Vendor CVEs
Microsoft
All CVEs
15,666 total · sorted by risk| CVE | Vendor / Product | Sev | Risk | CVSS | EPSS | KEV | Published | Description |
|---|---|---|---|---|---|---|---|---|
| CVE-2025-21171 | Hig | 0.49 | 7.5 | 0.02 | Jan 14, 2025 | .NET Remote Code Execution Vulnerability | ||
| CVE-2024-49129 | Hig | 0.49 | 7.5 | 0.01 | Dec 12, 2024 | Windows Remote Desktop Gateway (RD Gateway) Denial of Service Vulnerability | ||
| CVE-2024-49121 | Hig | 0.49 | 7.5 | 0.02 | Dec 12, 2024 | Windows Lightweight Directory Access Protocol (LDAP) Denial of Service Vulnerability | ||
| CVE-2024-49096 | Hig | 0.49 | 7.5 | 0.03 | Dec 12, 2024 | Microsoft Message Queuing (MSMQ) Denial of Service Vulnerability | ||
| CVE-2024-49075 | Hig | 0.49 | 7.5 | 0.03 | Dec 12, 2024 | Windows Remote Desktop Services Denial of Service Vulnerability | ||
| CVE-2024-49053 | Hig | 0.49 | 7.6 | 0.01 | Nov 26, 2024 | Microsoft Dynamics 365 Sales Spoofing Vulnerability | ||
| CVE-2024-49040 | Hig | 0.49 | 7.5 | 0.08 | Nov 12, 2024 | Microsoft Exchange Server Spoofing Vulnerability | ||
| CVE-2024-49033 | Hig | 0.49 | 7.5 | 0.02 | Nov 12, 2024 | Microsoft Word Security Feature Bypass Vulnerability | ||
| CVE-2024-43499 | Hig | 0.49 | 7.5 | 0.03 | Nov 12, 2024 | .NET and Visual Studio Denial of Service Vulnerability | ||
| CVE-2024-43450 | Hig | 0.49 | 7.5 | 0.01 | Nov 12, 2024 | Windows DNS Spoofing Vulnerability | ||
| CVE-2024-43579 | Hig | 0.49 | 7.6 | 0.01 | Oct 17, 2024 | Microsoft Edge (Chromium-based) Remote Code Execution Vulnerability | ||
| CVE-2024-43578 | Hig | 0.49 | 7.6 | 0.01 | Oct 17, 2024 | Microsoft Edge (Chromium-based) Remote Code Execution Vulnerability | ||
| CVE-2024-43566 | Hig | 0.49 | 7.5 | 0.01 | Oct 17, 2024 | Microsoft Edge (Chromium-based) Remote Code Execution Vulnerability | ||
| CVE-2024-38204 | Hig | 0.49 | 7.5 | 0.01 | Oct 15, 2024 | Improper access control in Imagine Cup allows an authorized attacker to elevate privileges over a network. | ||
| CVE-2024-43575 | Hig | 0.49 | 7.5 | 0.02 | Oct 8, 2024 | Windows Hyper-V Denial of Service Vulnerability | ||
| CVE-2024-43567 | Hig | 0.49 | 7.5 | 0.02 | Oct 8, 2024 | Windows Hyper-V Denial of Service Vulnerability | ||
| CVE-2024-43565 | Hig | 0.49 | 7.5 | 0.02 | Oct 8, 2024 | Windows Network Address Translation (NAT) Denial of Service Vulnerability | ||
| CVE-2024-43562 | Hig | 0.49 | 7.5 | 0.02 | Oct 8, 2024 | Windows Network Address Translation (NAT) Denial of Service Vulnerability | ||
| CVE-2024-43545 | Hig | 0.49 | 7.5 | 0.02 | Oct 8, 2024 | Windows Online Certificate Status Protocol (OCSP) Server Denial of Service Vulnerability | ||
| CVE-2024-43544 | Hig | 0.49 | 7.5 | 0.02 | Oct 8, 2024 | Microsoft Simple Certificate Enrollment Protocol Denial of Service Vulnerability | ||
| CVE-2024-43541 | Hig | 0.49 | 7.5 | 0.02 | Oct 8, 2024 | Microsoft Simple Certificate Enrollment Protocol Denial of Service Vulnerability | ||
| CVE-2024-43521 | Hig | 0.49 | 7.5 | 0.02 | Oct 8, 2024 | Windows Hyper-V Denial of Service Vulnerability | ||
| CVE-2024-43515 | Hig | 0.49 | 7.5 | 0.02 | Oct 8, 2024 | Internet Small Computer Systems Interface (iSCSI) Denial of Service Vulnerability | ||
| CVE-2024-43506 | Hig | 0.49 | 7.5 | 0.02 | Oct 8, 2024 | BranchCache Denial of Service Vulnerability | ||
| CVE-2024-43485 | Hig | 0.49 | 7.5 | 0.03 | Oct 8, 2024 | .NET and Visual Studio Denial of Service Vulnerability | ||
| CVE-2024-43484 | Hig | 0.49 | 7.5 | 0.03 | Oct 8, 2024 | .NET, .NET Framework, and Visual Studio Denial of Service Vulnerability | ||
| CVE-2024-43483 | Hig | 0.49 | 7.5 | 0.03 | Oct 8, 2024 | .NET, .NET Framework, and Visual Studio Denial of Service Vulnerability | ||
| CVE-2024-38262 | Hig | 0.49 | 7.5 | 0.01 | Oct 8, 2024 | Windows Remote Desktop Licensing Service Remote Code Execution Vulnerability | ||
| CVE-2024-38149 | Hig | 0.49 | 7.5 | 0.02 | Oct 8, 2024 | BranchCache Denial of Service Vulnerability | ||
| CVE-2024-38129 | Hig | 0.49 | 7.5 | 0.01 | Oct 8, 2024 | Windows Kerberos Elevation of Privilege Vulnerability | ||
| CVE-2024-38029 | Hig | 0.49 | 7.5 | 0.01 | Oct 8, 2024 | Microsoft OpenSSH for Windows Remote Code Execution Vulnerability | ||
| CVE-2024-47083 | Hig | 0.49 | 7.5 | 0.02 | Sep 25, 2024 | Power Platform Terraform Provider allows managing environments and other resources within Power Platform. Versions prior to 3.0.0 have an issue in the Power Platform Terraform Provider where sensitive information, specifically the `client_secret` used in the service principal… | ||
| CVE-2024-43476 | Hig | 0.49 | 7.6 | 0.01 | Sep 10, 2024 | Microsoft Dynamics 365 (on-premises) Cross-site Scripting Vulnerability | ||
| CVE-2024-43467 | Hig | 0.49 | 7.5 | 0.01 | Sep 10, 2024 | Windows Remote Desktop Licensing Service Remote Code Execution Vulnerability | ||
| CVE-2024-38263 | Hig | 0.49 | 7.5 | 0.01 | Sep 10, 2024 | Windows Remote Desktop Licensing Service Remote Code Execution Vulnerability | ||
| CVE-2024-38257 | Hig | 0.49 | 7.5 | 0.04 | Sep 10, 2024 | Microsoft AllJoyn API Information Disclosure Vulnerability | ||
| CVE-2024-38236 | Hig | 0.49 | 7.5 | 0.02 | Sep 10, 2024 | DHCP Server Service Denial of Service Vulnerability | ||
| CVE-2024-38233 | Hig | 0.49 | 7.5 | 0.02 | Sep 10, 2024 | Windows Networking Denial of Service Vulnerability | ||
| CVE-2024-38232 | Hig | 0.49 | 7.5 | 0.02 | Sep 10, 2024 | Windows Networking Denial of Service Vulnerability | ||
| CVE-2024-38119 | Hig | 0.49 | 7.5 | 0.01 | Sep 10, 2024 | Windows Network Address Translation (NAT) Remote Code Execution Vulnerability | ||
| CVE-2024-43477 | Hig | 0.49 | 7.5 | 0.01 | Aug 23, 2024 | Improper access control in Decentralized Identity Services resulted in a vulnerability that allows an unauthenticated attacker to disable Verifiable ID's on another tenant. | ||
| CVE-2024-38198 | Hig | 0.49 | 7.5 | 0.01 | Aug 13, 2024 | Windows Print Spooler Elevation of Privilege Vulnerability | ||
| CVE-2024-38168 | Hig | 0.49 | 7.5 | 0.03 | Aug 13, 2024 | .NET and Visual Studio Denial of Service Vulnerability | ||
| CVE-2024-38146 | Hig | 0.49 | 7.5 | 0.02 | Aug 13, 2024 | Windows Layer-2 Bridge Network Driver Denial of Service Vulnerability | ||
| CVE-2024-38145 | Hig | 0.49 | 7.5 | 0.02 | Aug 13, 2024 | Windows Layer-2 Bridge Network Driver Denial of Service Vulnerability | ||
| CVE-2024-38138 | Hig | 0.49 | 7.5 | 0.02 | Aug 13, 2024 | Windows Deployment Services Remote Code Execution Vulnerability | ||
| CVE-2024-38132 | Hig | 0.49 | 7.5 | 0.03 | Aug 13, 2024 | Windows Network Address Translation (NAT) Denial of Service Vulnerability | ||
| CVE-2024-38126 | Hig | 0.49 | 7.5 | 0.03 | Aug 13, 2024 | Windows Network Address Translation (NAT) Denial of Service Vulnerability | ||
| CVE-2024-37968 | Hig | 0.49 | 7.5 | 0.01 | Aug 13, 2024 | Windows DNS Spoofing Vulnerability | ||
| CVE-2024-38095 | Hig | 0.49 | 7.5 | 0.03 | Jul 9, 2024 | .NET and Visual Studio Denial of Service Vulnerability |
- risk 0.49cvss 7.5epss 0.02
.NET Remote Code Execution Vulnerability
- risk 0.49cvss 7.5epss 0.01
Windows Remote Desktop Gateway (RD Gateway) Denial of Service Vulnerability
- risk 0.49cvss 7.5epss 0.02
Windows Lightweight Directory Access Protocol (LDAP) Denial of Service Vulnerability
- risk 0.49cvss 7.5epss 0.03
Microsoft Message Queuing (MSMQ) Denial of Service Vulnerability
- risk 0.49cvss 7.5epss 0.03
Windows Remote Desktop Services Denial of Service Vulnerability
- risk 0.49cvss 7.6epss 0.01
Microsoft Dynamics 365 Sales Spoofing Vulnerability
- risk 0.49cvss 7.5epss 0.08
Microsoft Exchange Server Spoofing Vulnerability
- risk 0.49cvss 7.5epss 0.02
Microsoft Word Security Feature Bypass Vulnerability
- risk 0.49cvss 7.5epss 0.03
.NET and Visual Studio Denial of Service Vulnerability
- risk 0.49cvss 7.5epss 0.01
Windows DNS Spoofing Vulnerability
- risk 0.49cvss 7.6epss 0.01
Microsoft Edge (Chromium-based) Remote Code Execution Vulnerability
- risk 0.49cvss 7.6epss 0.01
Microsoft Edge (Chromium-based) Remote Code Execution Vulnerability
- risk 0.49cvss 7.5epss 0.01
Microsoft Edge (Chromium-based) Remote Code Execution Vulnerability
- risk 0.49cvss 7.5epss 0.01
Improper access control in Imagine Cup allows an authorized attacker to elevate privileges over a network.
- risk 0.49cvss 7.5epss 0.02
Windows Hyper-V Denial of Service Vulnerability
- risk 0.49cvss 7.5epss 0.02
Windows Hyper-V Denial of Service Vulnerability
- risk 0.49cvss 7.5epss 0.02
Windows Network Address Translation (NAT) Denial of Service Vulnerability
- risk 0.49cvss 7.5epss 0.02
Windows Network Address Translation (NAT) Denial of Service Vulnerability
- risk 0.49cvss 7.5epss 0.02
Windows Online Certificate Status Protocol (OCSP) Server Denial of Service Vulnerability
- risk 0.49cvss 7.5epss 0.02
Microsoft Simple Certificate Enrollment Protocol Denial of Service Vulnerability
- risk 0.49cvss 7.5epss 0.02
Microsoft Simple Certificate Enrollment Protocol Denial of Service Vulnerability
- risk 0.49cvss 7.5epss 0.02
Windows Hyper-V Denial of Service Vulnerability
- risk 0.49cvss 7.5epss 0.02
Internet Small Computer Systems Interface (iSCSI) Denial of Service Vulnerability
- risk 0.49cvss 7.5epss 0.02
BranchCache Denial of Service Vulnerability
- risk 0.49cvss 7.5epss 0.03
.NET and Visual Studio Denial of Service Vulnerability
- risk 0.49cvss 7.5epss 0.03
.NET, .NET Framework, and Visual Studio Denial of Service Vulnerability
- risk 0.49cvss 7.5epss 0.03
.NET, .NET Framework, and Visual Studio Denial of Service Vulnerability
- risk 0.49cvss 7.5epss 0.01
Windows Remote Desktop Licensing Service Remote Code Execution Vulnerability
- risk 0.49cvss 7.5epss 0.02
BranchCache Denial of Service Vulnerability
- risk 0.49cvss 7.5epss 0.01
Windows Kerberos Elevation of Privilege Vulnerability
- risk 0.49cvss 7.5epss 0.01
Microsoft OpenSSH for Windows Remote Code Execution Vulnerability
- risk 0.49cvss 7.5epss 0.02
Power Platform Terraform Provider allows managing environments and other resources within Power Platform. Versions prior to 3.0.0 have an issue in the Power Platform Terraform Provider where sensitive information, specifically the `client_secret` used in the service principal…
- risk 0.49cvss 7.6epss 0.01
Microsoft Dynamics 365 (on-premises) Cross-site Scripting Vulnerability
- risk 0.49cvss 7.5epss 0.01
Windows Remote Desktop Licensing Service Remote Code Execution Vulnerability
- risk 0.49cvss 7.5epss 0.01
Windows Remote Desktop Licensing Service Remote Code Execution Vulnerability
- risk 0.49cvss 7.5epss 0.04
Microsoft AllJoyn API Information Disclosure Vulnerability
- risk 0.49cvss 7.5epss 0.02
DHCP Server Service Denial of Service Vulnerability
- risk 0.49cvss 7.5epss 0.02
Windows Networking Denial of Service Vulnerability
- risk 0.49cvss 7.5epss 0.02
Windows Networking Denial of Service Vulnerability
- risk 0.49cvss 7.5epss 0.01
Windows Network Address Translation (NAT) Remote Code Execution Vulnerability
- risk 0.49cvss 7.5epss 0.01
Improper access control in Decentralized Identity Services resulted in a vulnerability that allows an unauthenticated attacker to disable Verifiable ID's on another tenant.
- risk 0.49cvss 7.5epss 0.01
Windows Print Spooler Elevation of Privilege Vulnerability
- risk 0.49cvss 7.5epss 0.03
.NET and Visual Studio Denial of Service Vulnerability
- risk 0.49cvss 7.5epss 0.02
Windows Layer-2 Bridge Network Driver Denial of Service Vulnerability
- risk 0.49cvss 7.5epss 0.02
Windows Layer-2 Bridge Network Driver Denial of Service Vulnerability
- risk 0.49cvss 7.5epss 0.02
Windows Deployment Services Remote Code Execution Vulnerability
- risk 0.49cvss 7.5epss 0.03
Windows Network Address Translation (NAT) Denial of Service Vulnerability
- risk 0.49cvss 7.5epss 0.03
Windows Network Address Translation (NAT) Denial of Service Vulnerability
- risk 0.49cvss 7.5epss 0.01
Windows DNS Spoofing Vulnerability
- risk 0.49cvss 7.5epss 0.03
.NET and Visual Studio Denial of Service Vulnerability
Page 123 of 314