Vulnerabilities > Microsoft

DATE CVE VULNERABILITY TITLE RISK
2023-12-05 CVE-2023-48698 Unspecified vulnerability in Microsoft Azure Rtos Usbx
Azure RTOS USBX is a USB host, device, and on-the-go (OTG) embedded stack, that is fully integrated with Azure RTOS ThreadX.
network
low complexity
microsoft
critical
9.8
2023-11-29 CVE-2023-6345 Integer Overflow or Wraparound vulnerability in multiple products
Integer overflow in Skia in Google Chrome prior to 119.0.6045.199 allowed a remote attacker who had compromised the renderer process to potentially perform a sandbox escape via a malicious file.
network
low complexity
google debian fedoraproject microsoft CWE-190
critical
9.6
2023-11-28 CVE-2023-24023 Bluetooth BR/EDR devices with Secure Simple Pairing and Secure Connections pairing in Bluetooth Core Specification 4.2 through 5.4 allow certain man-in-the-middle attacks that force a short key length, and might lead to discovery of the encryption key and live injection, aka BLUFFS.
high complexity
bluetooth microsoft
6.8
2023-11-20 CVE-2023-36013 Exposure of Resource to Wrong Sphere vulnerability in Microsoft Powershell
PowerShell Information Disclosure Vulnerability
network
low complexity
microsoft CWE-668
6.5
2023-11-16 CVE-2023-36008 Unspecified vulnerability in Microsoft Edge Chromium
Microsoft Edge (Chromium-based) Remote Code Execution Vulnerability
local
low complexity
microsoft
6.6
2023-11-16 CVE-2023-36026 Unspecified vulnerability in Microsoft Edge Chromium
Microsoft Edge (Chromium-based) Spoofing Vulnerability
network
low complexity
microsoft
4.3
2023-11-14 CVE-2023-36038 Unspecified vulnerability in Microsoft Asp.Net Core and Visual Studio 2022
ASP.NET Core Denial of Service Vulnerability
network
low complexity
microsoft
7.5
2023-11-14 CVE-2023-36558 Unspecified vulnerability in Microsoft .Net and Visual Studio 2022
ASP.NET Core Security Feature Bypass Vulnerability
local
low complexity
microsoft
5.5
2023-11-14 CVE-2023-36007 Unspecified vulnerability in Microsoft Send Customer Voice Survey From Dynamics 365 9.0.0.0/9.0.0.7
Microsoft Send Customer Voice survey from Dynamics 365 Spoofing Vulnerability
network
low complexity
microsoft
4.1
2023-11-14 CVE-2023-36049 Unspecified vulnerability in Microsoft .Net and .Net Framework
.NET, .NET Framework, and Visual Studio Elevation of Privilege Vulnerability
network
low complexity
microsoft
critical
9.8