Skip to content
COOEY
SEARCH
“Microsoft”

4 products · 1 vendor · 1 entity · 501 events.

FEDRAMP PRODUCTS open in catalog →
PRODUCTPROVIDERSTATUSIMPACT
Azure Commercial CloudMicrosoftAuthorizedHigh
Azure Government (includes Dynamics 365)MicrosoftAuthorizedHigh
Microsoft Office 365 GCC HighMicrosoftIn ProcessHigh
Office 365 Multi-Tenant & Supporting ServicesMicrosoftAuthorizedModerate
EVENTS
2022-02-15 CISA KEV
Microsoft Graphics Component contains a memory corruption vulnerability which can allow for remote code execution.
2022-02-15 CISA KEV
Microsoft Word contains a memory corruption vulnerability which when exploited could allow for remote code execution.
2022-02-10 CISA KEV
Microsoft HTTP protocol stack (HTTP.sys) contains a vulnerability that allows for remote code execution.
2022-02-10 CISA KEV
A remote code execution vulnerability exists in the way that the Microsoft Server Message Block 3.1.1 (SMBv3) protocol handles certain requests. An attacker who successfully exploited the vulnerability could gain the...
2022-02-10 CISA KEV
Windows Shell in multiple versions of Microsoft Windows allows local users or remote attackers to execute arbitrary code via a crafted .LNK file
2022-02-10 CISA KEV
Microsoft Win32k contains a privilege escalation vulnerability due to the Windows kernel-mode driver failing to properly handle objects in memory.
2022-02-10 CISA KEV
A remote code execution vulnerability exists in Microsoft Office.
2022-02-10 CISA KEV
The SMBv1 server in multiple Microsoft Windows versions allows remote attackers to execute arbitrary code via crafted packets.
2022-02-10 CISA KEV
The SMBv1 server in multiple Microsoft Windows versions allows remote attackers to execute arbitrary code via crafted packets.
2022-02-04 CISA KEV
Microsoft Win32k contains an unspecified vulnerability that allows for privilege escalation.
2022-01-28 CISA KEV
Microsoft Windows BITS is vulnerable to to a privilege elevation vulnerability if it improperly handles symbolic links. An actor can exploit this vulnerability to execute arbitrary code with system-level privileges.
2022-01-28 CISA KEV
Microsoft Internet Explorer contains a memory corruption vulnerability that allows remote attackers to execute code in the context of the current user.
2022-01-21 CISA KEV
Microsoft Windows Win32k contains a vulnerability that allows an attacker to escalate privileges.
2022-01-18 CISA KEV
Microsoft Exchange Server contains an information disclosure vulnerability which can allow an unauthenticated attacker to steal email traffic from target.
2021-12-15 CISA KEV
Microsoft Windows AppX Installer contains a spoofing vulnerability which has a high impacts to confidentiality, integrity, and availability.
2021-11-17 CISA KEV
A security feature bypass vulnerability in Microsoft Excel would allow a local user to perform arbitrary code execution.
2021-11-17 CISA KEV
An authenticated attacker could leverage improper validation in cmdlet arguments within Microsoft Exchange and perform remote code execution.
2021-11-03 CISA KEV
Microsoft Internet Explorer contains a memory corruption vulnerability which can allow for remote code execution in the context of the current user.
2021-11-03 CISA KEV
Microsoft Windows Installer contains a privilege escalation vulnerability when MSI packages process symbolic links, which allows attackers to bypass access restrictions to add or remove files.
2021-11-03 CISA KEV
Microsoft Windows kernel contains an unspecified vulnerability that allows for privilege escalation.
2021-11-03 CISA KEV
Microsoft Windows MSHTML Platform contains an unspecified vulnerability that allows for remote code execution.
2021-11-03 CISA KEV
Microsoft Enhanced Cryptographic Provider contains an unspecified vulnerability that allows for privilege escalation.
2021-11-03 CISA KEV
Microsoft Windows kernel contains an unspecified vulnerability that allows for privilege escalation.
2021-11-03 CISA KEV
Microsoft Windows New Technology File System (NTFS) contains an unspecified vulnerability that allows attackers to escalate privileges via a specially crafted application.
2021-11-03 CISA KEV
Microsoft Enhanced Cryptographic Provider contains an unspecified vulnerability that allows for privilege escalation.
2021-11-03 CISA KEV
Microsoft Windows kernel contains an unspecified vulnerability that allows for privilege escalation.
2021-11-03 CISA KEV
Microsoft Windows Adobe Font Manager Library contains an unspecified vulnerability when handling specially crafted multi-master fonts (Adobe Type 1 PostScript format) that allows for remote code execution for all...
2021-11-03 CISA KEV
Microsoft Exchange Server improperly validates cmdlet arguments which allow an attacker to perform remote code execution.
2021-11-03 CISA KEV
Microsoft Windows kernel contains an unspecified vulnerability when handling objects in memory that allows attackers to escalate privileges and execute code in kernel mode.
2021-11-03 CISA KEV
Microsoft Windows Adobe Font Manager Library contains an unspecified vulnerability when handling specially crafted multi-master fonts (Adobe Type 1 PostScript format) that allows for remote code execution for all...
2021-11-03 CISA KEV
Microsoft Open Management Infrastructure (OMI) within Azure VM Management Extensions contains an unspecified vulnerability that allows for privilege escalation.
2021-11-03 CISA KEV
Microsoft Exchange Server contains an unspecified vulnerability that allows for privilege escalation.
2021-11-03 CISA KEV
Microsoft Windows Server 2003 R2 contains a buffer overflow vulnerability in Internet Information Services (IIS) 6.0 which allows remote attackers to execute code via a long header beginning with "If: <http://" in a...
2021-11-03 CISA KEV
Microsoft Windows Update Medic Service contains an unspecified vulnerability that allows for privilege escalation.
2021-11-03 CISA KEV
Microsoft Open Management Infrastructure (OMI) within Azure VM Management Extensions contains an unspecified vulnerability allowing privilege escalation.
2021-11-03 CISA KEV
Microsoft Windows Server Message Block 1.0 (SMBv1) contains an unspecified vulnerability that allows for remote code execution.
2021-11-03 CISA KEV
Microsoft Win32k kernel-mode driver fails to properly handle objects in memory which allows for privilege escalation. Successful exploitation allows an attacker to run code in kernel mode.
2021-11-03 CISA KEV
Microsoft Remote Desktop Services, formerly known as Terminal Service, contains an unspecified vulnerability that allows an unauthenticated attacker to connect to the target system using RDP and send specially...
2021-11-03 CISA KEV
Microsoft Exchange Server contains an unspecified vulnerability that allows for remote code execution.
2021-11-03 CISA KEV
Microsoft Windows contains a spoofing vulnerability when Windows incorrectly validates file signatures, allowing an attacker to bypass security features and load improperly signed files.
◀ PREV PAGE 08 / 13 NEXT ▶