← Back

Microsoft

microsoft

15,064 CVEs • 1,059 products

Products (1,059)

Click to collapse
Toggle
Windows 10
windows_10
Windows 7
windows_7
Windows 8.1
windows_8.1
Office
office
Edge
edge
Windows Xp
windows_xp
365 Apps
365_apps
Windows 11
windows_11
Windows 2000
windows_2000
Excel
excel
Word
word
Windows Nt
windows_nt
Chakracore
chakracore
Windows 8
windows_8
Windows Rt
windows_rt
Ie
ie
Office 2024
office_2024
Office 2021
office_2021
Office 2019
office_2019
Excel Viewer
excel_viewer
Outlook
outlook
Sql Server
sql_server
Dynamics 365
dynamics_365
.net
Windows 98
windows_98
Word Viewer
word_viewer
Powerpoint
powerpoint
Windows
windows
Windows 98se
windows_98se
Works
works
Windows Me
windows_me
Visual Studio
visual_studio
Visio
visio
365 Copilot
365_copilot
Windows 95
windows_95
Publisher
publisher
Lync
lync
Office 2016
office_2016
Asp.net Core
asp.net_core

CVEs (15,064)

CVE
VENDORS
PRODUCTS
UPDATED
PUBLISHED
CVSS
1Microsoft
2Sharepoint Foundation
Sharepoint Server
Jun 17, 2026
Dec 10, 2020
N/A· v4
8.0 HIGH· v3
6.0 MEDIUM· v2
Microsoft SharePoint Elevation of Privilege Vulnerability
1Microsoft
1C Sdk For Azure Iot
Jun 17, 2026
Dec 10, 2020
N/A· v4
9.1 CRITICAL· v3
9.4 HIGH· v2
Azure SDK for C Security Feature Bypass Vulnerability
1Microsoft
3Windows Server 2012
Windows Server 2016Windows Server 2019
Jun 17, 2026
Dec 10, 2020
N/A· v4
6.5 MEDIUM· v3
4.0 MEDIUM· v2
Kerberos Security Feature Bypass Vulnerability
1Microsoft
1Azure Sdk For Java
Jun 17, 2026
Dec 10, 2020
N/A· v4
9.1 CRITICAL· v3
6.4 MEDIUM· v2
Azure SDK for Java Security Feature Bypass Vulnerability
1Microsoft
5Windows 10
Windows 7Windows Server 2008+2 more
Jun 17, 2026
Dec 10, 2020
N/A· v4
7.8 HIGH· v3
7.2 HIGH· v2
Windows Backup Engine Elevation of Privilege Vulnerability
1Microsoft
5Windows 10
Windows 7Windows Server 2008+2 more
Jun 17, 2026
Dec 10, 2020
N/A· v4
7.8 HIGH· v3
7.2 HIGH· v2
Windows Backup Engine Elevation of Privilege Vulnerability
1Microsoft
5Windows 10
Windows 7Windows Server 2008+2 more
Jun 17, 2026
Dec 10, 2020
N/A· v4
7.8 HIGH· v3
7.2 HIGH· v2
Windows Backup Engine Elevation of Privilege Vulnerability
1Microsoft
5Windows 10
Windows 7Windows Server 2008+2 more
Jun 17, 2026
Dec 10, 2020
N/A· v4
7.8 HIGH· v3
7.2 HIGH· v2
Windows Backup Engine Elevation of Privilege Vulnerability
1Microsoft
5Windows 10
Windows 7Windows Server 2008+2 more
Jun 17, 2026
Dec 10, 2020
N/A· v4
7.8 HIGH· v3
7.2 HIGH· v2
Windows Backup Engine Elevation of Privilege Vulnerability
1Microsoft
5Windows 10
Windows 7Windows Server 2008+2 more
Jun 17, 2026
Dec 10, 2020
N/A· v4
7.8 HIGH· v3
7.2 HIGH· v2
Windows Backup Engine Elevation of Privilege Vulnerability
1Microsoft
5Windows 10
Windows 7Windows Server 2008+2 more
Jun 17, 2026
Dec 10, 2020
N/A· v4
7.8 HIGH· v3
7.2 HIGH· v2
Windows Backup Engine Elevation of Privilege Vulnerability
1Microsoft
1Teams
Jun 17, 2026
Dec 9, 2020
N/A· v4
5.4 MEDIUM· v3
3.5 LOW· v2
The Microsoft Teams online service contains a stored cross-site scripting vulnerability in the displayName parameter that can be exploited on Teams clients to obtain sensitive information such as authentication tokens an...Show more
The Microsoft Teams online service contains a stored cross-site scripting vulnerability in the displayName parameter that can be exploited on Teams clients to obtain sensitive information such as authentication tokens and to possibly execute arbitrary commands. This vulnerability was fixed for all Teams users in the online service on or around October 2020.Show less
1Microsoft
1Git Credential Manager Core
Jun 17, 2026
Dec 8, 2020
N/A· v4
7.3 HIGH· v3
3.6 LOW· v2
Git Credential Manager Core (GCM Core) is a secure Git credential helper built on .NET Core that runs on Windows and macOS. In Git Credential Manager Core before version 2.0.289, when recursively cloning a Git repository...Show more
Git Credential Manager Core (GCM Core) is a secure Git credential helper built on .NET Core that runs on Windows and macOS. In Git Credential Manager Core before version 2.0.289, when recursively cloning a Git repository on Windows with submodules, Git will first clone the top-level repository and then recursively clone all submodules by starting new Git processes from the top-level working directory. If a malicious git.exe executable is present in the top-level repository then this binary will be started by Git Credential Manager Core when attempting to read configuration, and not git.exe as found on the %PATH%. This only affects GCM Core on Windows, not macOS or Linux-based distributions. GCM Core version 2.0.289 contains the fix for this vulnerability, and is available from the project's GitHub releases page. GCM Core 2.0.289 is also bundled in the latest Git for Windows release; version 2.29.2(3). As a workaround, users should avoid recursively cloning untrusted repositories with the --recurse-submodules option.Show less
1Microsoft
8Windows 10
Windows 7Windows 8.1+5 more
Jun 17, 2026
Nov 11, 2020
N/A· v4
5.5 MEDIUM· v3
2.1 LOW· v2
Windows Spoofing Vulnerability
1Microsoft
1Azure Devops Server
Jun 17, 2026
Nov 11, 2020
N/A· v4
5.4 MEDIUM· v3
5.5 MEDIUM· v2
Azure DevOps Server and Team Foundation Services Spoofing Vulnerability
1Microsoft
1Windows 10
Jun 17, 2026
Nov 11, 2020
N/A· v4
5.5 MEDIUM· v3
2.1 LOW· v2
Windows Camera Codec Information Disclosure Vulnerability
1Microsoft
1Hevc Video Extensions
Jun 17, 2026
Nov 11, 2020
N/A· v4
7.8 HIGH· v3
9.3 HIGH· v2
HEVC Video Extensions Remote Code Execution Vulnerability
1Microsoft
1Hevc Video Extensions
Jun 17, 2026
Nov 11, 2020
N/A· v4
7.8 HIGH· v3
9.3 HIGH· v2
HEVC Video Extensions Remote Code Execution Vulnerability
1Microsoft
1Hevc Video Extensions
Jun 17, 2026
Nov 11, 2020
N/A· v4
7.8 HIGH· v3
9.3 HIGH· v2
HEVC Video Extensions Remote Code Execution Vulnerability
1Microsoft
1Hevc Video Extensions
Jun 17, 2026
Nov 11, 2020
N/A· v4
7.8 HIGH· v3
9.3 HIGH· v2
HEVC Video Extensions Remote Code Execution Vulnerability