microsoft Powerpoint Mobile",7.8,HIGH,0.016750000417232513,false,false,false,false,,false,false,2022-04-15T19:05:40.000Z,0 CVE-2019-1314,https://securityvulnerability.io/vulnerability/CVE-2019-1314,,"A security feature bypass vulnerability exists in Windows 10 Mobile when Cortana allows a user to access files and folders through the locked screen, aka 'Windows 10 Mobile Security Feature Bypass Vulnerability'.",Microsoft,Windows 10 Mobile,6.8,MEDIUM,0.0006600000197067857,false,false,false,false,,false,false,2019-10-10T13:28:40.000Z,0 CVE-2009-0244,https://securityvulnerability.io/vulnerability/CVE-2009-0244,,"Directory traversal vulnerability in the OBEX FTP Service in the Microsoft Bluetooth stack in Windows Mobile 6 Professional, and probably Windows Mobile 5.0 for Pocket PC and 5.0 for Pocket PC Phone Edition, allows remote authenticated users to list arbitrary directories, and create or read arbitrary files, via a .. (dot dot) in a pathname. NOTE: this can be leveraged for code execution by writing to a Startup folder.",Microsoft,Windows Mobile,8.8,HIGH,0.029929999262094498,false,false,false,false,,false,false,2009-01-21T20:30:00.000Z,0 CVE-2008-4540,https://securityvulnerability.io/vulnerability/CVE-2008-4540,,"Windows Mobile 6 on the HTC Hermes device makes WLAN passwords available to an auto-completion mechanism for the password input field, which allows physically proximate attackers to bypass password authentication and obtain WLAN access.",Microsoft,Windows Mobile,,,0.0006099999882280827,false,false,false,false,,false,false,2008-10-13T18:00:00.000Z,0 CVE-2008-4295,https://securityvulnerability.io/vulnerability/CVE-2008-4295,,"Microsoft Windows Mobile 6.0 on HTC Wiza 200 and HTC MDA 8125 devices does not properly handle the first attempt to establish a Bluetooth connection to a peer with a long name, which allows remote attackers to cause a denial of service (device reboot) by configuring a Bluetooth device with a long hci name and (1) connecting directly to the Windows Mobile system or (2) waiting for the Windows Mobile system to scan for nearby devices.",Microsoft,Windows Mobile,,,0.3047100007534027,false,false,false,false,,false,false,2008-09-27T00:00:00.000Z,0 CVE-2007-5493,https://securityvulnerability.io/vulnerability/CVE-2007-5493,,The SMS handler for Windows Mobile 2005 Pocket PC Phone edition allows attackers to hide the sender field of an SMS message via a malformed WAP PUSH message that causes the PDU to be incorrectly decoded.,Microsoft,Windows Mobile,,,0.007139999885112047,false,false,false,false,,false,false,2007-10-18T00:00:00.000Z,0 CVE-2007-0878,https://securityvulnerability.io/vulnerability/CVE-2007-0878,,"Unspecified vulnerability in Microsoft Internet Explorer on Windows Mobile 5.0 allows remote attackers to cause a denial of service (loss of browser and other device functionality) via a malformed WML page, related to an ""overflow state."" NOTE: it is possible that this issue is related to CVE-2007-0685.",Microsoft,Windows Mobile,,,0.0963200032711029,false,false,false,false,,false,false,2007-02-12T20:00:00.000Z,0 CVE-2007-0685,https://securityvulnerability.io/vulnerability/CVE-2007-0685,,"Internet Explorer on Windows Mobile 5.0 and Windows Mobile 2003 and 2003SE for Smartphones and PocketPC allows attackers to cause a denial of service (application crash and device instability) via unspecified vectors, possibly related to a buffer overflow.",Microsoft,Windows Mobile,,,0.014630000106990337,false,false,false,false,,false,false,2007-02-03T01:00:00.000Z,0 CVE-2007-0674,https://securityvulnerability.io/vulnerability/CVE-2007-0674,,Pictures and Videos on Windows Mobile 5.0 and Windows Mobile 2003 and 2003SE for Smartphones and PocketPC allows user-assisted remote attackers to cause a denial of service (device hang) via a malformed JPEG file.,Microsoft,Windows Mobile,,,0.6666799783706665,false,false,false,false,,false,false,2007-02-03T01:00:00.000Z,0 CVE-2004-1319,https://securityvulnerability.io/vulnerability/CVE-2004-1319,,"The DHTML Edit Control (dhtmled.ocx) allows remote attackers to inject arbitrary web script into other domains by setting a name for a window, opening a child page whose target is the window with the given name, then injecting the script from the parent into the child using execScript, as demonstrated by ""AbusiveParent"" in Internet Explorer 6.0.2900.2180.",Microsoft,"Windows Xp,Optivity Telephony Manager,Windows 2003 Server,Windows 2000,Windows 98se,Ip Softphone 2050,Windows Me,Windows 98,Mobile Voice Client 2050",,,0.0712599977850914,false,false,false,false,,false,false,2004-12-15T05:00:00.000Z,0