Vulnerabilities > Microsoft
DATE | CVE | VULNERABILITY TITLE | RISK |
---|---|---|---|
2025-01-09 | CVE-2025-21380 | Unspecified vulnerability in Microsoft Azure Marketplace Improper access control in Azure SaaS Resources allows an authorized attacker to disclose information over a network. | 6.5 |
2025-01-09 | CVE-2025-21385 | Server-Side Request Forgery (SSRF) vulnerability in Microsoft Purview A Server-Side Request Forgery (SSRF) vulnerability in Microsoft Purview allows an authorized attacker to disclose information over a network. | 6.5 |
2024-12-12 | CVE-2024-49071 | Unspecified vulnerability in Microsoft Defender for Endpoint Improper authorization of an index that contains sensitive information from a Global Files search in Windows Defender allows an authorized attacker to disclose information over a network. | 6.5 |
2024-12-12 | CVE-2024-49147 | Deserialization of Untrusted Data vulnerability in Microsoft Update Catalog Deserialization of untrusted data in Microsoft Update Catalog allows an unauthorized attacker to elevate privileges on the website’s webserver. | 9.8 |
2024-12-12 | CVE-2024-49057 | Unspecified vulnerability in Microsoft Defender for Endpoint Microsoft Defender for Endpoint on Android Spoofing Vulnerability | 8.1 |
2024-12-12 | CVE-2024-49059 | Race Condition vulnerability in Microsoft products Microsoft Office Elevation of Privilege Vulnerability | 7.0 |
2024-12-12 | CVE-2024-49062 | Unspecified vulnerability in Microsoft Sharepoint Server 2016/2019 Microsoft SharePoint Information Disclosure Vulnerability | 6.5 |
2024-12-12 | CVE-2024-49063 | Deserialization of Untrusted Data vulnerability in Microsoft Muzic Microsoft/Muzic Remote Code Execution Vulnerability | 8.4 |
2024-12-12 | CVE-2024-49064 | Unspecified vulnerability in Microsoft Sharepoint Server 2016/2019 Microsoft SharePoint Information Disclosure Vulnerability | 6.5 |
2024-12-12 | CVE-2024-49065 | Unspecified vulnerability in Microsoft products Microsoft Office Remote Code Execution Vulnerability | 5.5 |