Vulnerabilities > Microsoft > Low

DATE CVE VULNERABILITY TITLE RISK
2024-04-09 CVE-2024-26251 Unspecified vulnerability in Microsoft Sharepoint Server 2016/2019
Microsoft SharePoint Server Spoofing Vulnerability
network
high complexity
microsoft
3.1
2024-03-14 CVE-2024-26246 Unspecified vulnerability in Microsoft Edge 112.0.1722.34/118.0.2088.88/122.0.2365.63
Microsoft Edge (Chromium-based) Security Feature Bypass Vulnerability
low complexity
microsoft
3.9
2023-11-14 CVE-2023-36016 Cross-site Scripting vulnerability in Microsoft Dynamics 365
Microsoft Dynamics 365 (on-premises) Cross-site Scripting Vulnerability
network
low complexity
microsoft CWE-79
3.4
2022-10-11 CVE-2022-41043 Unspecified vulnerability in Microsoft Office and Office Long Term Servicing Channel
Microsoft Office Information Disclosure Vulnerability
local
low complexity
microsoft
3.3
2021-05-11 CVE-2020-24588 Use of a Broken or Risky Cryptographic Algorithm vulnerability in multiple products
The 802.11 standard that underpins Wi-Fi Protected Access (WPA, WPA2, and WPA3) and Wired Equivalent Privacy (WEP) doesn't require that the A-MSDU flag in the plaintext QoS header field is authenticated.
3.5
2021-01-11 CVE-2020-24003 Unspecified vulnerability in Microsoft Skype 8.59.0.77
Microsoft Skype through 8.59.0.77 on macOS has the disable-library-validation entitlement, which allows a local process (with the user's privileges) to obtain unprompted microphone and camera access by loading a crafted library and thereby inheriting Skype Client's microphone and camera access.
local
low complexity
microsoft
3.3
2020-03-12 CVE-2020-0884 Cleartext Transmission of Sensitive Information vulnerability in Microsoft Visual Studio 2017 and Visual Studio 2019
A spoofing vulnerability exists in Microsoft Visual Studio as it includes a reply URL that is not secured by SSL, aka 'Microsoft Visual Studio Spoofing Vulnerability'.
network
high complexity
microsoft CWE-319
3.7
2019-12-10 CVE-2019-1488 Unspecified vulnerability in Microsoft products
A security feature bypass vulnerability exists when Microsoft Defender improperly handles specific buffers, aka 'Microsoft Defender Security Feature Bypass Vulnerability'.
local
low complexity
microsoft
3.3
2019-11-12 CVE-2019-1418 Information Exposure vulnerability in Microsoft products
An information vulnerability exists when Windows Modules Installer Service improperly discloses file information, aka 'Windows Modules Installer Service Information Disclosure Vulnerability'.
local
low complexity
microsoft CWE-200
3.3
2018-10-10 CVE-2018-8481 Unspecified vulnerability in Microsoft products
An information disclosure vulnerability exists when Windows Media Player improperly discloses file information, aka "Windows Media Player Information Disclosure Vulnerability." This affects Windows 7, Windows Server 2012 R2, Windows RT 8.1, Windows Server 2008, Windows Server 2019, Windows Server 2012, Windows 8.1, Windows Server 2016, Windows Server 2008 R2, Windows 10, Windows 10 Servers.
network
high complexity
microsoft
3.1