Vulnerabilities > Microsoft

DATE CVE VULNERABILITY TITLE RISK
2024-01-09 CVE-2024-21320 Unspecified vulnerability in Microsoft products
Windows Themes Spoofing Vulnerability
network
low complexity
microsoft
6.5
2024-01-09 CVE-2024-21646 Integer Overflow or Wraparound vulnerability in Microsoft Azure Uamqp 20231201
Azure uAMQP is a general purpose C library for AMQP 1.0.
network
low complexity
microsoft CWE-190
critical
9.8
2023-12-18 CVE-2023-48795 Improper Validation of Integrity Check Value vulnerability in multiple products
The SSH transport protocol with certain OpenSSH extensions, found in OpenSSH before 9.6 and other products, allows remote attackers to bypass integrity checks such that some packets are omitted (from the extension negotiation message), and a client and server may consequently end up with a connection for which some security features have been downgraded or disabled, aka a Terrapin attack.
5.9
2023-12-14 CVE-2023-6702 Type Confusion vulnerability in multiple products
Type confusion in V8 in Google Chrome prior to 120.0.6099.109 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page.
network
low complexity
google fedoraproject microsoft CWE-843
8.8
2023-12-12 CVE-2023-35634 Unspecified vulnerability in Microsoft Windows 11 21H2
Windows Bluetooth Driver Remote Code Execution Vulnerability
low complexity
microsoft
8.8
2023-12-12 CVE-2023-36003 Unspecified vulnerability in Microsoft products
XAML Diagnostics Elevation of Privilege Vulnerability
local
low complexity
microsoft
7.3
2023-12-12 CVE-2023-36005 Unspecified vulnerability in Microsoft products
Windows Telephony Server Elevation of Privilege Vulnerability
network
high complexity
microsoft
8.1
2023-12-12 CVE-2023-36019 Unspecified vulnerability in Microsoft Azure Logic Apps and Power Platform
Microsoft Power Platform Connector Spoofing Vulnerability
network
low complexity
microsoft
7.4
2023-12-12 CVE-2023-36020 Cross-site Scripting vulnerability in Microsoft Dynamics 365
Microsoft Dynamics 365 (on-premises) Cross-site Scripting Vulnerability
network
low complexity
microsoft CWE-79
5.4
2023-12-05 CVE-2023-49282 Unspecified vulnerability in Microsoft Graph 1.16.0/2.0.0
msgraph-sdk-php is the Microsoft Graph Library for PHP.
network
low complexity
microsoft
5.3