56.663 CVE tracked
777 Exploited now
183 Used by ransomware
Last sync
Microsoft vulnerabilities
15.471 CVE
| Identifier | Severity, sort descending | Product and flaw | EPSS, sort descending | In KEV since, sort descending |
|---|---|---|---|---|
| CVE-2021-40483 | HIGH 7.6 | microsoft sharepoint_server Microsoft SharePoint Server Spoofing Vulnerability | 1.4% | — |
| CVE-2020-17098 | MED 5.5 | microsoft windows_10 Windows GDI+ Information Disclosure Vulnerability | 1.4% | — |
| CVE-2020-17094 | MED 5.5 | microsoft windows_10 Windows Error Reporting Information Disclosure Vulnerability | 1.4% | — |
| CVE-2023-28277 | MED 4.9 | microsoft windows_server_2022 Windows DNS Server Information Disclosure Vulnerability | 1.4% | — |
| CVE-2023-21732 | HIGH 8.8 | microsoft windows_10_1607 Microsoft ODBC Driver Remote Code Execution Vulnerability | 1.4% | — |
| CVE-2023-21681 | HIGH 8.8 | microsoft windows_10_1607 Microsoft WDAC OLE DB provider for SQL Server Remote Code Execution Vulnerability | 1.4% | — |
| CVE-2025-29966 | HIGH 8.8 | microsoft remote_desktop Heap-based buffer overflow in Windows Remote Desktop allows an unauthorized attacker to execute code over a network. | 1.4% | — |
| CVE-2023-21682 | MED 5.3 | microsoft windows_10_1607 Windows Point-to-Point Protocol (PPP) Information Disclosure Vulnerability | 1.4% | — |
| CVE-2024-30061 | HIGH 7.3 | microsoft dynamics_365 Microsoft Dynamics 365 (On-Premises) Information Disclosure Vulnerability | 1.4% | — |
| CVE-2024-21447 | HIGH 7.8 | microsoft windows_10_21h2 Windows Authentication Elevation of Privilege Vulnerability | 1.4% | — |
| CVE-2024-21347 | HIGH 7.5 | microsoft windows_10_1507 Microsoft ODBC Driver Remote Code Execution Vulnerability | 1.4% | — |
| CVE-2023-35352 | HIGH 7.5 | microsoft windows_server_2012 Windows Remote Desktop Security Feature Bypass Vulnerability | 1.4% | — |
| CVE-2023-32019 | MED 4.7 | microsoft windows_10_1607 Windows Kernel Information Disclosure Vulnerability | 1.4% | — |
| CVE-2021-26444 | LOW 3.3 | microsoft azure_real_time_operating_system Azure RTOS Information Disclosure Vulnerability | 1.4% | — |
| CVE-2019-1171 | MED 5.6 | microsoft windows_10 An information disclosure vulnerability exists in SymCrypt during the OAEP decryption stage. An attacker who successfully exploited this vulnerability could obtain information to further compromise the user’s system. To exploit this vulnerability, an attacker | 1.4% | — |
| CVE-2026-26106 | HIGH 8.8 | microsoft sharepoint_server Improper input validation in Microsoft Office SharePoint allows an authorized attacker to execute code over a network. | 1.4% | — |
| CVE-2021-41335 | HIGH 7.8 | microsoft windows_10 Windows Kernel Elevation of Privilege Vulnerability | 1.4% | — |
| CVE-2020-0943 | MED 4.6 | microsoft your_phone_companion An authentication bypass vulnerability exists in Microsoft YourPhoneCompanion application for Android, in the way the application processes notifications generated by work profiles.This could allow an unauthenticated attacker to view notifications, aka 'Micros | 1.4% | — |
| CVE-2011-1885 | HIGH 7.2 | microsoft windows_2003_server win32k.sys in the kernel-mode drivers in Microsoft Windows XP SP2 and SP3, Windows Server 2003 SP2, Windows Vista SP1 and SP2, Windows Server 2008 Gold, SP2, R2, and R2 SP1, and Windows 7 Gold and SP1 allows local users to gain privileges via a crafted applica | 1.4% | — |
| CVE-2011-1880 | HIGH 7.2 | microsoft windows_2003_server win32k.sys in the kernel-mode drivers in Microsoft Windows XP SP2 and SP3, Windows Server 2003 SP2, Windows Vista SP1 and SP2, Windows Server 2008 Gold, SP2, R2, and R2 SP1, and Windows 7 Gold and SP1 allows local users to gain privileges via a crafted applica | 1.4% | — |
| CVE-2025-24064 | HIGH 8.1 | microsoft windows_server_2008 Use after free in DNS Server allows an unauthorized attacker to execute code over a network. | 1.4% | — |
| CVE-2023-36004 | HIGH 7.5 | microsoft windows_10_1507 Windows DPAPI (Data Protection Application Programming Interface) Spoofing Vulnerability | 1.4% | — |
| CVE-2021-24104 | MED 4.6 | microsoft sharepoint_enterprise_server Microsoft SharePoint Server Spoofing Vulnerability | 1.4% | — |
| CVE-2022-26929 | HIGH 7.8 | microsoft .net_framework .NET Framework Remote Code Execution Vulnerability | 1.4% | — |
| CVE-2021-31188 | HIGH 7.8 | microsoft windows_10 Windows Graphics Component Elevation of Privilege Vulnerability | 1.4% | — |