56.571 CVE tracked
773 Exploited now
183 Used by ransomware
Last sync
Microsoft vulnerabilities
15.454 CVE
| Identifier | Severity, sort descending | Product and flaw | EPSS, sort descending | In KEV since, sort descending |
|---|---|---|---|---|
| CVE-2023-29331 | HIGH 7.5 | microsoft .net .NET, .NET Framework, and Visual Studio Denial of Service Vulnerability | 2.6% | — |
| CVE-2022-22010 | MED 4.4 | microsoft windows_10 Media Foundation Information Disclosure Vulnerability | 2.6% | — |
| CVE-2021-31209 | MED 6.5 | microsoft exchange_server Microsoft Exchange Server Spoofing Vulnerability | 2.6% | — |
| CVE-2019-0866 | MED 6.1 | microsoft azure_devops_server A Cross-site Scripting (XSS) vulnerability exists when Azure DevOps Server and Team Foundation Server do not properly sanitize user provided input, aka 'Azure DevOps Server and Team Foundation Server Cross-site Scripting Vulnerability'. This CVE ID is unique f | 2.6% | — |
| CVE-2005-2827 | HIGH 7.2 | microsoft windows_2000 The thread termination routine in the kernel for Windows NT 4.0 and 2000 (NTOSKRNL.EXE) allows local users to modify kernel memory and execution flow via steps in which a terminating thread causes Asynchronous Procedure Call (APC) entries to free the wrong dat | 2.6% | — |
| CVE-2021-34458 | CRIT 9.9 | microsoft windows_server_2016 Windows Kernel Remote Code Execution Vulnerability | 2.6% | — |
| CVE-2021-26881 | HIGH 7.5 | microsoft windows_10 Microsoft Windows Media Foundation Remote Code Execution Vulnerability | 2.6% | — |
| CVE-2024-30019 | MED 6.5 | microsoft windows_server_2008 DHCP Server Service Denial of Service Vulnerability | 2.6% | — |
| CVE-2024-30011 | MED 6.5 | microsoft windows_server_2012 Windows Hyper-V Denial of Service Vulnerability | 2.6% | — |
| CVE-2019-1330 | MED 6.5 | microsoft sharepoint_enterprise_server An elevation of privilege vulnerability exists in Microsoft SharePoint, aka 'Microsoft SharePoint Elevation of Privilege Vulnerability'. This CVE ID is unique from CVE-2019-1329. | 2.6% | — |
| CVE-2019-1260 | MED 6.5 | microsoft sharepoint_enterprise_server An elevation of privilege vulnerability exists in Microsoft SharePoint, aka 'Microsoft SharePoint Elevation of Privilege Vulnerability'. | 2.6% | — |
| CVE-2023-36707 | MED 6.5 | microsoft windows_server_2012 Windows Deployment Services Denial of Service Vulnerability | 2.6% | — |
| CVE-2020-1574 | MED 5.5 | microsoft windows_10 A remote code execution vulnerability exists in the way that Microsoft Windows Codecs Library handles objects in memory. An attacker who successfully exploited the vulnerability could execute arbitrary code. Exploitation of the vulnerability requires that a pr | 2.6% | — |
| CVE-2023-29350 | HIGH 7.5 | microsoft edge_chromium Microsoft Edge (Chromium-based) Elevation of Privilege Vulnerability | 2.6% | — |
| CVE-2020-1015 | HIGH 7.8 | microsoft windows_10 An elevation of privilege vulnerability exists in the way that the User-Mode Power Service (UMPS) handles objects in memory, aka 'Windows Elevation of Privilege Vulnerability'. This CVE ID is unique from CVE-2020-0934, CVE-2020-0983, CVE-2020-1009, CVE-2020-10 | 2.6% | — |
| CVE-2025-53779 | HIGH 7.2 | microsoft windows_server_2025 Relative path traversal in Windows Kerberos allows an authorized attacker to elevate privileges over a network. | 2.6% | — |
| CVE-2022-26783 | MED 6.5 | microsoft windows_server_2016 Windows Hyper-V Shared Virtual Hard Disks Information Disclosure Vulnerability | 2.6% | — |
| CVE-2022-30189 | MED 6.5 | microsoft windows_10 Windows Autopilot Device Management and Enrollment Client Spoofing Vulnerability | 2.6% | — |
| CVE-2024-49064 | MED 6.5 | microsoft sharepoint_server Microsoft SharePoint Information Disclosure Vulnerability | 2.6% | — |
| CVE-2024-43499 | HIGH 7.5 | microsoft .net .NET and Visual Studio Denial of Service Vulnerability | 2.6% | — |
| CVE-2022-33639 | HIGH 8.3 | microsoft edge_chromium Microsoft Edge (Chromium-based) Elevation of Privilege Vulnerability | 2.6% | — |
| CVE-2015-0094 | LOW 2.1 | microsoft windows_7 The kernel-mode drivers in Microsoft Windows Server 2003 SP2, Windows Vista SP2, Windows Server 2008 SP2 and R2 SP1, Windows 7 SP1, Windows 8, Windows 8.1, Windows Server 2012 Gold and R2, and Windows RT Gold and 8.1 do not properly restrict the availability o | 2.6% | — |
| CVE-2020-1329 | MED 6.5 | microsoft bing A spoofing vulnerability exists when Microsoft Bing Search for Android improperly handles specific HTML content, aka 'Microsoft Bing Search Spoofing Vulnerability'. | 2.6% | — |
| CVE-2022-24501 | HIGH 7.8 | microsoft vp9_video_extensions VP9 Video Extensions Remote Code Execution Vulnerability | 2.6% | — |
| CVE-2021-1718 | HIGH 8.0 | microsoft sharepoint_foundation Microsoft SharePoint Server Tampering Vulnerability | 2.6% | — |