microsoft security advisories
60 threat alerts tracking vulnerabilities and security advisories that affect microsoft products.
Vulnios monitors microsoft CVE feeds, vendor advisories, CISA KEV listings, and exploit-prediction data continuously. Each alert below is enriched with severity, exploitation status, affected products, and a remediation path. Use this page to scan recent microsoft security news in one place, or click into an individual alert for full detail.
Critical Vulnerability: CVE-2020-17132 — microsoft — exchange_server
Microsoft Exchange Remote Code Execution Vulnerability
criticalCVE-2020-17132Critical Vulnerability: CVE-2020-17142 — microsoft — exchange_server
Microsoft Exchange Remote Code Execution Vulnerability
criticalCVE-2020-17142Critical Vulnerability: CVE-2020-17051 — microsoft — windows_server_2008, windows_server_2012
Windows Network File System Remote Code Execution Vulnerability
criticalCVE-2020-17051Critical Vulnerability: CVE-2020-1036 — microsoft — windows_server_2008, windows_server_2012
A remote code execution vulnerability exists when Hyper-V RemoteFX vGPU on a host server fails to properly validate input from an authenticated user on a guest operating system, aka 'Hyper-V RemoteFX
criticalCVE-2020-1036Critical Vulnerability: CVE-2020-1043 — microsoft — windows_server_2008, windows_server_2012
A remote code execution vulnerability exists when Hyper-V RemoteFX vGPU on a host server fails to properly validate input from an authenticated user on a guest operating system, aka 'Hyper-V RemoteFX
criticalCVE-2020-1043Critical Vulnerability: CVE-2020-1041 — microsoft — windows_server_2008, windows_server_2012
A remote code execution vulnerability exists when Hyper-V RemoteFX vGPU on a host server fails to properly validate input from an authenticated user on a guest operating system, aka 'Hyper-V RemoteFX
criticalCVE-2020-1041Critical Vulnerability: CVE-2020-1042 — microsoft — windows_server_2008, windows_server_2012
A remote code execution vulnerability exists when Hyper-V RemoteFX vGPU on a host server fails to properly validate input from an authenticated user on a guest operating system, aka 'Hyper-V RemoteFX
criticalCVE-2020-1042Critical Vulnerability: CVE-2020-1032 — microsoft — windows_server_2008, windows_server_2012
A remote code execution vulnerability exists when Hyper-V RemoteFX vGPU on a host server fails to properly validate input from an authenticated user on a guest operating system, aka 'Hyper-V RemoteFX
criticalCVE-2020-1032Critical Vulnerability: CVE-2020-1112 — microsoft — windows_10, windows_7
An elevation of privilege vulnerability exists when the Windows Background Intelligent Transfer Service (BITS) IIS module improperly handles uploaded content, aka 'Windows Background Intelligent Trans
criticalCVE-2020-1112Critical Vulnerability: CVE-2020-0901 — microsoft — 365_apps, office
A remote code execution vulnerability exists in Microsoft Excel software when the software fails to properly handle objects in memory, aka 'Microsoft Excel Remote Code Execution Vulnerability'.
criticalCVE-2020-0901Critical Vulnerability: CVE-2020-1026 — microsoft — research_javascript_cryptography_library
A Security Feature Bypass vulnerability exists in the MSR JavaScript Cryptography Library that is caused by multiple bugs in the library’s Elliptic Curve Cryptography (ECC) implementation.An attacke
criticalCVE-2020-1026Critical Vulnerability: CVE-2020-0872 — microsoft — application_inspector
A remote code execution vulnerability exists in Application Inspector version v1.0.23 or earlier when the tool reflects example code snippets from third-party source files into its HTML output, aka 'R
criticalCVE-2020-0872Critical Vulnerability: CVE-2020-0690 — microsoft — windows_10, windows_server_2016
An elevation of privilege vulnerability exists when DirectX improperly handles objects in memory, aka 'DirectX Elevation of Privilege Vulnerability'.
criticalCVE-2020-0690Critical Vulnerability: CVE-2020-0902 — microsoft — service_fabric
An elevation of privilege vulnerability exists in Service Fabric File Store Service under certain conditions, aka 'Service Fabric Elevation of Privilege'.
criticalCVE-2020-0902Critical Vulnerability: CVE-2020-0654 — microsoft — onedrive
A security feature bypass vulnerability exists in Microsoft OneDrive App for Android.This could allow an attacker to bypass the passcode or fingerprint requirements of the App.The security update addr
criticalCVE-2020-0654Critical Vulnerability: CVE-2020-0609 — microsoft — windows_server_2012, windows_server_2016
A remote code execution vulnerability exists in Windows Remote Desktop Gateway (RD Gateway) when an unauthenticated attacker connects to the target system using RDP and sends specially crafted request
criticalCVE-2020-0609Critical Vulnerability: CVE-2020-0610 — microsoft — windows_server_2012, windows_server_2016
A remote code execution vulnerability exists in Windows Remote Desktop Gateway (RD Gateway) when an unauthenticated attacker connects to the target system using RDP and sends specially crafted request
criticalCVE-2020-0610Critical Vulnerability: CVE-2019-1449 — microsoft — office, office_365_proplus
A security feature bypass vulnerability exists in the way that Office Click-to-Run (C2R) components handle a specially crafted file, which could lead to a standard user, any AppContainer sandbox, and
criticalCVE-2019-1449Critical Vulnerability: CVE-2019-0721 — microsoft — windows_10, windows_server_2016
A remote code execution vulnerability exists when Windows Hyper-V Network Switch on a host server fails to properly validate input from an authenticated user on a guest operating system, aka 'Hyper-V
criticalCVE-2019-0721Critical Vulnerability: CVE-2019-0719 — microsoft — windows_10, windows_7
A remote code execution vulnerability exists when Windows Hyper-V Network Switch on a host server fails to properly validate input from an authenticated user on a guest operating system, aka 'Hyper-V
criticalCVE-2019-0719Critical Vulnerability: CVE-2019-1384 — microsoft — windows_10, windows_7
A security feature bypass vulnerability exists where a NETLOGON message is able to obtain the session key and sign messages.To exploit this vulnerability, an attacker could send a specially crafted au
criticalCVE-2019-1384Critical Vulnerability: CVE-2019-1373 — microsoft — exchange_server
A remote code execution vulnerability exists in Microsoft Exchange through the deserialization of metadata via PowerShell, aka 'Microsoft Exchange Remote Code Execution Vulnerability'.
criticalCVE-2019-1373Critical Vulnerability: CVE-2019-1372 — microsoft — azure_app_service_on_azure_stack
An remote code execution vulnerability exists when Azure App Service/ Antares on Azure Stack fails to check the length of a buffer prior to copying memory to it.An attacker who successfully exploited
criticalCVE-2019-1372Critical Vulnerability: CVE-2019-1365 — microsoft — windows_10, windows_7
An elevation of privilege vulnerability exists when Microsoft IIS Server fails to check the length of a buffer prior to copying memory to it.An attacker who successfully exploited this vulnerability c
criticalCVE-2019-1365Critical Vulnerability: CVE-2019-1306 — microsoft — team_foundation_server, azure_devops_server
A remote code execution vulnerability exists when Azure DevOps Server (ADO) and Team Foundation Server (TFS) fail to validate input properly, aka 'Azure DevOps and Team Foundation Server Remote Code E
criticalCVE-2019-1306Critical Vulnerability: CVE-2019-0736 — microsoft — windows_10, windows_7
A memory corruption vulnerability exists in the Windows DHCP client when an attacker sends specially crafted DHCP responses to a client. An attacker who successfully exploited the vulnerability could
criticalCVE-2019-0736Critical Vulnerability: CVE-2019-1181 — microsoft — windows_10, windows_7
A remote code execution vulnerability exists in Remote Desktop Services – formerly known as Terminal Services – when an unauthenticated attacker connects to the target system using RDP and sends speci
criticalCVE-2019-1181Critical Vulnerability: CVE-2019-1205 — microsoft — office, office_365_proplus
A remote code execution vulnerability exists in Microsoft Word software when it fails to properly handle objects in memory. An attacker who successfully exploited the vulnerability could use a special
criticalCVE-2019-1205Critical Vulnerability: CVE-2019-1226 — microsoft — windows_10, windows_server_2016
A remote code execution vulnerability exists in Remote Desktop Services – formerly known as Terminal Services – when an unauthenticated attacker connects to the target system using RDP and sends speci
criticalCVE-2019-1226Critical Vulnerability: CVE-2019-1213 — microsoft — windows_server_2008
A memory corruption vulnerability exists in the Windows Server DHCP service when an attacker sends specially crafted packets to a DHCP server. An attacker who successfully exploited the vulnerability
criticalCVE-2019-1213Critical Vulnerability: CVE-2019-1212 — microsoft — windows_10, windows_7
A memory corruption vulnerability exists in the Windows Server DHCP service when processing specially crafted packets. An attacker who successfully exploited the vulnerability could cause the DHCP ser
criticalCVE-2019-1212Critical Vulnerability: CVE-2019-1182 — microsoft — windows_10, windows_7
A remote code execution vulnerability exists in Remote Desktop Services – formerly known as Terminal Services – when an unauthenticated attacker connects to the target system using RDP and sends speci
criticalCVE-2019-1182Critical Vulnerability: CVE-2019-1222 — microsoft — windows_10, windows_server_2016
A remote code execution vulnerability exists in Remote Desktop Services – formerly known as Terminal Services – when an unauthenticated attacker connects to the target system using RDP and sends speci
criticalCVE-2019-1222Critical Vulnerability: CVE-2019-1109 — microsoft — office, office_365
A spoofing vulnerability exists when Microsoft Office Javascript does not check the validity of the web page making a request to Office documents.An attacker who successfully exploited this vulnerabil
criticalCVE-2019-1109Critical Vulnerability: CVE-2019-0785 — microsoft — windows_server_2012, windows_server_2016
A memory corruption vulnerability exists in the Windows Server DHCP service when an attacker sends specially crafted packets to a DHCP failover server, aka 'Windows DHCP Server Remote Code Execution V
criticalCVE-2019-0785Critical Vulnerability: CVE-2019-1072 — microsoft — team_foundation_server, azure_devops_server
A remote code execution vulnerability exists when Azure DevOps Server and Team Foundation Server (TFS) improperly handle user input, aka 'Azure DevOps Server and Team Foundation Server Remote Code Exe
criticalCVE-2019-1072Critical Vulnerability: CVE-2019-0938 — microsoft — edge, windows_10
An elevation of privilege vulnerability exists in Microsoft Edge that could allow an attacker to escape from the AppContainer sandbox in the browser, aka 'Microsoft Edge Elevation of Privilege Vulnera
criticalCVE-2019-0938Critical Vulnerability: CVE-2019-0725 — microsoft — windows_server_2008, windows_server_2012
A memory corruption vulnerability exists in the Windows Server DHCP service when processing specially crafted packets, aka 'Windows DHCP Server Remote Code Execution Vulnerability'.
criticalCVE-2019-0725Critical Vulnerability: CVE-2019-0786 — microsoft — windows_10, windows_server_2016
An elevation of privilege vulnerability exists in the Microsoft Server Message Block (SMB) Server when an attacker with valid credentials attempts to open a specially crafted file over the SMB protoco
criticalCVE-2019-0786Critical Vulnerability: CVE-2019-0726 — microsoft — windows_10, windows_server_2016
A memory corruption vulnerability exists in the Windows DHCP client when an attacker sends specially crafted DHCP responses to a client, aka 'Windows DHCP Client Remote Code Execution Vulnerability'.
criticalCVE-2019-0726Critical Vulnerability: CVE-2019-0698 — microsoft — windows_10, windows_server_2016
A memory corruption vulnerability exists in the Windows DHCP client when an attacker sends specially crafted DHCP responses to a client, aka 'Windows DHCP Client Remote Code Execution Vulnerability'.
criticalCVE-2019-0698Critical Vulnerability: CVE-2019-0697 — microsoft — windows_10, windows_server_2016
A memory corruption vulnerability exists in the Windows DHCP client when an attacker sends specially crafted DHCP responses to a client, aka 'Windows DHCP Client Remote Code Execution Vulnerability'.
criticalCVE-2019-0697Critical Vulnerability: CVE-2019-0813 — microsoft — windows_admin_center
An elevation of privilege vulnerability exists when Windows Admin Center improperly impersonates operations in certain situations, aka 'Windows Admin Center Elevation of Privilege Vulnerability'.
criticalCVE-2019-0813Critical Vulnerability: CVE-2019-0626 — microsoft — windows_10, windows_7
A memory corruption vulnerability exists in the Windows Server DHCP service when an attacker sends specially crafted packets to a DHCP server, aka 'Windows DHCP Server Remote Code Execution Vulnerabil
criticalCVE-2019-0626Critical Vulnerability: CVE-2019-0729 — microsoft — java_software_development_kit
An Elevation of Privilege vulnerability exists in the way Azure IoT Java SDK generates symmetric keys for encryption, allowing an attacker to predict the randomness of the key, aka 'Azure IoT Java SDK
criticalCVE-2019-0729Critical Vulnerability: CVE-2019-0586 — microsoft — exchange_server
A remote code execution vulnerability exists in Microsoft Exchange software when the software fails to properly handle objects in memory, aka "Microsoft Exchange Memory Corruption Vulnerability." This
criticalCVE-2019-0586Critical Vulnerability: CVE-2019-0547 — microsoft — windows_10
A memory corruption vulnerability exists in the Windows DHCP client when an attacker sends specially crafted DHCP responses to a client, aka "Windows DHCP Client Remote Code Execution Vulnerability."
criticalCVE-2019-0547Critical Vulnerability: CVE-2018-8626 — microsoft — windows_10, windows_server_2012
A remote code execution vulnerability exists in Windows Domain Name System (DNS) servers when they fail to properly handle requests, aka "Windows DNS Server Heap Overflow Vulnerability." This affects
criticalCVE-2018-8626Critical Vulnerability: CVE-2018-8540 — microsoft — .net_framework, windows_10
A remote code execution vulnerability exists when the Microsoft .NET Framework fails to validate input properly, aka ".NET Framework Remote Code Injection Vulnerability." This affects Microsoft .NET F
criticalCVE-2018-8540Critical Vulnerability: CVE-2018-8529 — microsoft — team_foundation_server
A remote code execution vulnerability exists when Team Foundation Server (TFS) does not enable basic authorization on the communication between the TFS and Search services, aka "Team Foundation Server
criticalCVE-2018-8529Critical Vulnerability: CVE-2018-8476 — microsoft — windows_server_2008, windows_server_2012
A remote code execution vulnerability exists in the way that Windows Deployment Services TFTP Server handles objects in memory, aka "Windows Deployment Services TFTP Server Remote Code Execution Vulne
criticalCVE-2018-8476Critical Vulnerability: CVE-2018-8500 — microsoft — chakracore
A remote code execution vulnerability exists in the way that the ChakraCore scripting engine handles objects in memory, aka "Scripting Engine Memory Corruption Vulnerability." This affects ChakraCore.
criticalCVE-2018-8500Critical Vulnerability: CVE-2018-8421 — microsoft — .net_framework, windows_server_2008
A remote code execution vulnerability exists when Microsoft .NET Framework processes untrusted input, aka ".NET Framework Remote Code Execution Vulnerability." This affects Microsoft .NET Framework 4.
criticalCVE-2018-8421Critical Vulnerability: CVE-2018-8302 — microsoft — exchange_server
A remote code execution vulnerability exists in Microsoft Exchange software when the software fails to properly handle objects in memory, aka "Microsoft Exchange Memory Corruption Vulnerability." This
criticalCVE-2018-8302Critical Vulnerability: CVE-2018-8273 — microsoft — sql_server
A buffer overflow vulnerability exists in the Microsoft SQL Server that could allow remote code execution on an affected system, aka "Microsoft SQL Server Remote Code Execution Vulnerability." This af
criticalCVE-2018-8273Critical Vulnerability: CVE-2018-8319 — microsoft — research_javascript_cryptography_library
A Security Feature Bypass vulnerability exists in MSR JavaScript Cryptography Library that is caused by incorrect arithmetic computations, aka "MSR JavaScript Cryptography Library Security Feature Byp
criticalCVE-2018-8319Critical Vulnerability: CVE-2018-8327 — microsoft — powershell, powershell_editor_services
A remote code execution vulnerability exists in PowerShell Editor Services, aka "PowerShell Editor Services Remote Code Execution Vulnerability." This affects PowerShell Editor, PowerShell Extension.
criticalCVE-2018-8327Critical Vulnerability: CVE-2018-12571 — microsoft — forefront_unified_access_gateway
uniquesig0/InternalSite/InitParams.aspx in Microsoft Forefront Unified Access Gateway 2010 allows remote attackers to trigger outbound DNS queries for arbitrary hosts via a comma-separated list of URL
criticalCVE-2018-12571Critical Vulnerability: CVE-2018-8154 — microsoft — exchange_server
A remote code execution vulnerability exists in Microsoft Exchange software when the software fails to properly handle objects in memory, aka "Microsoft Exchange Memory Corruption Vulnerability." This
criticalCVE-2018-8154Critical Vulnerability: CVE-2017-11899 — microsoft — windows_10, windows_server_2016
Device Guard in Windows 10 1511, 1607, 1703 and 1709, Windows Server 2016 and Windows Server, version 1709 allows a security feature bypass vulnerability due to the way untrusted files are handled, ak
criticalCVE-2017-11899
Showing the 60 most recent. Older alerts are archived but still reachable via search and the main feed.
Track microsoft exposure across your environment
Vulnios automatically cross-references your asset inventory against new microsoft CVEs and surfaces only what affects you. No more sifting manually — actionable findings only.
Start a free scan