microsoft

15,064 tracked vulnerabilities.

CVE-2016-7297 HIGH
Microsoft Edge - Remote Code Execution via Scripting Engine Memory Corruption
Dec 20, 2016
CVSS 7.5
EPSS 0.27
CVE-2016-7296 HIGH
Microsoft Edge - Remote Code Execution via Scripting Engine Memory Corruption
Dec 20, 2016
CVSS 7.5
EPSS 0.17
CVE-2016-7295 MEDIUM
Windows CLFS Driver - Unauthorized Memory Information Disclosure via Crafted Application
Dec 20, 2016
CVSS 5.5
EPSS 0.03
CVE-2016-7292 HIGH
Microsoft Windows - Privilege Escalation
Dec 20, 2016
CVSS 7.8
EPSS 0.01
CVE-2016-7291 HIGH
Microsoft Office - Out-of-bounds Read via Crafted Document
Dec 20, 2016
CVSS 7.1
EPSS 0.23
CVE-2016-7290 HIGH
Microsoft Office - Out-of-bounds Read via Crafted Document
Dec 20, 2016
CVSS 7.1
EPSS 0.23
CVE-2016-7289 HIGH
Microsoft Publisher 2010 SP2 - Remote Code Execution or Denial of Service via Crafted Document
Dec 20, 2016
CVSS 7.8
EPSS 0.25
CVE-2016-7288 HIGH
Microsoft Edge - Remote Code Execution via TypedArray.sort Use-After-Free
Dec 20, 2016
CVSS 7.5
EPSS 0.70
CVE-2016-7287 HIGH
Microsoft Edge and Internet Explorer 11 - Remote Code Execution via Scripting Engine Memory Corruption
Dec 20, 2016
CVSS 7.5
EPSS 0.69
CVE-2016-7286 HIGH
Microsoft Edge - Remote Code Execution via Scripting Engine Memory Corruption
Dec 20, 2016
CVSS 7.5
EPSS 0.69
CVE-2016-7284 MEDIUM
Microsoft Internet Explorer 10 and 11 - Information Disclosure via Crafted Web Site
Dec 20, 2016
CVSS 4.3
EPSS 0.15
CVE-2016-7283 HIGH
Microsoft Internet Explorer 9-11 - Remote Code Execution via Memory Corruption
Dec 20, 2016
CVSS 8.8
EPSS 0.18
CVE-2016-7282 MEDIUM
Microsoft Internet Explorer 9-11 and Edge - Cross-Site Scripting
Dec 20, 2016
CVSS 6.1
EPSS 0.10
CVE-2016-7281 MEDIUM
Microsoft Edge and Internet Explorer - Same Origin Policy Bypass via Web Workers
Dec 20, 2016
CVSS 5.3
EPSS 0.14
CVE-2016-7280 MEDIUM
Microsoft Edge - Cross-Site Scripting
Dec 20, 2016
CVSS 6.1
EPSS 0.09
CVE-2016-7279 HIGH
Microsoft Edge and Internet Explorer 9-11 - Remote Code Execution via Memory Corruption
Dec 20, 2016
CVSS 7.5
EPSS 0.15
CVE-2016-7278 MEDIUM
Microsoft Internet Explorer 9-11 - Information Disclosure via Crafted Web Site
Dec 20, 2016
CVSS 5.3
EPSS 0.15
CVE-2016-7277 CRITICAL
Microsoft Office 2016 - Remote Code Execution or Denial of Service via Crafted Document
Dec 20, 2016
CVSS 9.6
EPSS 0.18
CVE-2016-7276 HIGH
Microsoft Office 2007 SP3, 2010 SP2, 2013 SP1, for Mac 2011, and 2016 for Mac - Out-of-bounds Read via Crafted Document
Dec 20, 2016
CVSS 7.1
EPSS 0.25
CVE-2016-7275 HIGH
Microsoft Office <2016 - Privilege Escalation
Dec 20, 2016
CVSS 7.8
EPSS 0.01
CVE-2016-7274 HIGH
Microsoft Windows Uniscribe - Remote Code Execution via Crafted Website
Dec 20, 2016
CVSS 8.8
EPSS 0.42
CVE-2016-7273 HIGH
Windows 10 and Windows Server 2016 - Remote Code Execution via Crafted Website
Dec 20, 2016
CVSS 8.8
EPSS 0.19
CVE-2016-7272 HIGH
Microsoft Windows Graphics Component - Remote Code Execution via Crafted Website
Dec 20, 2016
CVSS 8.8
EPSS 0.39
CVE-2016-7271 HIGH
Windows 10 and Windows Server 2016 - Secure Kernel Mode Elevation of Privilege via VTL Protection Bypass
Dec 20, 2016
CVSS 7.8
EPSS 0.01
CVE-2016-7270 HIGH
.NET Framework 4.6.2 - Information Disclosure via Always Encrypted Key Guessability
Dec 20, 2016
CVSS 7.5
EPSS 0.20