VYPR

Vendor CVEs

Microsoft

All CVEs

15,666 total · sorted by risk
  • CVE-2025-30386HigMay 13, 2025
    risk 0.55cvss 8.4epss 0.01

    Use after free in Microsoft Office allows an unauthorized attacker to execute code locally.

  • CVE-2025-30377HigMay 13, 2025
    risk 0.55cvss 8.4epss 0.01

    Use after free in Microsoft Office allows an unauthorized attacker to execute code locally.

  • CVE-2025-21416HigApr 30, 2025
    risk 0.55cvss 8.5epss 0.01

    Missing authorization in Azure Virtual Desktop allows an authorized attacker to elevate privileges over a network.

  • CVE-2025-26678HigApr 8, 2025
    risk 0.55cvss 8.4epss 0.01

    Improper access control in Windows Defender Application Control (WDAC) allows an unauthorized attacker to bypass a security feature locally.

  • CVE-2025-24084HigMar 11, 2025
    risk 0.55cvss 8.4epss 0.01

    Untrusted pointer dereference in Windows Subsystem for Linux allows an unauthorized attacker to execute code locally.

  • CVE-2025-24049HigMar 11, 2025
    risk 0.55cvss 8.4epss 0.00

    Improper neutralization of special elements used in a command ('command injection') in Azure Command Line Integration (CLI) allows an unauthorized attacker to elevate privileges locally.

  • CVE-2025-21362HigJan 14, 2025
    risk 0.55cvss 8.4epss 0.01

    Microsoft Excel Remote Code Execution Vulnerability

  • CVE-2025-21354HigJan 14, 2025
    risk 0.55cvss 8.4epss 0.01

    Microsoft Excel Remote Code Execution Vulnerability

  • CVE-2024-12902HigDec 23, 2024
    risk 0.55cvss 8.4epss 0.00

    ANCHOR from Global Wisdom Software is an integrated product running on a Windows virtual machine. The underlying Windows OS of the product contains high-privilege service accounts. If these accounts use default passwords, attackers could remotely log in to the virtual machine…

  • CVE-2024-49113HigDec 12, 2024
    risk 0.55cvss 7.5epss 0.83

    Windows Lightweight Directory Access Protocol (LDAP) Denial of Service Vulnerability

  • CVE-2024-49105HigDec 12, 2024
    risk 0.55cvss 8.4epss 0.02

    Remote Desktop Client Remote Code Execution Vulnerability

  • CVE-2024-49063HigDec 12, 2024
    risk 0.55cvss 8.4epss 0.02

    Microsoft/Muzic Remote Code Execution Vulnerability

  • CVE-2024-43479HigSep 10, 2024
    risk 0.55cvss 8.5epss 0.01

    Microsoft Power Automate Desktop Remote Code Execution Vulnerability

  • CVE-2024-38194HigSep 10, 2024
    risk 0.55cvss 8.4epss 0.01

    An authenticated attacker can exploit an improper authorization vulnerability in Azure Web Apps to elevate privileges over a network.

  • CVE-2024-38213MedKEVAug 13, 2024
    risk 0.55cvss 6.5epss 0.14

    Windows Mark of the Web Security Feature Bypass Vulnerability

  • CVE-2024-38218HigAug 12, 2024
    risk 0.55cvss 8.4epss 0.01

    Microsoft Edge (HTML-based) Memory Corruption Vulnerability

  • CVE-2024-37984HigJul 9, 2024
    risk 0.55cvss 8.4epss 0.01

    Secure Boot Security Feature Bypass Vulnerability

  • CVE-2024-30085HigJun 11, 2024
    risk 0.55cvss 7.8epss 0.14

    Windows Cloud Files Mini Filter Driver Elevation of Privilege Vulnerability

  • CVE-2024-29989HigApr 9, 2024
    risk 0.55cvss 8.4epss 0.01

    Azure Monitor Agent Elevation of Privilege Vulnerability

  • CVE-2024-29050HigApr 9, 2024
    risk 0.55cvss 8.4epss 0.01

    Windows Cryptographic Services Remote Code Execution Vulnerability

  • CVE-2024-21357HigFeb 13, 2024
    risk 0.55cvss 8.1epss 0.27

    Windows Pragmatic General Multicast (PGM) Remote Code Execution Vulnerability

  • CVE-2023-36050HigNov 14, 2023
    risk 0.55cvss 8.0epss 0.39

    Microsoft Exchange Server Spoofing Vulnerability

  • CVE-2023-36041HigNov 14, 2023
    risk 0.55cvss 7.8epss 0.57

    Microsoft Excel Remote Code Execution Vulnerability

  • CVE-2023-36569HigOct 10, 2023
    risk 0.55cvss 8.4epss 0.01

    Microsoft Office Elevation of Privilege Vulnerability

  • CVE-2023-32029HigJun 14, 2023
    risk 0.55cvss 7.8epss 0.54

    Microsoft Excel Remote Code Execution Vulnerability

  • CVE-2023-28291HigApr 11, 2023
    risk 0.55cvss 8.4epss 0.01

    Raw Image Extension Remote Code Execution Vulnerability

  • CVE-2022-41127HigDec 13, 2022
    risk 0.55cvss 8.5epss 0.02

    Microsoft Dynamics NAV and Microsoft Dynamics 365 Business Central (On Premises) Remote Code Execution Vulnerability

  • CVE-2022-38044HigOct 11, 2022
    risk 0.55cvss 7.8epss 0.56

    Windows CD-ROM File System Driver Remote Code Execution Vulnerability

  • CVE-2022-30222HigJul 12, 2022
    risk 0.55cvss 8.4epss 0.01

    Windows Shell Remote Code Execution Vulnerability

  • CVE-2022-30163HigJun 15, 2022
    risk 0.55cvss 8.5epss 0.02

    Windows Hyper-V Remote Code Execution Vulnerability

  • CVE-2021-41379MedKEVNov 10, 2021
    risk 0.55cvss 5.5epss 0.19

    Windows Installer Elevation of Privilege Vulnerability

  • CVE-2021-36952HigSep 15, 2021
    risk 0.55cvss 7.8epss 0.54

    Visual Studio Remote Code Execution Vulnerability

  • CVE-2021-34478HigAug 12, 2021
    risk 0.55cvss 7.8epss 0.51

    Microsoft Office Remote Code Execution Vulnerability

  • CVE-2021-34450HigJul 16, 2021
    risk 0.55cvss 8.5epss 0.03

    Windows Hyper-V Remote Code Execution Vulnerability

  • CVE-2021-34501HigJul 14, 2021
    risk 0.55cvss 7.8epss 0.53

    Microsoft Excel Remote Code Execution Vulnerability

  • CVE-2021-31213HigMay 11, 2021
    risk 0.55cvss 7.8epss 0.53

    Visual Studio Code Remote Containers Extension Remote Code Execution Vulnerability

  • CVE-2021-26864HigMar 11, 2021
    risk 0.55cvss 8.4epss 0.01

    Windows Virtual Registry Provider Elevation of Privilege Vulnerability

  • CVE-2021-26701HigFeb 25, 2021
    risk 0.55cvss 8.1epss 0.30

    .NET Core Remote Code Execution Vulnerability

  • CVE-2021-24105HigFeb 25, 2021
    risk 0.55cvss 8.4epss 0.02

    Depending on configuration of various package managers it is possible for an attacker to insert a malicious package into a package manager's repository which can be retrieved and used during development, build, and release processes. This insertion could lead to remote code…

  • CVE-2020-17141HigDec 10, 2020
    risk 0.55cvss 8.4epss 0.07

    Microsoft Exchange Remote Code Execution Vulnerability

  • CVE-2020-17136HigDec 10, 2020
    risk 0.55cvss 7.8epss 0.14

    Windows Cloud Files Mini Filter Driver Elevation of Privilege Vulnerability

  • CVE-2020-1576HigSep 11, 2020
    risk 0.55cvss 8.5epss 0.02

    A remote code execution vulnerability exists in Microsoft SharePoint when the software fails to check the source markup of an application package. An attacker who successfully exploited the vulnerability could run arbitrary code in the context of the SharePoint application…

  • CVE-2020-1285HigSep 11, 2020
    risk 0.55cvss 8.4epss 0.04

    A remote code execution vulnerability exists in the way that the Windows Graphics Device Interface (GDI) handles objects in the memory. An attacker who successfully exploited this vulnerability could take control of the affected system. An attacker could then install…

  • CVE-2020-1074HigSep 11, 2020
    risk 0.55cvss 7.8epss 0.53

    A remote code execution vulnerability exists when the Windows Jet Database Engine improperly handles objects in memory. An attacker who successfully exploited this vulnerability could execute arbitrary code on a victim system. An attacker could exploit this…

  • CVE-2020-1337HigAug 17, 2020
    risk 0.55cvss 7.8epss 0.14

    An elevation of privilege vulnerability exists when the Windows Print Spooler service improperly allows arbitrary writing to the file system. An attacker who successfully exploited this vulnerability could run arbitrary code with elevated system privileges. An attacker could…

  • CVE-2020-1048HigMay 21, 2020
    risk 0.55cvss 7.8epss 0.17

    An elevation of privilege vulnerability exists when the Windows Print Spooler service improperly allows arbitrary writing to the file system. An attacker who successfully exploited this vulnerability could run arbitrary code with elevated system privileges. An attacker could…

  • CVE-2020-0910HigApr 15, 2020
    risk 0.55cvss 8.4epss 0.09

    A remote code execution vulnerability exists when Windows Hyper-V on a host server fails to properly validate input from an authenticated user on a guest operating system, aka 'Windows Hyper-V Remote Code Execution Vulnerability'.

  • CVE-2019-1398HigNov 12, 2019
    risk 0.55cvss 8.4epss 0.03

    A remote code execution vulnerability exists when Windows Hyper-V on a host server fails to properly validate input from an authenticated user on a guest operating system, aka 'Windows Hyper-V Remote Code Execution Vulnerability'. This CVE ID is unique from CVE-2019-1389,…

  • CVE-2019-1397HigNov 12, 2019
    risk 0.55cvss 8.4epss 0.04

    A remote code execution vulnerability exists when Windows Hyper-V on a host server fails to properly validate input from an authenticated user on a guest operating system, aka 'Windows Hyper-V Remote Code Execution Vulnerability'. This CVE ID is unique from CVE-2019-1389,…

  • CVE-2019-1389HigNov 12, 2019
    risk 0.55cvss 8.4epss 0.04

    A remote code execution vulnerability exists when Windows Hyper-V on a host server fails to properly validate input from an authenticated user on a guest operating system, aka 'Windows Hyper-V Remote Code Execution Vulnerability'. This CVE ID is unique from CVE-2019-1397,…

Page 43 of 314