Vulnerabilities > Microsoft > Medium

DATE CVE VULNERABILITY TITLE RISK
2023-03-14 CVE-2023-24919 Cross-site Scripting vulnerability in Microsoft Dynamics 365 9.0/9.1
Microsoft Dynamics 365 (on-premises) Cross-site Scripting Vulnerability
network
low complexity
microsoft CWE-79
5.4
2023-03-14 CVE-2023-24920 Cross-site Scripting vulnerability in Microsoft Dynamics 365 9.0/9.1
Microsoft Dynamics 365 (on-premises) Cross-site Scripting Vulnerability
network
low complexity
microsoft CWE-79
5.4
2023-03-14 CVE-2023-24921 Cross-site Scripting vulnerability in Microsoft Dynamics 365 9.0/9.1
Microsoft Dynamics 365 (on-premises) Cross-site Scripting Vulnerability
network
low complexity
microsoft CWE-79
5.4
2023-03-14 CVE-2023-24922 Unspecified vulnerability in Microsoft Dynamics 365 9.0/9.1
Microsoft Dynamics 365 (On-Premises) Information Disclosure Vulnerability
network
low complexity
microsoft
6.5
2023-03-14 CVE-2023-24923 Unspecified vulnerability in Microsoft Onedrive 1.0
Microsoft OneDrive for Android Information Disclosure Vulnerability
local
low complexity
microsoft
5.5
2023-02-28 CVE-2023-1018 Out-of-bounds Read vulnerability in multiple products
An out-of-bounds read vulnerability exists in TPM2.0's Module Library allowing a 2-byte read past the end of a TPM2.0 command in the CryptParameterDecryption routine.
local
low complexity
trustedcomputinggroup microsoft CWE-125
5.5
2023-02-14 CVE-2023-21567 Unspecified vulnerability in Microsoft Visual Studio 2019
Visual Studio Denial of Service Vulnerability
local
low complexity
microsoft
5.6
2023-02-14 CVE-2023-21570 Cross-site Scripting vulnerability in Microsoft Dynamics 365 9.0/9.1
Microsoft Dynamics 365 (on-premises) Cross-site Scripting Vulnerability
network
low complexity
microsoft CWE-79
5.4
2023-02-14 CVE-2023-21571 Cross-site Scripting vulnerability in Microsoft Dynamics 365 9.0/9.1
Microsoft Dynamics 365 (on-premises) Cross-site Scripting Vulnerability
network
low complexity
microsoft CWE-79
5.4
2023-02-14 CVE-2023-21572 Cross-site Scripting vulnerability in Microsoft Dynamics 365 9.0/9.1
Microsoft Dynamics 365 (on-premises) Cross-site Scripting Vulnerability
network
low complexity
microsoft CWE-79
6.5