Vulnerabilities (CVE)

Join the Common Vulnerabilities and Exposures (CVE) community and start to get notified about new vulnerabilities.

Filtered by vendor Microsoft Subscribe
Total 17397 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2022-38030 1 Microsoft 4 Windows 10, Windows 11, Windows Server 2019 and 1 more 2022-10-12 N/A 4.3 MEDIUM
Windows USB Serial Driver Information Disclosure Vulnerability.
CVE-2022-38029 1 Microsoft 10 Windows 10, Windows 11, Windows 7 and 7 more 2022-10-12 N/A 7.0 HIGH
Windows ALPC Elevation of Privilege Vulnerability.
CVE-2019-6755 2 Foxitsoftware, Microsoft 3 Foxit Reader, Phantompdf, Windows 2022-10-12 6.8 MEDIUM 7.8 HIGH
This vulnerability allows remote attackers to execute arbitrary code on vulnerable installations of Foxit Reader 9.3.10826. User interaction is required to exploit this vulnerability in that the target must visit a malicious page or open a malicious file. The specific flaw exists within ConvertToPDF_x86.dll. The issue results from the lack of proper validation of user-supplied data, which can result in a write past the end of an allocated object. An attacker can leverage this vulnerability to execute code in the context of the current process. Was ZDI-CAN-7613.
CVE-2022-38036 1 Microsoft 2 Windows 11, Windows Server 2022 2022-10-12 N/A 7.5 HIGH
Internet Key Exchange (IKE) Protocol Denial of Service Vulnerability.
CVE-2022-38040 1 Microsoft 10 Windows 10, Windows 11, Windows 7 and 7 more 2022-10-12 N/A 8.8 HIGH
Microsoft ODBC Driver Remote Code Execution Vulnerability.
CVE-2022-41042 1 Microsoft 1 Visual Studio Code 2022-10-12 N/A 7.4 HIGH
Visual Studio Code Information Disclosure Vulnerability.
CVE-2019-6747 2 Foxitsoftware, Microsoft 2 Foxit Studio Photo, Windows 2022-10-12 6.8 MEDIUM 7.8 HIGH
This vulnerability allows remote attackers to execute arbitrary code on vulnerable installations of Foxit Studio Photo 3.6.6. User interaction is required to exploit this vulnerability in that the target must visit a malicious page or open a malicious file. The specific flaw exists within the handling of EZI files. The issue results from the lack of proper validation of user-supplied data, which can result in a write past the end of an allocated structure. An attacker can leverage this vulnerability to execute code in the context of the current process. Was ZDI-CAN-7636.
CVE-2022-41083 1 Microsoft 1 Jupyter 2022-10-12 N/A 7.8 HIGH
Visual Studio Code Elevation of Privilege Vulnerability.
CVE-2022-41081 1 Microsoft 10 Windows 10, Windows 11, Windows 7 and 7 more 2022-10-12 N/A 8.1 HIGH
Windows Point-to-Point Tunneling Protocol Remote Code Execution Vulnerability. This CVE ID is unique from CVE-2022-22035, CVE-2022-24504, CVE-2022-30198, CVE-2022-33634, CVE-2022-38000, CVE-2022-38047.
CVE-2022-38039 1 Microsoft 4 Windows 10, Windows 11, Windows Server 2019 and 1 more 2022-10-12 N/A 7.8 HIGH
Windows Kernel Elevation of Privilege Vulnerability. This CVE ID is unique from CVE-2022-37988, CVE-2022-37990, CVE-2022-37991, CVE-2022-37995, CVE-2022-38022, CVE-2022-38037, CVE-2022-38038.
CVE-2022-38031 1 Microsoft 10 Windows 10, Windows 11, Windows 7 and 7 more 2022-10-12 N/A 8.8 HIGH
Microsoft WDAC OLE DB provider for SQL Server Remote Code Execution Vulnerability. This CVE ID is unique from CVE-2022-37982.
CVE-2022-38028 1 Microsoft 10 Windows 10, Windows 11, Windows 7 and 7 more 2022-10-12 N/A 7.8 HIGH
Windows Print Spooler Elevation of Privilege Vulnerability.
CVE-2022-38017 1 Microsoft 4 Storsimple 8010, Storsimple 8010 Firmware, Storsimple 8020 and 1 more 2022-10-12 N/A 6.8 MEDIUM
StorSimple 8000 Series Elevation of Privilege Vulnerability.
CVE-2022-38021 1 Microsoft 6 Windows 10, Windows 11, Windows Server 2012 and 3 more 2022-10-12 N/A 7.0 HIGH
Connected User Experiences and Telemetry Elevation of Privilege Vulnerability.
CVE-2022-38025 1 Microsoft 2 Windows 11, Windows Server 2022 2022-10-12 N/A 5.5 MEDIUM
Windows Distributed File System (DFS) Information Disclosure Vulnerability.
CVE-2022-38027 1 Microsoft 10 Windows 10, Windows 11, Windows 7 and 7 more 2022-10-12 N/A 7.0 HIGH
Windows Storage Elevation of Privilege Vulnerability.
CVE-2022-38026 1 Microsoft 10 Windows 10, Windows 11, Windows 7 and 7 more 2022-10-12 N/A 5.5 MEDIUM
Windows DHCP Client Information Disclosure Vulnerability.
CVE-2022-41036 1 Microsoft 2 Sharepoint Foundation, Sharepoint Server 2022-10-12 N/A 8.8 HIGH
Microsoft SharePoint Server Remote Code Execution Vulnerability. This CVE ID is unique from CVE-2022-38053, CVE-2022-41037, CVE-2022-41038.
CVE-2022-41037 1 Microsoft 2 Sharepoint Foundation, Sharepoint Server 2022-10-12 N/A 8.8 HIGH
Microsoft SharePoint Server Remote Code Execution Vulnerability. This CVE ID is unique from CVE-2022-38053, CVE-2022-41036, CVE-2022-41038.
CVE-2022-41038 1 Microsoft 2 Sharepoint Foundation, Sharepoint Server 2022-10-12 N/A 8.8 HIGH
Microsoft SharePoint Server Remote Code Execution Vulnerability. This CVE ID is unique from CVE-2022-38053, CVE-2022-41036, CVE-2022-41037.