microsoft

14,170 tracked vulnerabilities.

CVE-2025-21349 MEDIUM
Windows 10/11, Server 2016-2019 - Remote Desktop Auth Bypass
Feb 11, 2025
CVSS 6.8
EPSS 0.00
CVE-2025-21347 MEDIUM
Windows Deployment Services - Denial of Service via Improper Link Resolution
Feb 11, 2025
CVSS 6.0
EPSS 0.00
CVE-2025-21337 LOW
Windows NTFS - Elevation of Privilege via Improper Access Control
Feb 11, 2025
CVSS 3.3
EPSS 0.00
CVE-2025-21322 HIGH
Microsoft PC Manager < 3.15.4.0 - Elevation of Privilege via Improper Link Resolution
Feb 11, 2025
CVSS 7.8
EPSS 0.00
CVE-2025-21259 MEDIUM
Microsoft Outlook < 4.2501.1 - Spoofing via User Interface Misrepresentation
Feb 11, 2025
CVSS 5.3
EPSS 0.01
CVE-2025-21254 MEDIUM
Windows 10 1607-22H2, Windows 11 22H2-24H2, Windows Server 2016-2022 - Denial of Service via Internet Connection Sharing
Feb 11, 2025
CVSS 6.5
EPSS 0.00
CVE-2025-21216 MEDIUM
Windows 10 1607-22H2, Windows 11 22H2-24H2, Windows Server 2016-2022 - Denial of Service in Internet Connection Sharing
Feb 11, 2025
CVSS 6.5
EPSS 0.00
CVE-2025-21212 MEDIUM
Windows 10 1607-22H2, Windows 11 22H2-24H2, Windows Server 2016-2022 - Denial of Service via Internet Connection Sharing
Feb 11, 2025
CVSS 6.5
EPSS 0.00
CVE-2025-21208 HIGH
Windows Server RRAS Remote Code Execution (2008, 2012, 2016, 2019, 2022, 2025)
Feb 11, 2025
CVSS 8.8
EPSS 0.00
CVE-2025-21206 HIGH
Visual Studio 2017, 2019, 2022 - Elevation of Privilege via Uncontrolled Search Path
Feb 11, 2025
CVSS 7.3
EPSS 0.00
CVE-2025-21201 HIGH
Windows Telephony Server - Remote Code Execution via Double Free
Feb 11, 2025
CVSS 8.8
EPSS 0.00
CVE-2025-21200 HIGH
Windows Telephony Service - Remote Code Execution via Heap-based Buffer Overflow
Feb 11, 2025
CVSS 8.8
EPSS 0.00
CVE-2025-21198 CRITICAL
Microsoft HPC Pack 2016 < 2016.3 and 2019 < 6.3.8328.0 - Remote Code Execution
Feb 11, 2025
CVSS 9.0
EPSS 0.00
CVE-2025-21194 HIGH
Microsoft Surface Firmware - Security Feature Bypass via Improper Input Validation
Feb 11, 2025
CVSS 7.1
EPSS 0.00
CVE-2025-21190 HIGH
Windows Telephony Service - Remote Code Execution via Heap-based Buffer Overflow
Feb 11, 2025
CVSS 8.8
EPSS 0.00
CVE-2025-21188 MEDIUM
Azure Network Watcher < 1.4.3563.1 - Elevation of Privilege via Improper Link Resolution
Feb 11, 2025
CVSS 6.0
EPSS 0.00
CVE-2025-21184 HIGH
Windows 10 1507-24H2 and Windows Server 2016-2019 - Elevation of Privilege via Core Messaging Heap-based Buffer Overflow
Feb 11, 2025
CVSS 7.0
EPSS 0.00
CVE-2025-21183 HIGH
Windows 11 24H2 / Server 2025 < 10.0.26100.3107 - ReFS Deduplication Service EoP via Double Free
Feb 11, 2025
CVSS 7.4
EPSS 0.00
CVE-2025-21182 HIGH
Windows 11 24H2 and Windows Server 2025 < 10.0.26100.3107 - Elevation of Privilege via ReFS Deduplication Service
Feb 11, 2025
CVSS 7.4
EPSS 0.00
CVE-2025-21181 HIGH
Microsoft Windows 10 1507-24H2 and Windows Server 2008 - Denial of Service in Message Queuing
Feb 11, 2025
CVSS 7.5
EPSS 0.14
CVE-2025-21179 MEDIUM
Windows 11 24H2 and Windows Server 2025 < 10.0.26100.3107 - Denial of Service in DHCP Client Service
Feb 11, 2025
CVSS 4.8
EPSS 0.01
CVE-2025-21408 HIGH
Microsoft Edge Chromium < 133.0.3065.51 - Remote Code Execution via Type Confusion
Feb 06, 2025
CVSS 8.8
EPSS 0.00
CVE-2025-21404 MEDIUM
Microsoft Edge Chromium < 133.0.3065.51 - Spoofing
Feb 06, 2025
CVSS 4.3
EPSS 0.00
CVE-2025-21342 HIGH
Microsoft Edge Chromium < 133.0.3065.51 - Remote Code Execution via Type Confusion
Feb 06, 2025
CVSS 8.8
EPSS 0.01
CVE-2025-21283 MEDIUM
Microsoft Edge Chromium < 133.0.3065.51 - Remote Code Execution
Feb 06, 2025
CVSS 6.5
EPSS 0.00