Vulnerabilities > Microsoft

DATE CVE VULNERABILITY TITLE RISK
2022-08-09 CVE-2022-34713 Unspecified vulnerability in Microsoft products
Microsoft Windows Support Diagnostic Tool (MSDT) Remote Code Execution Vulnerability
local
low complexity
microsoft
7.8
2022-08-01 CVE-2022-2170 Unspecified vulnerability in Microsoft Advertising Universal Event Tracking 1.0.0
The Microsoft Advertising Universal Event Tracking (UET) WordPress plugin before 1.0.4 does not sanitise and escape its settings, allowing high privilege users such as admin to perform Cross-Site Scripting attacks even when the unfiltered_html capability is disallowed.
network
low complexity
microsoft
4.8
2022-06-15 CVE-2022-30139 Unspecified vulnerability in Microsoft products
Windows Lightweight Directory Access Protocol (LDAP) Remote Code Execution Vulnerability
network
high complexity
microsoft
7.5
2022-06-15 CVE-2022-30145 Unspecified vulnerability in Microsoft products
Windows Encrypting File System (EFS) Remote Code Execution Vulnerability
network
high complexity
microsoft
7.5
2022-06-15 CVE-2022-30150 Improper Authentication vulnerability in Microsoft products
Windows Defender Remote Credential Guard Elevation of Privilege Vulnerability
network
high complexity
microsoft CWE-287
7.5
2022-06-14 CVE-2022-32230 NULL Pointer Dereference vulnerability in Microsoft Windows 10, Windows 11 and Windows Server 2019
Microsoft Windows SMBv3 suffers from a null pointer dereference in versions of Windows prior to the April, 2022 patch set.
network
low complexity
microsoft CWE-476
7.5
2022-05-24 CVE-2022-29223 Classic Buffer Overflow vulnerability in Microsoft Azure Rtos Usbx
Azure RTOS USBX is a USB host, device, and on-the-go (OTG) embedded stack.
network
low complexity
microsoft CWE-120
critical
9.8
2022-05-24 CVE-2022-29246 Unspecified vulnerability in Microsoft Azure Rtos Usbx
Azure RTOS USBX is a USB host, device, and on-the-go (OTG) embedded stack.
network
low complexity
microsoft
critical
9.8
2022-05-13 CVE-2022-25865 Argument Injection or Modification vulnerability in Microsoft Workspace-Tools
The package workspace-tools before 0.18.4 are vulnerable to Command Injection via git argument injection.
network
low complexity
microsoft CWE-88
critical
9.8
2022-05-10 CVE-2022-24466 Unspecified vulnerability in Microsoft products
Windows Hyper-V Security Feature Bypass Vulnerability
low complexity
microsoft
4.1