microsoft

15,064 tracked vulnerabilities.

CVE-2018-0868 HIGH
Windows Installer - Elevation of Privilege via Improper Input Validation
Mar 14, 2018
CVSS 7.0
EPSS 0.01
CVE-2018-0817 HIGH
Microsoft Windows - Privilege Escalation
Mar 14, 2018
CVSS 7.0
EPSS 0.01
CVE-2018-0816 HIGH
Microsoft Windows - Privilege Escalation
Mar 14, 2018
CVSS 7.0
EPSS 0.01
CVE-2018-0815 HIGH
Microsoft Windows Server 2008 SP2-R2 SP1 & Windows 7 SP1 - Privileg...
Mar 14, 2018
CVSS 7.0
EPSS 0.01
CVE-2018-0814 MEDIUM
Windows Kernel - Information Disclosure via Improper Memory Initialization
Mar 14, 2018
CVSS 5.5
EPSS 0.02
CVE-2018-0813 MEDIUM
Windows Kernel - Information Disclosure via Improper Memory Initialization
Mar 14, 2018
CVSS 5.5
EPSS 0.02
CVE-2018-0811 MEDIUM
Windows Kernel - Information Disclosure via Improper Memory Initialization
Mar 14, 2018
CVSS 5.5
EPSS 0.02
CVE-2018-0808 HIGH
ASP.NET Core <2.0 - Privilege Escalation
Mar 14, 2018
CVSS 7.5
EPSS 0.08
CVE-2018-0787 HIGH
ASP.NET Core 1.0, 1.1, 2.0 - Elevation of Privilege via Web Request Validation
Mar 14, 2018
CVSS 8.8
EPSS 0.10
CVE-2018-6947 HIGH
NoMachine < 6.0.66_2 - Local Privilege Escalation via Uninitialized Stack Variable in nxfuse
Feb 28, 2018
CVSS 7.8
EPSS 0.03
CVE-2018-0908 MEDIUM
Microsoft Identity Manager 2016 SP1 - Cross-Site Scripting via Improperly Sanitized Attribute Value
Feb 26, 2018
CVSS 6.1
EPSS 0.02
CVE-2018-7250 MEDIUM
Windows Vista, 7, 8, and 8.1 - Uninitialized Kernel Pool Memory Exposure via secdrv.sys IOCTL 0xCA002813
Feb 26, 2018
CVSS 5.5
EPSS 0.03
CVE-2018-7249 HIGH
Microsoft Windows Vista, 7, 8, 8.1 - Use-After-Free via secdrv.sys IOCTL Race Condition
Feb 26, 2018
CVSS 7.0
EPSS 0.01
CVE-2018-0869 MEDIUM
SharePoint Enterprise Server 2016 - Cross-Site Scripting
Feb 15, 2018
CVSS 5.4
EPSS 0.02
CVE-2018-0866 HIGH
Internet Explorer - Remote Code Execution via Scripting Engine Memory Corruption
Feb 15, 2018
CVSS 7.5
EPSS 0.44
CVE-2018-0864 MEDIUM
SharePoint Server - Information Disclosure via Web Request Handling
Feb 15, 2018
CVSS 5.4
EPSS 0.02
CVE-2018-0861 HIGH
Microsoft Edge - Remote Code Execution via Scripting Engine Memory Corruption
Feb 15, 2018
CVSS 7.5
EPSS 0.15
CVE-2018-0860 HIGH
Microsoft Edge and ChakraCore - Remote Code Execution via Scripting Engine Memory Corruption
Feb 15, 2018
CVSS 7.5
EPSS 0.65
CVE-2018-0859 HIGH
ChakraCore - Remote Code Execution via Memory Corruption in Scripting Engine
Feb 15, 2018
CVSS 7.5
EPSS 0.18
CVE-2018-0858 HIGH
ChakraCore < 1.8.1 - Remote Code Execution via Memory Corruption
Feb 15, 2018
CVSS 7.5
EPSS 0.15
CVE-2018-0857 HIGH
ChakraCore - Remote Code Execution via Memory Corruption in Scripting Engine
Feb 15, 2018
CVSS 7.5
EPSS 0.15
CVE-2018-0856 HIGH
ChakraCore - Remote Code Execution via Memory Corruption in Scripting Engine
Feb 15, 2018
CVSS 7.5
EPSS 0.15
CVE-2018-0855 MEDIUM
Microsoft Windows 7 SP1 and Windows Server 2008 R2 - Information Disclosure in EOT Font Engine
Feb 15, 2018
CVSS 4.3
EPSS 0.06
CVE-2018-0853 LOW
Microsoft Office 2010 SP2, 2013 SP1, 2016, and 2016 C2R - Information Disclosure via Improper Variable Initialization
Feb 15, 2018
CVSS 3.3
EPSS 0.12
CVE-2018-0852 HIGH
Microsoft Outlook 2007 SP3, 2010 SP2, 2013 SP1, 2016, Office 2016 Click-to-Run RCE via Memory Corruption
Feb 15, 2018
CVSS 8.8
EPSS 0.19