CVEInsight.
TrendingZero-DayExploreBrowseSearchSaved
CVEInsight.

Free vulnerability intelligence for developers, security teams, and researchers. Data sourced from public databases for informational purposes only.

Explore

HomeTrendingZero-Day WatchAttack TypesBrowse CVEsSearch

Legal

Privacy PolicyTerms of ServiceData Disclaimer

© 2026CVEInsight. For informational use only — not a substitute for professional security advice.

CVE data sourced from NVD / NIST & public disclosures.

microsoft

windows_defender

12 known vulnerabilities · sorted by CVSS score

CVE-2018-0986
HIGH8.8

A remote code execution vulnerability exists when the Microsoft Malware Protection Engine does not properly scan a specially crafted file, leading to memory corruption, aka "Microsoft Malware Protection Engine Remote Code Execution Vulnerability." This affects Windows Defender, Windows Intune Endpoint Protection, Microsoft Security Essentials, Microsoft System Center Endpoint Protection, Microsoft Exchange Server, Microsoft System Center, Microsoft Forefront Endpoint Protection.

microsoft / exchange_server+8
Network
Published Apr 4, 2018
CVE-2020-0835
HIGH7.8

An elevation of privilege vulnerability exists when Windows Defender antimalware platform improperly handles hard links, aka 'Windows Defender Antimalware Platform Hard Link Elevation of Privilege Vulnerability'.

microsoft / windows_defender
Local
Published Apr 15, 2020
CVE-2020-1163
HIGH7.8

An elevation of privilege vulnerability exists in Windows Defender that leads arbitrary file deletion on the system.To exploit the vulnerability, an attacker would first have to log on to the system, aka 'Microsoft Windows Defender Elevation of Privilege Vulnerability'. This CVE ID is unique from CVE-2020-1170.

microsoft / windows_defender+4
Local
Published Jun 9, 2020
CVE-2023-38175
HIGH7.8

Microsoft Windows Defender Elevation of Privilege Vulnerability

microsoft / windows_defender
Local
Published Aug 8, 2023
CVE-2023-36422
HIGH7.8

Microsoft Windows Defender Elevation of Privilege Vulnerability

microsoft / windows_defender
Local
Published Nov 14, 2023
CVE-2021-1647
HIGH7.8

Microsoft Defender Remote Code Execution Vulnerability

microsoft / windows_defender+4
Local
Published Jan 12, 2021
CVE-2020-1170
HIGH7.8

An elevation of privilege vulnerability exists in Windows Defender that leads arbitrary file deletion on the system.To exploit the vulnerability, an attacker would first have to log on to the system, aka 'Microsoft Windows Defender Elevation of Privilege Vulnerability'. This CVE ID is unique from CVE-2020-1163.

microsoft / windows_defender+4
Local
Published Jun 9, 2020
CVE-2021-24092
HIGH7.8

Microsoft Defender Elevation of Privilege Vulnerability

microsoft / windows_defender+5
Local
Published Feb 25, 2021
CVE-2019-1255
HIGH7.5

A denial of service vulnerability exists when Microsoft Defender improperly handles files, aka 'Microsoft Defender Denial of Service Vulnerability'.

microsoft / windows_defender+5
Network
Published Sep 23, 2019
CVE-2020-1461
HIGH7.1

An elevation of privilege vulnerability exists when the MpSigStub.exe for Defender allows file deletion in arbitrary locations.To exploit the vulnerability, an attacker would first have to log on to the system, aka 'Microsoft Defender Elevation of Privilege Vulnerability'.

microsoft / windows_defender+5
Local
Published Jul 14, 2020
CVE-2019-1161
HIGH7.1

An elevation of privilege vulnerability exists when the MpSigStub.exe for Defender allows file deletion in arbitrary locations. To exploit the vulnerability, an attacker would first have to log on to the system. An attacker could then run a specially crafted command that could exploit the vulnerability and delete protected files on an affected system once MpSigStub.exe ran again. The update addresses the vulnerability and blocks the arbitrary deletion.

microsoft / windows_defender+5
Local
Published Aug 14, 2019
CVE-2020-1002
HIGH7.1

An elevation of privilege vulnerability exists when the MpSigStub.exe for Defender allows file deletion in arbitrary locations.To exploit the vulnerability, an attacker would first have to log on to the system, aka 'Microsoft Defender Elevation of Privilege Vulnerability'.

microsoft / windows_defender+5
Local
Published Apr 15, 2020