microsoft

15,062 tracked vulnerabilities.

CVE-2020-1012 HIGH
Internet Explorer - Elevation of Privilege via Wininit.dll Memory Handling
Sep 11, 2020
CVSS 8.8
EPSS 0.04
CVE-2020-16884 MEDIUM
Microsoft Edge - Remote Code Execution via IEToEdge BHO Memory Corruption
Sep 11, 2020
CVSS 4.2
EPSS 0.02
CVE-2020-16881 HIGH
Visual Studio Code < 1.48.1 - Remote Code Execution via Malicious package.json File
Sep 11, 2020
CVSS 7.8
EPSS 0.05
CVE-2020-16879 MEDIUM
Windows 10 and Windows Server 2016/2019 - Information Disclosure via Projected Filesystem File Redirection
Sep 11, 2020
CVSS 5.5
EPSS 0.01
CVE-2020-16878 MEDIUM
Microsoft Dynamics 365 - Authenticated Stored Cross-Site Scripting
Sep 11, 2020
CVSS 5.4
EPSS 0.02
CVE-2020-16875 HIGH
Microsoft Exchange Server DlpUtils AddTenantDlpPolicy RCE
Sep 11, 2020
CVSS 8.4
EPSS 0.47
CVE-2020-16874 HIGH
Visual Studio 2017 15.0-15.7 and 2019 16.0-16.2 - Remote Code Execution via Crafted File
Sep 11, 2020
CVSS 7.8
EPSS 0.04
CVE-2020-16873 MEDIUM
Microsoft Xamarin.Forms <83.0.4103.106 - SSRF
Sep 11, 2020
CVSS 4.7
EPSS 0.04
CVE-2020-16872 HIGH
Microsoft Dynamics 365 (on-premises) - Authenticated Stored Cross-Site Scripting
Sep 11, 2020
CVSS 7.6
EPSS 0.02
CVE-2020-16871 MEDIUM
Microsoft Dynamics 365 (on-premises) - Authenticated Stored Cross-Site Scripting
Sep 11, 2020
CVSS 5.4
EPSS 0.02
CVE-2020-16864 MEDIUM
Microsoft Dynamics 365 (on-premises) - Authenticated Stored Cross-Site Scripting
Sep 11, 2020
CVSS 5.4
EPSS 0.02
CVE-2020-16862 HIGH
Microsoft Dynamics 365 (on-premises) - Authenticated Remote Code Execution via Web Request Sanitization Bypass
Sep 11, 2020
CVSS 7.1
EPSS 0.03
CVE-2020-16861 MEDIUM
Microsoft Dynamics 365 (on-premises) - Authenticated Stored Cross-Site Scripting
Sep 11, 2020
CVSS 5.4
EPSS 0.02
CVE-2020-16860 MEDIUM
Microsoft Dynamics 365 (on-premises) - Authenticated Remote Code Execution via Web Request Sanitization Bypass
Sep 11, 2020
CVSS 6.8
EPSS 0.03
CVE-2020-16859 MEDIUM
Microsoft Dynamics 365 (on-premises) - Authenticated Stored Cross-Site Scripting
Sep 11, 2020
CVSS 5.4
EPSS 0.02
CVE-2020-16858 MEDIUM
Microsoft Dynamics 365 (on-premises) - Authenticated Stored Cross-Site Scripting
Sep 11, 2020
CVSS 5.4
EPSS 0.02
CVE-2020-16857 HIGH
Microsoft Dynamics 365 for Finance and Operations 10.0.11 - Authenticated Remote Code Execution via Crafted File Import
Sep 11, 2020
CVSS 7.1
EPSS 0.02
CVE-2020-16856 HIGH
Visual Studio 2017 15.0-15.7 and 2019 16.0-16.2 - Remote Code Execution via Crafted File
Sep 11, 2020
CVSS 7.8
EPSS 0.04
CVE-2020-16855 MEDIUM
Microsoft Office - Information Disclosure via Uninitialized Variable
Sep 11, 2020
CVSS 5.5
EPSS 0.04
CVE-2020-16854 MEDIUM
Windows Kernel - Information Disclosure via Improper Memory Object Handling
Sep 11, 2020
CVSS 5.5
EPSS 0.01
CVE-2020-16853 HIGH
OneDrive - Elevation of Privilege via Symbolic Link Handling
Sep 11, 2020
CVSS 7.1
EPSS 0.01
CVE-2020-16852 HIGH
OneDrive for Windows Desktop - Privilege Escalation
Sep 11, 2020
CVSS 7.1
EPSS 0.01
CVE-2020-16851 HIGH
OneDrive - Elevation of Privilege via Symbolic Link Handling
Sep 11, 2020
CVSS 7.1
EPSS 0.01
CVE-2020-0998 HIGH
Windows Graphics Component - Privilege Escalation
Sep 11, 2020
CVSS 7.8
EPSS 0.01
CVE-2020-0997 HIGH
Windows 10 and Windows Server 2016/2019 - Remote Code Execution via Camera Codec Pack Memory Handling
Sep 11, 2020
CVSS 7.8
EPSS 0.05