IT
56.801 CVE tracked
777 Exploited now
183 Used by ransomware
Last sync

Microsoft vulnerabilities

15.479 CVE

Microsoft vulnerabilities
Identifier Severity, sort descending Product and flaw EPSS, sort descending In KEV since, sort descending
CVE-2020-1376 HIGH 7.8 microsoft windows_10 <p>An elevation of privilege vulnerability exists in the way that fdSSDP.dll handles objects in memory. An attacker who successfully exploited the vulnerability could execute code with elevated permissions.</p> <p>To exploit the vulnerability, a locally authen 0.9%
CVE-2020-1098 HIGH 7.8 microsoft windows_10 <p>An elevation of privilege vulnerability exists when the Shell infrastructure component improperly handles objects in memory. An attacker who successfully exploited this vulnerability could run processes in an elevated context.</p> <p>To exploit this vulnera 0.9%
CVE-2020-1053 HIGH 7.8 microsoft windows_10 <p>An elevation of privilege vulnerability exists when DirectX improperly handles objects in memory. An attacker who successfully exploited this vulnerability could run arbitrary code in kernel mode. An attacker could then install programs; view, change, or de 0.9%
CVE-2020-1052 HIGH 7.8 microsoft windows_10 <p>An elevation of privilege vulnerability exists in the way that the ssdpsrv.dll handles objects in memory. An attacker who successfully exploited the vulnerability could execute code with elevated permissions.</p> <p>To exploit the vulnerability, a locally a 0.9%
CVE-2020-0839 HIGH 7.8 microsoft windows_10 <p>An elevation of privilege vulnerability exists in the way that the dnsrslvr.dll handles objects in memory. An attacker who successfully exploited the vulnerability could execute code with elevated permissions.</p> <p>To exploit the vulnerability, a locally 0.9%
CVE-2020-0790 HIGH 7.8 microsoft windows_10 <p>A local elevation of privilege vulnerability exists in how splwow64.exe handles certain calls. An attacker who successfully exploited the vulnerability could elevate privileges on an affected system from low-integrity to medium-integrity.</p> <p>This vulner 0.9%
CVE-2020-0766 HIGH 7.8 microsoft windows_10 <p>An elevation of privilege vulnerability exists when the Microsoft Store Runtime improperly handles memory.</p> <p>To exploit this vulnerability, an attacker would first have to gain execution on the victim system. An attacker could then run a specially craf 0.9%
CVE-2020-1556 HIGH 7.8 microsoft windows_10 An elevation of privilege vulnerability exists in the way that the Windows WalletService handles objects in memory. An attacker who successfully exploited the vulnerability could execute code with elevated permissions. To exploit the vulnerability, a locally a 0.9%
CVE-2020-1524 HIGH 7.8 microsoft windows_10 An elevation of privilege vulnerability exists when the Windows Speech Shell Components improperly handle memory. To exploit this vulnerability, an attacker would first have to gain execution on the victim system. An attacker could then run a specially crafted 0.9%
CVE-2019-1284 HIGH 7.8 microsoft windows_7 An elevation of privilege vulnerability exists when DirectX improperly handles objects in memory, aka 'DirectX Elevation of Privilege Vulnerability'. 0.9%
CVE-2026-65815 HIGH 8.8 microsoft dynamics_365 Deserialization of untrusted data in Microsoft Dynamics 365 (on-premises) allows an authorized attacker to execute code over a network. 0.9%
CVE-2026-50682 HIGH 7.1 microsoft windows_10_21h2 Out-of-bounds read in Windows Active Directory allows an authorized attacker to deny service over a network. 0.9%
CVE-2025-21180 HIGH 7.8 microsoft windows_10_1507 Heap-based buffer overflow in Windows exFAT File System allows an unauthorized attacker to execute code locally. 0.9%
CVE-2025-21321 MED 5.5 microsoft windows_10_1507 Windows Kernel Memory Information Disclosure Vulnerability 0.9%
CVE-2025-21320 MED 5.5 microsoft windows_10_1507 Windows Kernel Memory Information Disclosure Vulnerability 0.9%
CVE-2025-21319 MED 5.5 microsoft windows_10_1507 Windows Kernel Memory Information Disclosure Vulnerability 0.9%
CVE-2025-21318 MED 5.5 microsoft windows_10_1507 Windows Kernel Memory Information Disclosure Vulnerability 0.9%
CVE-2025-21316 MED 5.5 microsoft windows_10_1507 Windows Kernel Memory Information Disclosure Vulnerability 0.9%
CVE-2023-32047 HIGH 7.8 microsoft paint_3d Paint 3D Remote Code Execution Vulnerability 0.9%
CVE-2024-43518 HIGH 8.8 microsoft windows_10_1507 Windows Telephony Server Remote Code Execution Vulnerability 0.9%
CVE-2024-38234 MED 6.5 microsoft windows_10_1507 Windows Networking Denial of Service Vulnerability 0.9%
CVE-2024-38171 HIGH 7.8 microsoft 365_apps Microsoft PowerPoint Remote Code Execution Vulnerability 0.9%
CVE-2024-38058 MED 6.8 microsoft windows_10_1507 BitLocker Security Feature Bypass Vulnerability 0.9%
CVE-2023-21793 HIGH 7.8 microsoft 3d_builder 3D Builder Remote Code Execution Vulnerability 0.9%
CVE-2023-21791 HIGH 7.8 microsoft 3d_builder 3D Builder Remote Code Execution Vulnerability 0.9%