microsoft

14,170 tracked vulnerabilities.

CVE-2025-21303 HIGH
Windows Telephony Service - Remote Code Execution via Heap-based Buffer Overflow
Jan 14, 2025
CVSS 8.8
EPSS 0.01
CVE-2025-21302 HIGH
Windows Telephony Service - Remote Code Execution via Heap-based Buffer Overflow
Jan 14, 2025
CVSS 8.8
EPSS 0.01
CVE-2025-21301 MEDIUM
Windows Geolocation Service - Information Disclosure
Jan 14, 2025
CVSS 6.5
EPSS 0.00
CVE-2025-21300 HIGH
Windows 10 1507-24H2 and Windows Server 2008-2012 - Denial of Service in UPnP Device Host
Jan 14, 2025
CVSS 7.5
EPSS 0.01
CVE-2025-21299 HIGH
Windows Kerberos - Privilege Escalation
Jan 14, 2025
CVSS 7.1
EPSS 0.01
CVE-2025-21298 CRITICAL
Windows 10 1507-22H2, Windows 11 22H2-24H2, Windows Server 2008-2012 - Remote Code Execution via OLE Use-After-Free
Jan 14, 2025
CVSS 9.8
EPSS 0.75
CVE-2025-21297 HIGH
Windows Server RCE via Use-After-Free (2008, 2012, 2016, 2019, 2022, 2025)
Jan 14, 2025
CVSS 8.1
EPSS 0.02
CVE-2025-21296 HIGH
Windows 10 1507-24H2 and Windows Server 2008-2012 - Remote Code Execution via BranchCache Use-After-Free
Jan 14, 2025
CVSS 7.5
EPSS 0.00
CVE-2025-21295 HIGH
Windows 10/11, Server 2008-2012 RCE via SPNEGO NEGOEX Use-After-Free
Jan 14, 2025
CVSS 8.1
EPSS 0.02
CVE-2025-21294 HIGH
Windows 10 1507-24H2 and Windows Server 2008-2012 - Remote Code Execution via Digest Authentication
Jan 14, 2025
CVSS 8.1
EPSS 0.02
CVE-2025-21293 HIGH
Windows 10 1507-24H2 and Windows Server 2012-2016 - Active Directory Domain Services Elevation of Privilege
Jan 14, 2025
CVSS 8.8
EPSS 0.76
CVE-2025-21292 HIGH
Windows 10/11, Server 2019/2022/2025 - Elevation of Privilege via Search Service
Jan 14, 2025
CVSS 8.8
EPSS 0.01
CVE-2025-21291 HIGH
Windows DirectShow - Remote Code Execution via Double Free
Jan 14, 2025
CVSS 8.8
EPSS 0.02
CVE-2025-21290 HIGH
Windows 10 1507-24H2 and Windows Server 2008-2012 - Denial of Service in Message Queuing
Jan 14, 2025
CVSS 7.5
EPSS 0.01
CVE-2025-21289 HIGH
Windows 10 1507-24H2 and Windows Server 2008-2012 - Denial of Service in Message Queuing
Jan 14, 2025
CVSS 7.5
EPSS 0.01
CVE-2025-21288 MEDIUM
Windows 10 1507-24H2 and Windows Server 2008-2012 - Information Disclosure via COM Server
Jan 14, 2025
CVSS 6.5
EPSS 0.00
CVE-2025-21287 HIGH
Windows 10 1507-24H2 and Windows Server 2008-2012 - Elevation of Privilege via Windows Installer
Jan 14, 2025
CVSS 7.8
EPSS 0.00
CVE-2025-21286 HIGH
Windows Telephony Service - Remote Code Execution via Heap-based Buffer Overflow
Jan 14, 2025
CVSS 8.8
EPSS 0.03
CVE-2025-21285 HIGH
Windows 10 1507-22H2, Windows 11 22H2-24H2, Windows Server 2008-2012 - Denial of Service via MSMQ
Jan 14, 2025
CVSS 7.5
EPSS 0.43
CVE-2025-21284 MEDIUM
Windows 10/11, Server 2016-2019 - DoS in Virtual TPM
Jan 14, 2025
CVSS 5.5
EPSS 0.00
CVE-2025-21282 HIGH
Windows Telephony Service - Remote Code Execution via Heap-based Buffer Overflow
Jan 14, 2025
CVSS 8.8
EPSS 0.02
CVE-2025-21281 HIGH
Windows 10 1507-22H2, Windows 11 22H2-24H2, Windows Server 2012-2016 - Elevation of Privilege via COM Use-After-Free
Jan 14, 2025
CVSS 7.8
EPSS 0.00
CVE-2025-21280 MEDIUM
Windows 10/11, Server 2016-2019 - DoS in Virtual TPM
Jan 14, 2025
CVSS 5.5
EPSS 0.00
CVE-2025-21278 MEDIUM
Windows Remote Desktop Gateway - Denial of Service via Race Condition
Jan 14, 2025
CVSS 6.2
EPSS 0.00
CVE-2025-21277 HIGH
Windows 10 1507-24H2 and Windows Server 2008-2012 - Denial of Service via MSMQ Buffer Over-read
Jan 14, 2025
CVSS 7.5
EPSS 0.30