microsoft

15,045 tracked vulnerabilities.

CVE-2023-28286 MEDIUM
Microsoft Edge Chromium < 110.0.1587.78 and < 111.0.1661.54 - Security Feature Bypass
Apr 27, 2023
CVSS 6.1
EPSS 0.01
CVE-2023-28261 MEDIUM
Microsoft Edge Chromium < 110.0.1587.78 and < 111.0.1661.54 - Elevation of Privilege
Apr 27, 2023
CVSS 5.7
EPSS 0.01
CVE-2023-21712 HIGH
Windows Point-to-Point Tunneling Protocol - Remote Code Execution
Apr 27, 2023
CVSS 8.1
EPSS 0.01
CVE-2023-30846 CRITICAL
typed-rest-client < 1.8.0 - Credential Leak via Redirect Authorization Header
Apr 26, 2023
CVSS 9.1
EPSS 0.02
CVE-2023-24934 MEDIUM
Microsoft Defender < - Privilege Escalation
Apr 14, 2023
CVSS 6.2
EPSS 0.01
CVE-2023-28314 MEDIUM
Microsoft Dynamics 365 9.0-9.0.46.15 - Cross-Site Scripting
Apr 11, 2023
CVSS 6.1
EPSS 0.01
CVE-2023-28313 MEDIUM
Microsoft Dynamics 365 Customer Voice 9.0.0.0-9.0.0.6 - Cross-Site Scripting
Apr 11, 2023
CVSS 6.1
EPSS 0.01
CVE-2023-28312 MEDIUM
Azure Machine Learning 3.0.0-3.0.02199.0001 - Information Disclosure
Apr 11, 2023
CVSS 6.5
EPSS 0.02
CVE-2023-28311 HIGH
Microsoft 365 Apps and Office - Remote Code Execution via Heap-based Buffer Overflow
Apr 11, 2023
CVSS 7.8
EPSS 0.03
CVE-2023-28309 HIGH
Microsoft Dynamics 365 9.0-9.0.46.15 - Cross-Site Scripting
Apr 11, 2023
CVSS 7.6
EPSS 0.01
CVE-2023-28308 MEDIUM
Windows Server 2008, 2012, 2016, 2019, 2022 - Remote Code Execution via DNS Server Race Condition
Apr 11, 2023
CVSS 6.6
EPSS 0.01
CVE-2023-28307 MEDIUM
Windows Server 2008, 2012, 2016, 2019, 2022 - Remote Code Execution via DNS Server Race Condition
Apr 11, 2023
CVSS 6.6
EPSS 0.01
CVE-2023-28306 MEDIUM
Windows Server 2008, 2012, 2016, 2019, 2022 - Remote Code Execution via DNS Server Race Condition
Apr 11, 2023
CVSS 6.6
EPSS 0.01
CVE-2023-28305 MEDIUM
Windows Server 2008, 2012, 2016, 2019, 2022 - Remote Code Execution via DNS Server Race Condition
Apr 11, 2023
CVSS 6.6
EPSS 0.01
CVE-2023-28304 HIGH
Microsoft ODBC 17.0-17.10.3.1 and OLE DB 18.0-18.6.5 - Remote Code Execution
Apr 11, 2023
CVSS 7.8
EPSS 0.01
CVE-2023-28302 HIGH
Microsoft Windows MSMQ - Denial of Service via Improper Input Validation
Apr 11, 2023
CVSS 7.5
EPSS 0.94
CVE-2023-28301 LOW
Microsoft Edge < 112.0.1722.34 - Tampering Vulnerability
Apr 11, 2023
CVSS 3.7
EPSS 0.01
CVE-2023-28300 HIGH
Azure Service Connector < 0.3.0 - Security Feature Bypass
Apr 11, 2023
CVSS 7.5
EPSS 0.01
CVE-2023-28299 MEDIUM
Visual Studio 2017 15.0-15.9.53, 2019 16.0-16.11.25, 2022 17.0-17.0.20, 17.2.0-17.2.14 - Spoofing
Apr 11, 2023
CVSS 5.5
EPSS 0.01
CVE-2023-28298 MEDIUM
Windows Kernel - Denial of Service
Apr 11, 2023
CVSS 5.5
EPSS 0.01
CVE-2023-28297 HIGH
Windows 10/11, Server 2012/2016/2019/2022 - Elevation of Privilege via RPCSS Use-After-Free
Apr 11, 2023
CVSS 8.8
EPSS 0.02
CVE-2023-28296 HIGH
Visual Studio 2017 15.0-15.9.53, 2019 16.0-16.11.25, 2022 17.0-17.0.20, 17.2.0-17.2.14 - Remote Code Execution
Apr 11, 2023
CVSS 7.8
EPSS 0.01
CVE-2023-28293 HIGH
Windows Kernel - Integer Underflow Elevation of Privilege
Apr 11, 2023
CVSS 7.8
EPSS 0.03
CVE-2023-28292 HIGH
Raw Image Extension < 2.1.60611.0 - Remote Code Execution
Apr 11, 2023
CVSS 7.8
EPSS 0.01
CVE-2023-28291 HIGH
Raw Image Extension < 2.1.60611.0 - Remote Code Execution
Apr 11, 2023
CVSS 8.4
EPSS 0.01