VYPR

Vendor CVEs

Microsoft

All CVEs

15,666 total · sorted by risk
  • CVE-2004-0119HigJun 1, 2004
    risk 0.52cvss 7.5epss 0.40

    The Negotiate Security Software Provider (SSP) interface in Windows 2000, Windows XP, and Windows Server 2003, allows remote attackers to cause a denial of service (crash from null dereference) or execute arbitrary code via a crafted SPNEGO NegTokenInit request during…

  • CVE-2026-69414HigAug 14, 2026
    risk 0.51cvss 7.8epss 0.01

    Microsoft is aware of an elevation of privilege in the Microsoft Malware Protection Engine in Microsoft Defender publicly referred to as "ShieldBreak ". We are working to provide a high quality security update that addresses this vulnerability. We will provide…

  • CVE-2026-50523HigAug 14, 2026
    risk 0.51cvss 7.8epss 0.00

    Improper neutralization of special elements used in a command ('command injection') in Microsoft PowerShell allows an authorized attacker to execute code locally.

  • CVE-2026-70354HigAug 11, 2026
    risk 0.51cvss 7.8epss 0.00

    Out-of-bounds write in .NET allows an unauthorized attacker to execute code locally.

  • CVE-2026-70347HigAug 11, 2026
    risk 0.51cvss 7.8epss 0.00

    Heap-based buffer overflow in Windows Installer allows an authorized attacker to elevate privileges locally.

  • CVE-2026-70346HigAug 11, 2026
    risk 0.51cvss 7.8epss 0.00

    Stack-based buffer overflow in Windows Installer allows an authorized attacker to elevate privileges locally.

  • CVE-2026-70345HigAug 11, 2026
    risk 0.51cvss 7.8epss 0.00

    Heap-based buffer overflow in Windows Installer allows an authorized attacker to elevate privileges locally.

  • CVE-2026-70344HigAug 11, 2026
    risk 0.51cvss 7.8epss 0.00

    Stack-based buffer overflow in Windows Installer allows an authorized attacker to elevate privileges locally.

  • CVE-2026-70338HigAug 11, 2026
    risk 0.51cvss 7.8epss 0.00

    Improper control of generation of code ('code injection') in Microsoft PowerShell allows an unauthorized attacker to bypass a security feature locally.

  • CVE-2026-70335HigAug 11, 2026
    risk 0.51cvss 7.8epss 0.00

    Improper neutralization of special elements used in an os command ('os command injection') in GitHub Copilot and Visual Studio Code allows an unauthorized attacker to elevate privileges locally.

  • CVE-2026-70313HigAug 11, 2026
    risk 0.51cvss 7.8epss 0.00

    Improper input validation in Microsoft Office PowerPoint allows an unauthorized attacker to disclose information locally.

  • CVE-2026-70311HigAug 11, 2026
    risk 0.51cvss 7.8epss 0.00

    Use after free in Microsoft Office Word allows an unauthorized attacker to execute code locally.

  • CVE-2026-69278HigAug 11, 2026
    risk 0.51cvss 7.8epss 0.00

    Incorrect authorization in Visual Studio Code allows an unauthorized attacker to bypass a security feature locally.

  • CVE-2026-68817HigAug 11, 2026
    risk 0.51cvss 7.8epss 0.00

    Stack-based buffer overflow in Microsoft Office Excel allows an unauthorized attacker to execute code locally.

  • CVE-2026-68816HigAug 11, 2026
    risk 0.51cvss 7.8epss 0.00

    Stack-based buffer overflow in Microsoft Office Excel allows an unauthorized attacker to execute code locally.

  • CVE-2026-68815HigAug 11, 2026
    risk 0.51cvss 7.8epss 0.00

    Heap-based buffer overflow in Microsoft Office Excel allows an unauthorized attacker to execute code locally.

  • CVE-2026-68814HigAug 11, 2026
    risk 0.51cvss 7.8epss 0.00

    Out-of-bounds read in Microsoft Office Excel allows an unauthorized attacker to execute code locally.

  • CVE-2026-68812HigAug 11, 2026
    risk 0.51cvss 7.8epss 0.00

    Heap-based buffer overflow in Microsoft Office Excel allows an unauthorized attacker to execute code locally.

  • CVE-2026-68811HigAug 11, 2026
    risk 0.51cvss 7.8epss 0.00

    Access of resource using incompatible type ('type confusion') in Microsoft Office Excel allows an unauthorized attacker to execute code locally.

  • CVE-2026-68810HigAug 11, 2026
    risk 0.51cvss 7.8epss 0.00

    Untrusted pointer dereference in Microsoft Office Excel allows an unauthorized attacker to execute code locally.

  • CVE-2026-68807HigAug 11, 2026
    risk 0.51cvss 7.8epss 0.00

    Heap-based buffer overflow in Microsoft Office Excel allows an unauthorized attacker to execute code locally.

  • CVE-2026-68806HigAug 11, 2026
    risk 0.51cvss 7.8epss 0.00

    Out-of-bounds write in Microsoft Office Excel allows an unauthorized attacker to execute code locally.

  • CVE-2026-68805HigAug 11, 2026
    risk 0.51cvss 7.8epss 0.00

    Heap-based buffer overflow in Microsoft Office Excel allows an unauthorized attacker to execute code locally.

  • CVE-2026-68804HigAug 11, 2026
    risk 0.51cvss 7.8epss 0.00

    Numeric truncation error in Microsoft Office Excel allows an unauthorized attacker to execute code locally.

  • CVE-2026-68803HigAug 11, 2026
    risk 0.51cvss 7.8epss 0.00

    Access of resource using incompatible type ('type confusion') in Microsoft Office Excel allows an unauthorized attacker to execute code locally.

  • CVE-2026-68801HigAug 11, 2026
    risk 0.51cvss 7.8epss 0.00

    Heap-based buffer overflow in Microsoft Office Excel allows an unauthorized attacker to execute code locally.

  • CVE-2026-68800HigAug 11, 2026
    risk 0.51cvss 7.8epss 0.00

    Heap-based buffer overflow in Microsoft Office Excel allows an unauthorized attacker to execute code locally.

  • CVE-2026-68798HigAug 11, 2026
    risk 0.51cvss 7.8epss 0.00

    Heap-based buffer overflow in Microsoft Office Excel allows an unauthorized attacker to execute code locally.

  • CVE-2026-68796HigAug 11, 2026
    risk 0.51cvss 7.8epss 0.00

    Heap-based buffer overflow in Microsoft Office Excel allows an unauthorized attacker to execute code locally.

  • CVE-2026-68795HigAug 11, 2026
    risk 0.51cvss 7.8epss 0.00

    Stack-based buffer overflow in Microsoft Office Excel allows an unauthorized attacker to execute code locally.

  • CVE-2026-68794HigAug 11, 2026
    risk 0.51cvss 7.8epss 0.00

    Heap-based buffer overflow in Microsoft Office Excel allows an unauthorized attacker to execute code locally.

  • CVE-2026-68793HigAug 11, 2026
    risk 0.51cvss 7.8epss 0.00

    Out-of-bounds read in Microsoft Office Excel allows an unauthorized attacker to execute code locally.

  • CVE-2026-68792HigAug 11, 2026
    risk 0.51cvss 7.8epss 0.00

    Improper neutralization of special elements used in a command ('command injection') in Microsoft Office allows an authorized attacker to elevate privileges locally.

  • CVE-2026-66807HigAug 11, 2026
    risk 0.51cvss 7.8epss 0.00

    Stack-based buffer overflow in Microsoft Office allows an unauthorized attacker to execute code locally.

  • CVE-2026-66804HigAug 11, 2026
    risk 0.51cvss 7.8epss 0.05

    Improper access control in Windows Cross Device Service allows an authorized attacker to elevate privileges locally.

  • CVE-2026-66799HigAug 11, 2026
    risk 0.51cvss 7.8epss 0.00

    Heap-based buffer overflow in Windows Key Guard allows an authorized attacker to elevate privileges locally.

  • CVE-2026-65814HigAug 11, 2026
    risk 0.51cvss 7.8epss 0.00

    Heap-based buffer overflow in Windows Storage Port Driver allows an authorized attacker to elevate privileges locally.

  • CVE-2026-65810HigAug 11, 2026
    risk 0.51cvss 7.8epss 0.00

    Relative path traversal in .NET Framework allows an unauthorized attacker to elevate privileges locally.

  • CVE-2026-65790HigAug 11, 2026
    risk 0.51cvss 7.8epss 0.00

    Heap-based buffer overflow in Windows Message Queuing allows an authorized attacker to elevate privileges locally.

  • CVE-2026-65787HigAug 11, 2026
    risk 0.51cvss 7.8epss 0.00

    Heap-based buffer overflow in Desktop Window Manager allows an authorized attacker to elevate privileges locally.

  • CVE-2026-65786HigAug 11, 2026
    risk 0.51cvss 7.8epss 0.00

    Heap-based buffer overflow in Desktop Window Manager allows an authorized attacker to elevate privileges locally.

  • CVE-2026-65775HigAug 11, 2026
    risk 0.51cvss 7.8epss 0.03

    Use after free in Windows Win32K allows an authorized attacker to elevate privileges locally.

  • CVE-2026-65774HigAug 11, 2026
    risk 0.51cvss 7.8epss 0.00

    Heap-based buffer overflow in Windows Installer allows an authorized attacker to elevate privileges locally.

  • CVE-2026-65773HigAug 11, 2026
    risk 0.51cvss 7.8epss 0.00

    Improper access control in Windows Kernel allows an authorized attacker to elevate privileges locally.

  • CVE-2026-65673HigAug 11, 2026
    risk 0.51cvss 7.8epss 0.00

    Improper neutralization of special elements used in an sql command ('sql injection') in Microsoft Entra Connect Sync allows an authorized attacker to elevate privileges locally.

  • CVE-2026-65672HigAug 11, 2026
    risk 0.51cvss 7.8epss 0.00

    Heap-based buffer overflow in Windows Remote Access API allows an authorized attacker to elevate privileges locally.

  • CVE-2026-65671HigAug 11, 2026
    risk 0.51cvss 7.8epss 0.00

    Heap-based buffer overflow in Windows Remote Access API allows an authorized attacker to elevate privileges locally.

  • CVE-2026-65664HigAug 11, 2026
    risk 0.51cvss 7.8epss 0.00

    Heap-based buffer overflow in Microsoft Office allows an unauthorized attacker to execute code locally.

  • CVE-2026-65661HigAug 11, 2026
    risk 0.51cvss 7.8epss 0.00

    Heap-based buffer overflow in Microsoft Office allows an unauthorized attacker to execute code locally.

  • CVE-2026-65657HigAug 11, 2026
    risk 0.51cvss 7.8epss 0.00

    Use after free in Microsoft Office allows an unauthorized attacker to execute code locally.

Page 61 of 314