Vulnerabilities > Microsoft > High

DATE CVE VULNERABILITY TITLE RISK
2024-05-14 CVE-2024-30010 Unspecified vulnerability in Microsoft products
Windows Hyper-V Remote Code Execution Vulnerability
network
low complexity
microsoft
8.8
2024-02-14 CVE-2023-50387 Allocation of Resources Without Limits or Throttling vulnerability in multiple products
Certain DNSSEC aspects of the DNS protocol (in RFC 4033, 4034, 4035, 6840, and related RFCs) allow remote attackers to cause a denial of service (CPU consumption) via one or more DNSSEC responses, aka the "KeyTrap" issue.
7.5
2024-02-13 CVE-2024-21315 Unspecified vulnerability in Microsoft Defender for Endpoint
Microsoft Defender for Endpoint Protection Elevation of Privilege Vulnerability
local
low complexity
microsoft
7.8
2024-02-13 CVE-2024-21343 Unspecified vulnerability in Microsoft products
Windows Network Address Translation (NAT) Denial of Service Vulnerability
network
low complexity
microsoft
7.5
2024-02-13 CVE-2024-21363 Unspecified vulnerability in Microsoft products
Microsoft Message Queuing (MSMQ) Remote Code Execution Vulnerability
local
low complexity
microsoft
7.8
2024-02-12 CVE-2024-25110 Use After Free vulnerability in Microsoft Azure Uamqp
The UAMQP is a general purpose C library for AMQP 1.0.
network
high complexity
microsoft CWE-416
8.1
2024-01-10 CVE-2024-21643 Unspecified vulnerability in Microsoft Identitymodel Extensions
IdentityModel Extensions for .NET provide assemblies for web developers that wish to use federated identity providers for establishing the caller's identity.
network
low complexity
microsoft
8.8
2023-12-14 CVE-2023-6702 Type Confusion vulnerability in multiple products
Type confusion in V8 in Google Chrome prior to 120.0.6099.109 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page.
network
low complexity
google fedoraproject microsoft CWE-843
8.8
2023-12-12 CVE-2023-35634 Unspecified vulnerability in Microsoft Windows 11 21H2
Windows Bluetooth Driver Remote Code Execution Vulnerability
low complexity
microsoft
8.8
2023-12-12 CVE-2023-36003 Unspecified vulnerability in Microsoft products
XAML Diagnostics Elevation of Privilege Vulnerability
local
low complexity
microsoft
7.3