Vulnerabilities > Microsoft > Low

DATE CVE VULNERABILITY TITLE RISK
2025-02-11 CVE-2025-21337 Unspecified vulnerability in Microsoft products
Windows NTFS Elevation of Privilege Vulnerability
local
low complexity
microsoft
3.3
2024-04-09 CVE-2024-26251 Unspecified vulnerability in Microsoft Sharepoint Server 2016/2019
Microsoft SharePoint Server Spoofing Vulnerability
network
high complexity
microsoft
3.1
2024-04-09 CVE-2024-26217 Unspecified vulnerability in Microsoft products
Windows Remote Access Connection Manager Information Disclosure Vulnerability
local
low complexity
microsoft
3.3
2024-03-14 CVE-2024-26246 Unspecified vulnerability in Microsoft Edge 112.0.1722.34/118.0.2088.88/122.0.2365.63
Microsoft Edge (Chromium-based) Security Feature Bypass Vulnerability
low complexity
microsoft
3.9
2023-11-14 CVE-2023-36016 Cross-site Scripting vulnerability in Microsoft Dynamics 365
Microsoft Dynamics 365 (on-premises) Cross-site Scripting Vulnerability
network
low complexity
microsoft CWE-79
3.4
2022-10-11 CVE-2022-41043 Unspecified vulnerability in Microsoft Office and Office Long Term Servicing Channel
Microsoft Office Information Disclosure Vulnerability
local
low complexity
microsoft
3.3
2021-05-11 CVE-2020-24588 Use of a Broken or Risky Cryptographic Algorithm vulnerability in multiple products
The 802.11 standard that underpins Wi-Fi Protected Access (WPA, WPA2, and WPA3) and Wired Equivalent Privacy (WEP) doesn't require that the A-MSDU flag in the plaintext QoS header field is authenticated.
3.5
2021-01-11 CVE-2020-24003 Unspecified vulnerability in Microsoft Skype 8.59.0.77
Microsoft Skype through 8.59.0.77 on macOS has the disable-library-validation entitlement, which allows a local process (with the user's privileges) to obtain unprompted microphone and camera access by loading a crafted library and thereby inheriting Skype Client's microphone and camera access.
local
low complexity
microsoft
3.3
2020-03-12 CVE-2020-0884 Cleartext Transmission of Sensitive Information vulnerability in Microsoft Visual Studio 2017 and Visual Studio 2019
A spoofing vulnerability exists in Microsoft Visual Studio as it includes a reply URL that is not secured by SSL, aka 'Microsoft Visual Studio Spoofing Vulnerability'.
network
high complexity
microsoft CWE-319
3.7
2019-12-10 CVE-2019-1488 Unspecified vulnerability in Microsoft products
A security feature bypass vulnerability exists when Microsoft Defender improperly handles specific buffers, aka 'Microsoft Defender Security Feature Bypass Vulnerability'.
local
low complexity
microsoft
3.3