microsoft

14,176 tracked vulnerabilities.

CVE-2024-43487 MEDIUM
Windows Mark of the Web - Privilege Escalation
Sep 10, 2024
CVSS 6.5
EPSS 0.05
CVE-2024-43482 MEDIUM
Microsoft Outlook for iOS < 4.2435.0 - Information Disclosure
Sep 10, 2024
CVSS 6.5
EPSS 0.06
CVE-2024-43479 HIGH
Microsoft Power Automate 2.41-2.41.178.24249 - Remote Code Execution
Sep 10, 2024
CVSS 8.5
EPSS 0.01
CVE-2024-43476 HIGH
Microsoft Dynamics 365 < 9.1.32 - Cross-Site Scripting
Sep 10, 2024
CVSS 7.6
EPSS 0.00
CVE-2024-43475 HIGH
Windows Server 2008 - Information Disclosure via Buffer Over-read
Sep 10, 2024
CVSS 7.3
EPSS 0.09
CVE-2024-43474 HIGH
Microsoft SQL Server 2017/2019 Information Disclosure via Improper Null Termination
Sep 10, 2024
CVSS 7.6
EPSS 0.07
CVE-2024-43470 HIGH
Azure Network Watcher Agent 1.4.3320.1-1.4.3422.1 - Elevation of Privilege via Improper Link Resolution
Sep 10, 2024
CVSS 7.3
EPSS 0.01
CVE-2024-43469 HIGH
Azure CycleCloud 8.0.0-8.6.3 - Remote Code Execution
Sep 10, 2024
CVSS 8.8
EPSS 0.01
CVE-2024-43467 HIGH
Windows Server RDS Licensing Service Race Condition RCE
Sep 10, 2024
CVSS 7.5
EPSS 0.00
CVE-2024-43466 MEDIUM
Microsoft SharePoint Server - Denial of Service via Deserialization of Untrusted Data
Sep 10, 2024
CVSS 6.5
EPSS 0.03
CVE-2024-43465 HIGH
Microsoft Excel - Elevation of Privilege via Use-After-Free
Sep 10, 2024
CVSS 7.8
EPSS 0.01
CVE-2024-43464 HIGH
Microsoft SharePoint Server - Remote Code Execution via Untrusted Data Deserialization
Sep 10, 2024
CVSS 7.2
EPSS 0.64
CVE-2024-43463 HIGH
Microsoft Office Visio - Remote Code Execution via Use-After-Free
Sep 10, 2024
CVSS 7.8
EPSS 0.01
CVE-2024-43461 HIGH KEV
Windows MSHTML Platform - Spoofing
Sep 10, 2024
CVSS 8.8
EPSS 0.10
CVE-2024-43458 HIGH
Windows 10 1607 and Windows Server 2016 < 10.0.14393.7336 - Information Disclosure via Uninitialized Resource
Sep 10, 2024
CVSS 7.7
EPSS 0.02
CVE-2024-43457 HIGH
Microsoft Windows Setup and Deployment - Elevation of Privilege
Sep 10, 2024
CVSS 7.8
EPSS 0.03
CVE-2024-43455 HIGH
Windows Server 2008, 2012, 2016, 2019, 2022, 2022 23H2 - Spoofing via Remote Desktop Licensing Service
Sep 10, 2024
CVSS 8.8
EPSS 0.05
CVE-2024-43454 HIGH
Microsoft Windows Server 2008 < 10.0.14393.7336 - Path Traversal
Sep 10, 2024
CVSS 7.1
EPSS 0.29
CVE-2024-38263 HIGH
Windows Remote Desktop Licensing Service - Remote Code Execution
Sep 10, 2024
CVSS 7.5
EPSS 0.00
CVE-2024-38260 HIGH
Windows Remote Desktop Licensing Service - Remote Code Execution
Sep 10, 2024
CVSS 8.8
EPSS 0.04
CVE-2024-38259 HIGH
Microsoft Management Console < - RCE
Sep 10, 2024
CVSS 8.8
EPSS 0.03
CVE-2024-38258 MEDIUM
Windows Remote Desktop < - Info Disclosure
Sep 10, 2024
CVSS 6.5
EPSS 0.01
CVE-2024-38257 HIGH
Microsoft AllJoyn API - Info Disclosure
Sep 10, 2024
CVSS 7.5
EPSS 0.04
CVE-2024-38256 MEDIUM
Windows Kernel-Mode - Info Disclosure
Sep 10, 2024
CVSS 5.5
EPSS 0.00
CVE-2024-38254 MEDIUM
Windows 10 1507-22H2 and Windows 11 21H2-24H2 - Authentication Information Disclosure via Uninitialized Resource
Sep 10, 2024
CVSS 5.5
EPSS 0.00