microsoft
14,170 tracked vulnerabilities.
CVE-2025-21303
HIGH
Windows Telephony Service - Remote Code Execution via Heap-based Buffer Overflow
Jan 14, 2025
CVSS 8.8
EPSS 0.01
CVE-2025-21302
HIGH
Windows Telephony Service - Remote Code Execution via Heap-based Buffer Overflow
Jan 14, 2025
CVSS 8.8
EPSS 0.01
CVE-2025-21301
MEDIUM
Windows Geolocation Service - Information Disclosure
Jan 14, 2025
CVSS 6.5
EPSS 0.00
CVE-2025-21300
HIGH
Windows 10 1507-24H2 and Windows Server 2008-2012 - Denial of Service in UPnP Device Host
Jan 14, 2025
CVSS 7.5
EPSS 0.01
CVE-2025-21299
HIGH
Windows Kerberos - Privilege Escalation
Jan 14, 2025
CVSS 7.1
EPSS 0.01
CVE-2025-21298
CRITICAL
Windows 10 1507-22H2, Windows 11 22H2-24H2, Windows Server 2008-2012 - Remote Code Execution via OLE Use-After-Free
Jan 14, 2025
CVSS 9.8
EPSS 0.75
CVE-2025-21297
HIGH
Windows Server RCE via Use-After-Free (2008, 2012, 2016, 2019, 2022, 2025)
Jan 14, 2025
CVSS 8.1
EPSS 0.02
CVE-2025-21296
HIGH
Windows 10 1507-24H2 and Windows Server 2008-2012 - Remote Code Execution via BranchCache Use-After-Free
Jan 14, 2025
CVSS 7.5
EPSS 0.00
CVE-2025-21295
HIGH
Windows 10/11, Server 2008-2012 RCE via SPNEGO NEGOEX Use-After-Free
Jan 14, 2025
CVSS 8.1
EPSS 0.02
CVE-2025-21294
HIGH
Windows 10 1507-24H2 and Windows Server 2008-2012 - Remote Code Execution via Digest Authentication
Jan 14, 2025
CVSS 8.1
EPSS 0.02
CVE-2025-21293
HIGH
Windows 10 1507-24H2 and Windows Server 2012-2016 - Active Directory Domain Services Elevation of Privilege
Jan 14, 2025
CVSS 8.8
EPSS 0.76
CVE-2025-21292
HIGH
Windows 10/11, Server 2019/2022/2025 - Elevation of Privilege via Search Service
Jan 14, 2025
CVSS 8.8
EPSS 0.01
CVE-2025-21291
HIGH
Windows DirectShow - Remote Code Execution via Double Free
Jan 14, 2025
CVSS 8.8
EPSS 0.02
CVE-2025-21290
HIGH
Windows 10 1507-24H2 and Windows Server 2008-2012 - Denial of Service in Message Queuing
Jan 14, 2025
CVSS 7.5
EPSS 0.01
CVE-2025-21289
HIGH
Windows 10 1507-24H2 and Windows Server 2008-2012 - Denial of Service in Message Queuing
Jan 14, 2025
CVSS 7.5
EPSS 0.01
CVE-2025-21288
MEDIUM
Windows 10 1507-24H2 and Windows Server 2008-2012 - Information Disclosure via COM Server
Jan 14, 2025
CVSS 6.5
EPSS 0.00
CVE-2025-21287
HIGH
Windows 10 1507-24H2 and Windows Server 2008-2012 - Elevation of Privilege via Windows Installer
Jan 14, 2025
CVSS 7.8
EPSS 0.00
CVE-2025-21286
HIGH
Windows Telephony Service - Remote Code Execution via Heap-based Buffer Overflow
Jan 14, 2025
CVSS 8.8
EPSS 0.03
CVE-2025-21285
HIGH
Windows 10 1507-22H2, Windows 11 22H2-24H2, Windows Server 2008-2012 - Denial of Service via MSMQ
Jan 14, 2025
CVSS 7.5
EPSS 0.43
CVE-2025-21284
MEDIUM
Windows 10/11, Server 2016-2019 - DoS in Virtual TPM
Jan 14, 2025
CVSS 5.5
EPSS 0.00
CVE-2025-21282
HIGH
Windows Telephony Service - Remote Code Execution via Heap-based Buffer Overflow
Jan 14, 2025
CVSS 8.8
EPSS 0.02
CVE-2025-21281
HIGH
Windows 10 1507-22H2, Windows 11 22H2-24H2, Windows Server 2012-2016 - Elevation of Privilege via COM Use-After-Free
Jan 14, 2025
CVSS 7.8
EPSS 0.00
CVE-2025-21280
MEDIUM
Windows 10/11, Server 2016-2019 - DoS in Virtual TPM
Jan 14, 2025
CVSS 5.5
EPSS 0.00
CVE-2025-21278
MEDIUM
Windows Remote Desktop Gateway - Denial of Service via Race Condition
Jan 14, 2025
CVSS 6.2
EPSS 0.00
CVE-2025-21277
HIGH
Windows 10 1507-24H2 and Windows Server 2008-2012 - Denial of Service via MSMQ Buffer Over-read
Jan 14, 2025
CVSS 7.5
EPSS 0.30
Products
windows_server_2016 4,606
windows_server_2019 4,345
windows_server_2012 3,825
windows_server_2008 3,554
windows_10 2,974
windows_server_2022 2,699
windows_7 2,368
windows_8.1 2,216
windows_rt_8.1 2,020
windows_10_1809 1,935
windows_10_21h2 1,934
windows_10_22h2 1,932
windows_server_2022_23h2 1,666
windows_10_1607 1,658
windows_11_22h2 1,651
internet_explorer 1,635
windows_11_23h2 1,548
windows_11_24h2 1,234
windows_10_1507 1,230
windows_server_2025 1,195
office 1,032
windows_11_21h2 1,001
windows_vista 828
edge 756
windows_xp 739
windows_11 573
windows_2000 515
windows_11_25h2 502
sharepoint_server 477
365_apps 472
Quick Filters