Missing authorization in Azure Virtual Desktop allows an authorized attacker to elevate privileges over a network.
Improper authorization in Azure allows an authorized attacker to elevate privileges over a network.
Improper verification of cryptographic signature in Microsoft Azure Functions allows an authorized attacker to execute code over a network.
Improper authorization in Azure Bot Framework SDK allows an unauthorized attacker to elevate privileges over a network.
Improper input validation in Microsoft Dynamics allows an unauthorized attacker to disclose information over a network.
Out-of-bounds read in Microsoft Edge (Chromium-based) allows an unauthorized attacker to execute code over a network.
Allocation of resources without limits or throttling in ASP.NET Core allows an unauthorized attacker to deny service over a network.
Improper input validation in Windows DWM Core Library allows an authorized attacker to elevate privileges locally.
Improper input validation in Windows DWM Core Library allows an authorized attacker to elevate privileges locally.
Improper access control in Visual Studio Code allows an authorized attacker to elevate privileges locally.
Improper input validation in Windows Mobile Broadband allows an authorized attacker to elevate privileges locally.
External control of file name or path in Azure Portal Windows Admin Center allows an unauthorized attacker to disclose information locally.
Use after free in Microsoft Edge (Chromium-based) allows an authorized attacker to execute code over a network.
Improper input validation in Microsoft Office Word allows an unauthorized attacker to bypass a security feature over a network.
Untrusted pointer dereference in Windows Kernel Memory allows an authorized attacker to elevate privileges locally.