microsoft

15,064 tracked vulnerabilities.

CVE-2016-7268 HIGH
Microsoft Office - Out-of-bounds Read via Crafted Document
Dec 20, 2016
CVSS 7.1
EPSS 0.23
CVE-2016-7267 MEDIUM
Microsoft Excel 2010 SP2, 2013 SP1, 2013 RT SP1, and 2016 - Remote Code Execution via Crafted Document
Dec 20, 2016
CVSS 5.5
EPSS 0.19
CVE-2016-7266 HIGH
Microsoft Excel 2007-2016 & Compatibility Pack - Remote Code Execution via Embedded Content
Dec 20, 2016
CVSS 7.8
EPSS 0.22
CVE-2016-7265 HIGH
Microsoft Excel Out-of-bounds Read via Crafted Document
Dec 20, 2016
CVSS 7.1
EPSS 0.23
CVE-2016-7264 HIGH
Microsoft Excel - Out-of-bounds Read via Crafted Document
Dec 20, 2016
CVSS 7.1
EPSS 0.23
CVE-2016-7263 HIGH
Microsoft Excel for Mac 2011 and 2016 - Remote Code Execution or Denial of Service via Crafted Document
Dec 20, 2016
CVSS 7.8
EPSS 0.19
CVE-2016-7262 HIGH KEV
Microsoft Office < - Command Injection
Dec 20, 2016
CVSS 7.8
EPSS 0.58
CVE-2016-7260 HIGH
Microsoft Windows - Local Privilege Escalation via Win32k Kernel-Mode Driver
Dec 20, 2016
CVSS 7.8
EPSS 0.02
CVE-2016-7259 HIGH
Microsoft Windows - Privilege Escalation
Dec 20, 2016
CVSS 7.8
EPSS 0.02
CVE-2016-7258 MEDIUM
Windows 10 and Windows Server 2016 - Kernel Memory Address Information Disclosure via Page-Fault System Call
Dec 20, 2016
CVSS 5.5
EPSS 0.03
CVE-2016-7257 MEDIUM
Office for Mac - Information Disclosure via GDI Component
Dec 20, 2016
CVSS 6.5
EPSS 0.23
CVE-2016-7219 MEDIUM
Microsoft Windows Crypto Driver - Information Disclosure via Crafted Application
Dec 20, 2016
CVSS 5.5
EPSS 0.03
CVE-2016-7206 MEDIUM
Microsoft Edge - Cross-Site Scripting
Dec 20, 2016
CVSS 6.1
EPSS 0.12
CVE-2016-7181 HIGH
Microsoft Edge - Remote Code Execution via Memory Corruption
Dec 20, 2016
CVSS 7.5
EPSS 0.14
CVE-2016-7256 HIGH KEV
Windows - Remote Code Execution via Open Type Font Parsing
Nov 10, 2016
CVSS 8.8
EPSS 0.65
CVE-2016-7255 HIGH KEV
Microsoft Windows - Privilege Escalation
Nov 10, 2016
CVSS 7.8
EPSS 0.81
CVE-2016-7254 HIGH
Microsoft SQL Server 2012 SP2 and SP3 - Authenticated Privilege Escalation via Pointer Cast
Nov 10, 2016
CVSS 8.8
EPSS 0.12
CVE-2016-7253 HIGH
Microsoft SQL Server 2012 SP2-SP3, 2014 SP1-SP2, 2016 - Authenticated Privilege Escalation via atxcore.dll ACL
Nov 10, 2016
CVSS 8.8
EPSS 0.12
CVE-2016-7252 MEDIUM
Microsoft SQL Server 2016 - Authenticated Privilege Escalation via FILESTREAM Path Mishandling
Nov 10, 2016
CVSS 6.5
EPSS 0.18
CVE-2016-7251 MEDIUM
Microsoft SQL Server 2016 - Cross-Site Scripting in MDS API
Nov 10, 2016
CVSS 6.1
EPSS 0.08
CVE-2016-7250 HIGH
Microsoft SQL Server 2014 SP1, 2014 SP2, 2016 - Authenticated Privilege Escalation
Nov 10, 2016
CVSS 8.8
EPSS 0.12
CVE-2016-7249 HIGH
Microsoft SQL Server 2016 - Authenticated Privilege Escalation via Pointer Cast
Nov 10, 2016
CVSS 8.8
EPSS 0.12
CVE-2016-7248 HIGH
Microsoft Windows RCE via Microsoft Video Control
Nov 10, 2016
CVSS 7.8
EPSS 0.22
CVE-2016-7247 HIGH
Microsoft Windows - Secure Boot Protection Bypass via Crafted Boot Policy
Nov 10, 2016
CVSS 7.5
EPSS 0.06
CVE-2016-7246 HIGH
Windows Kernel-Mode Drivers - Local Privilege Escalation via Crafted Application
Nov 10, 2016
CVSS 7.8
EPSS 0.03