IT
56.571 CVE tracked
773 Exploited now
183 Used by ransomware
Last sync

Microsoft vulnerabilities

15.454 CVE

Microsoft vulnerabilities
Identifier Severity, sort descending Product and flaw EPSS, sort descending In KEV since, sort descending
CVE-2023-29331 HIGH 7.5 microsoft .net .NET, .NET Framework, and Visual Studio Denial of Service Vulnerability 2.6%
CVE-2022-22010 MED 4.4 microsoft windows_10 Media Foundation Information Disclosure Vulnerability 2.6%
CVE-2021-31209 MED 6.5 microsoft exchange_server Microsoft Exchange Server Spoofing Vulnerability 2.6%
CVE-2019-0866 MED 6.1 microsoft azure_devops_server A Cross-site Scripting (XSS) vulnerability exists when Azure DevOps Server and Team Foundation Server do not properly sanitize user provided input, aka 'Azure DevOps Server and Team Foundation Server Cross-site Scripting Vulnerability'. This CVE ID is unique f 2.6%
CVE-2005-2827 HIGH 7.2 microsoft windows_2000 The thread termination routine in the kernel for Windows NT 4.0 and 2000 (NTOSKRNL.EXE) allows local users to modify kernel memory and execution flow via steps in which a terminating thread causes Asynchronous Procedure Call (APC) entries to free the wrong dat 2.6%
CVE-2021-34458 CRIT 9.9 microsoft windows_server_2016 Windows Kernel Remote Code Execution Vulnerability 2.6%
CVE-2021-26881 HIGH 7.5 microsoft windows_10 Microsoft Windows Media Foundation Remote Code Execution Vulnerability 2.6%
CVE-2024-30019 MED 6.5 microsoft windows_server_2008 DHCP Server Service Denial of Service Vulnerability 2.6%
CVE-2024-30011 MED 6.5 microsoft windows_server_2012 Windows Hyper-V Denial of Service Vulnerability 2.6%
CVE-2019-1330 MED 6.5 microsoft sharepoint_enterprise_server An elevation of privilege vulnerability exists in Microsoft SharePoint, aka 'Microsoft SharePoint Elevation of Privilege Vulnerability'. This CVE ID is unique from CVE-2019-1329. 2.6%
CVE-2019-1260 MED 6.5 microsoft sharepoint_enterprise_server An elevation of privilege vulnerability exists in Microsoft SharePoint, aka 'Microsoft SharePoint Elevation of Privilege Vulnerability'. 2.6%
CVE-2023-36707 MED 6.5 microsoft windows_server_2012 Windows Deployment Services Denial of Service Vulnerability 2.6%
CVE-2020-1574 MED 5.5 microsoft windows_10 A remote code execution vulnerability exists in the way that Microsoft Windows Codecs Library handles objects in memory. An attacker who successfully exploited the vulnerability could execute arbitrary code. Exploitation of the vulnerability requires that a pr 2.6%
CVE-2023-29350 HIGH 7.5 microsoft edge_chromium Microsoft Edge (Chromium-based) Elevation of Privilege Vulnerability 2.6%
CVE-2020-1015 HIGH 7.8 microsoft windows_10 An elevation of privilege vulnerability exists in the way that the User-Mode Power Service (UMPS) handles objects in memory, aka 'Windows Elevation of Privilege Vulnerability'. This CVE ID is unique from CVE-2020-0934, CVE-2020-0983, CVE-2020-1009, CVE-2020-10 2.6%
CVE-2025-53779 HIGH 7.2 microsoft windows_server_2025 Relative path traversal in Windows Kerberos allows an authorized attacker to elevate privileges over a network. 2.6%
CVE-2022-26783 MED 6.5 microsoft windows_server_2016 Windows Hyper-V Shared Virtual Hard Disks Information Disclosure Vulnerability 2.6%
CVE-2022-30189 MED 6.5 microsoft windows_10 Windows Autopilot Device Management and Enrollment Client Spoofing Vulnerability 2.6%
CVE-2024-49064 MED 6.5 microsoft sharepoint_server Microsoft SharePoint Information Disclosure Vulnerability 2.6%
CVE-2024-43499 HIGH 7.5 microsoft .net .NET and Visual Studio Denial of Service Vulnerability 2.6%
CVE-2022-33639 HIGH 8.3 microsoft edge_chromium Microsoft Edge (Chromium-based) Elevation of Privilege Vulnerability 2.6%
CVE-2015-0094 LOW 2.1 microsoft windows_7 The kernel-mode drivers in Microsoft Windows Server 2003 SP2, Windows Vista SP2, Windows Server 2008 SP2 and R2 SP1, Windows 7 SP1, Windows 8, Windows 8.1, Windows Server 2012 Gold and R2, and Windows RT Gold and 8.1 do not properly restrict the availability o 2.6%
CVE-2020-1329 MED 6.5 microsoft bing A spoofing vulnerability exists when Microsoft Bing Search for Android improperly handles specific HTML content, aka 'Microsoft Bing Search Spoofing Vulnerability'. 2.6%
CVE-2022-24501 HIGH 7.8 microsoft vp9_video_extensions VP9 Video Extensions Remote Code Execution Vulnerability 2.6%
CVE-2021-1718 HIGH 8.0 microsoft sharepoint_foundation Microsoft SharePoint Server Tampering Vulnerability 2.6%