Vulnerabilities > Microsoft > Medium

DATE CVE VULNERABILITY TITLE RISK
2023-03-14 CVE-2023-23383 Unspecified vulnerability in Microsoft Azure Service Fabric 9.1
Service Fabric Explorer Spoofing Vulnerability
network
high complexity
microsoft
4.7
2023-03-14 CVE-2023-23396 Resource Exhaustion vulnerability in Microsoft Office Online Server and Office web Apps Server
Microsoft Excel Denial of Service Vulnerability
network
low complexity
microsoft CWE-400
6.5
2023-03-14 CVE-2023-24857 Unspecified vulnerability in Microsoft products
Microsoft PostScript and PCL6 Class Printer Driver Information Disclosure Vulnerability
network
low complexity
microsoft
6.5
2023-03-14 CVE-2023-24922 Unspecified vulnerability in Microsoft Dynamics 365 9.1
Microsoft Dynamics 365 (On-Premises) Information Disclosure Vulnerability
network
low complexity
microsoft
6.5
2023-02-28 CVE-2023-1018 Out-of-bounds Read vulnerability in multiple products
An out-of-bounds read vulnerability exists in TPM2.0's Module Library allowing a 2-byte read past the end of a TPM2.0 command in the CryptParameterDecryption routine.
local
low complexity
trustedcomputinggroup microsoft CWE-125
5.5
2023-02-14 CVE-2023-21697 Unspecified vulnerability in Microsoft products
Windows Internet Storage Name Service (iSNS) Server Information Disclosure Vulnerability
local
low complexity
microsoft
5.5
2023-02-14 CVE-2023-23382 Unspecified vulnerability in Microsoft Azure Machine Learning 3.0.0
Azure Machine Learning Compute Instance Information Disclosure Vulnerability
network
low complexity
microsoft
6.5
2022-12-27 CVE-2021-4287 Link Following vulnerability in Microsoft Binwalk
A vulnerability, which was classified as problematic, was found in ReFirm Labs binwalk up to 2.3.2.
network
low complexity
microsoft CWE-59
6.5
2022-12-21 CVE-2022-23551 Unspecified vulnerability in Microsoft Azure AD POD Identity
aad-pod-identity assigns Azure Active Directory identities to Kubernetes applications and has now been deprecated as of 24 October 2022.
local
low complexity
microsoft
5.3
2022-12-13 CVE-2022-41115 Unspecified vulnerability in Microsoft Edge Chromium
Microsoft Edge (Chromium-based) Update Elevation of Privilege Vulnerability
network
high complexity
microsoft
6.6