|
CVE-2023-21572
|
|
Microsoft Dynamics 365 (on-premises) Cross-site Scripting Vulnerability
Microsoft Dynamics 365 (on-premises) Cross-site Scripting Vulnerability
|
Medium
|
クロスサイトスクリプティング (XSS)
CWE-79: クロスサイトスクリプティング (XSS)
Microsoft
Dynamics 365
|
3年前
|
|
CVE-2023-21573
|
|
Microsoft Dynamics 365 (on-premises) Cross-site Scripting Vulnerability
Microsoft Dynamics 365 (on-premises) Cross-site Scripting Vulnerability
|
Medium
|
クロスサイトスクリプティング (XSS)
CWE-79: クロスサイトスクリプティング (XSS)
Microsoft
Dynamics 365
|
3年前
|
|
CVE-2023-21684
|
|
Microsoft PostScript and PCL6 Class Printer Driver Remote Code Execution Vulnerability
Microsoft PostScript and PCL6 Class Printer Driver Remote Code Execution Vulnerability
|
High
|
リモートコード実行 (RCE)
Cwe 191
Microsoft
Windows 10 1507
+12
|
3年前
|
|
CVE-2023-21685
|
|
Microsoft WDAC OLE DB provider for SQL Server Remote Code Execution Vulnerability
Microsoft WDAC OLE DB provider for SQL Server Remote Code Execution Vulnerability
|
High
|
リモートコード実行 (RCE)
CWE-20: 入力検証の不備
Microsoft
Windows 10 1507
+12
|
3年前
|
|
CVE-2023-21686
|
|
Microsoft WDAC OLE DB provider for SQL Server Remote Code Execution Vulnerability
Microsoft WDAC OLE DB provider for SQL Server Remote Code Execution Vulnerability
|
High
|
リモートコード実行 (RCE)
Cwe 190
Microsoft
Windows 10 1507
+12
|
3年前
|
|
CVE-2023-21687
|
|
HTTP.sys Information Disclosure Vulnerability
HTTP.sys Information Disclosure Vulnerability
|
Medium
|
Cwe 125
Cwe 668
Microsoft
Windows 11 21H2
+2
|
3年前
|
|
CVE-2023-21688
|
|
NT OS Kernel Elevation of Privilege Vulnerability
NT OS Kernel Elevation of Privilege Vulnerability
|
High
|
CWE-416: 解放後使用 (Use-After-Free)
Microsoft
Windows 10 1507
Windows 10 1607
+11
|
3年前
|
|
CVE-2023-21689
|
|
Microsoft Protected Extensible Authentication Protocol (PEAP) Remote Code Execution Vulnerability
Microsoft Protected Extensible Authentication Protocol (PEAP) Remote Code Execution Vulnerability
|
Critical
|
リモートコード実行 (RCE)
Cwe 122
Microsoft
Windows 10 1507
+12
|
3年前
|
|
CVE-2023-21690
|
|
Microsoft Protected Extensible Authentication Protocol (PEAP) Remote Code Execution Vulnerability
Microsoft Protected Extensible Authentication Protocol (PEAP) Remote Code Execution Vulnerability
|
Critical
|
リモートコード実行 (RCE)
Cwe 122
Microsoft
Windows 10 1507
+12
|
3年前
|
|
CVE-2023-21691
|
|
Microsoft Protected Extensible Authentication Protocol (PEAP) Information Disclosure Vulnerability
Microsoft Protected Extensible Authentication Protocol (PEAP) Information Disclosure Vulnerability
|
High
|
Cwe 125
Microsoft
Windows 10 1507
Windows 10 1607
+11
|
3年前
|
|
CVE-2023-21692
|
|
Microsoft Protected Extensible Authentication Protocol (PEAP) Remote Code Execution Vulnerability
Microsoft Protected Extensible Authentication Protocol (PEAP) Remote Code Execution Vulnerability
|
Critical
|
リモートコード実行 (RCE)
Cwe 122
Microsoft
Windows 10 1507
+12
|
3年前
|
|
CVE-2023-21528
|
|
Microsoft SQL Server Remote Code Execution Vulnerability
Microsoft SQL Server Remote Code Execution Vulnerability
|
High
|
リモートコード実行 (RCE)
Cwe 122
Microsoft
Sql Server
|
3年前
|
|
CVE-2023-21564
|
|
Azure DevOps Server Cross-Site Scripting Vulnerability
Azure DevOps Server Cross-Site Scripting Vulnerability
|
High
|
クロスサイトスクリプティング (XSS)
CWE-79: クロスサイトスクリプティング (XSS)
Microsoft
Azure Devops Server
|
3年前
|
|
CVE-2023-21568
|
|
Microsoft SQL Server Integration Service (VS extension) Remote Code Execution Vulnerability
Microsoft SQL Server Integration Service (VS extension) Remote Code Execution Vulnerability
|
High
|
リモートコード実行 (RCE)
CWE-502: 安全でないデシリアライゼーション
Microsoft
Sql Server 2019 Integration Services
+1
|
3年前
|
|
CVE-2023-21570
|
|
Microsoft Dynamics 365 (on-premises) Cross-site Scripting Vulnerability
Microsoft Dynamics 365 (on-premises) Cross-site Scripting Vulnerability
|
Medium
|
クロスサイトスクリプティング (XSS)
CWE-79: クロスサイトスクリプティング (XSS)
Microsoft
Dynamics 365
|
3年前
|
|
CVE-2023-21715
KEV
|
|
【KEV】Microsoft office に 認可不備 (CVE-2023-21715)
Microsoft office に 脆弱性 (CVE-2023-21715) が存在。悪用されるとシステム全体を乗っ取られる可能性があります。CISA KEV登録済 — 実環境で悪用が確認されている。
|
High
|
Microsoft
Office
Cwe 863
365 Apps
|
3年前
|
|
CVE-2023-23376
KEV
|
|
【KEV】Microsoft windows の脆弱性 (CVE-2023-23376)
Microsoft windows に 脆弱性 (CVE-2023-23376) が存在。悪用されるとシステム全体を乗っ取られる可能性があります。CISA KEV登録済 — 実環境で悪用が確認されている。
|
High
|
Microsoft
Windows
Cwe 122
CWE-787: 境界外書き込み
+13
|
3年前
|
|
CVE-2023-21823
KEV
|
|
【KEV】Microsoft windows の脆弱性 (CVE-2023-21823)
Microsoft windows に 脆弱性 (CVE-2023-21823) が存在。悪用されるとシステム全体を乗っ取られる可能性があります。CISA KEV登録済 — 実環境で悪用が確認されている。
|
High
|
Microsoft
Windows
Cwe 190
リモートコード実行 (RCE)
+13
|
3年前
|
|
CVE-2015-2291
KEV
|
|
【KEV】Intel ethernet-diagnostics-driver-for-windows の脆弱性 (CVE-2015-2291)
Intel ethernet-diagnostics-driver-for-windows に 脆弱性 (CVE-2015-2291) が存在。悪用されるとシステム全体を乗っ取られる可能性があります。CISA KEV登録済 — 実環境で悪用が確認されている。
|
High
|
Intel
Ethernet Diagnostics Driver For Windows
CWE-20: 入力検証の不備
C
+5
|
3年前
|
|
CVE-2022-41080
KEV
|
|
【KEV】Microsoft exchange-server の脆弱性 (CVE-2022-41080)
Microsoft exchange-server に 脆弱性 (CVE-2022-41080) が存在。悪用されるとシステム全体を乗っ取られる可能性があります。CISA KEV登録済 — 実環境で悪用が確認されている。
|
High
|
Microsoft
Exchange Server
|
3年前
|
|
CVE-2023-21674
KEV
|
|
【KEV】Microsoft windows に 解放後使用 (Use-After-Free) (CVE-2023-21674)
Microsoft windows に 脆弱性 (CVE-2023-21674) が存在。不正な操作・情報露出のリスクがあります。CISA KEV登録済 — 実環境で悪用が確認されている。
|
High
|
Microsoft
Windows
CWE-416: 解放後使用 (Use-After-Free)
|
3年前
|
|
CVE-2022-42343
|
|
ssrf に SSRF (サーバー側リクエスト偽造) (CVE-2022-42343)
ssrf に SSRF (CVE-2022-42343) が存在。機密情報が外部に流出する可能性があります。
|
Medium
|
SSRF (サーバーサイドリクエストフォージェリ)
Cwe 918
Adobe
Campaign
+4
|
3年前
|
|
CVE-2022-44694
|
|
Microsoft Office Visio Remote Code Execution Vulnerability
Microsoft Office Visio Remote Code Execution Vulnerability
|
High
|
リモートコード実行 (RCE)
Microsoft
365 Apps
Office
+1
|
3年前
|
|
CVE-2022-44695
|
|
Microsoft Office Visio Remote Code Execution Vulnerability
Microsoft Office Visio Remote Code Execution Vulnerability
|
High
|
リモートコード実行 (RCE)
Microsoft
365 Apps
Office
+2
|
3年前
|
|
CVE-2022-44696
|
|
Microsoft Office Visio Remote Code Execution Vulnerability
Microsoft Office Visio Remote Code Execution Vulnerability
|
High
|
リモートコード実行 (RCE)
Microsoft
365 Apps
Office
+1
|
3年前
|
|
CVE-2022-44702
|
|
Windows Terminal Remote Code Execution Vulnerability
Windows Terminal Remote Code Execution Vulnerability
|
High
|
リモートコード実行 (RCE)
CWE-94: コードインジェクション
Microsoft
Terminal
+2
|
3年前
|
|
CVE-2022-44698
KEV
|
|
【KEV】Microsoft defender の脆弱性 (CVE-2022-44698)
Microsoft defender に 脆弱性 (CVE-2022-44698) が存在。不正な操作・情報露出のリスクがあります。CISA KEV登録済 — 実環境で悪用が確認されている。
|
High
|
Microsoft
Defender
Cwe 755
|
3年前
|
|
CVE-2022-41049
KEV
|
|
【KEV】Microsoft windows の脆弱性 (CVE-2022-41049)
Microsoft windows に 脆弱性 (CVE-2022-41049) が存在。不正な操作・情報露出のリスクがあります。CISA KEV登録済 — 実環境で悪用が確認されている。
|
Medium
|
Microsoft
Windows
Cwe 274
Windows 10 1507
+11
|
3年前
|
|
CVE-2022-41122
|
|
Microsoft SharePoint Server Spoofing Vulnerability
Microsoft SharePoint Server Spoofing Vulnerability
|
Medium
|
Microsoft
Sharepoint Enterprise Server
Sharepoint Foundation
Sharepoint Server
|
3年前
|
|
CVE-2022-41123
|
|
Microsoft Exchange Server Elevation of Privilege Vulnerability
Microsoft Exchange Server Elevation of Privilege Vulnerability
|
High
|
Microsoft
Exchange Server
|
3年前
|
|
CVE-2022-41109
|
|
Windows Win32k Elevation of Privilege Vulnerability
Windows Win32k Elevation of Privilege Vulnerability
|
High
|
Microsoft
Windows 10
Windows 11
Windows 7
+6
|
3年前
|
|
CVE-2022-41113
|
|
Windows Win32 Kernel Subsystem Elevation of Privilege Vulnerability
Windows Win32 Kernel Subsystem Elevation of Privilege Vulnerability
|
High
|
Microsoft
Windows 10
Windows 11
Windows Server 2019
+1
|
3年前
|
|
CVE-2022-41114
|
|
Windows Bind Filter Driver Elevation of Privilege Vulnerability
Windows Bind Filter Driver Elevation of Privilege Vulnerability
|
High
|
Cwe 362
Microsoft
Windows 10
Windows 11
+1
|
3年前
|
|
CVE-2022-41118
|
|
Windows Scripting Languages Remote Code Execution Vulnerability
Windows Scripting Languages Remote Code Execution Vulnerability
|
High
|
リモートコード実行 (RCE)
Cwe 362
Microsoft
Windows 10
+8
|
3年前
|
|
CVE-2022-41119
|
|
Visual Studio Remote Code Execution Vulnerability
Visual Studio Remote Code Execution Vulnerability
|
High
|
リモートコード実行 (RCE)
Microsoft
Visual Studio 2017
Visual Studio 2019
+1
|
3年前
|
|
CVE-2022-41120
|
|
Microsoft Windows System Monitor (Sysmon) Elevation of Privilege Vulnerability
Microsoft Windows System Monitor (Sysmon) Elevation of Privilege Vulnerability
|
High
|
Microsoft
Windows Sysmon
|
3年前
|
|
CVE-2022-41103
|
|
Microsoft Word Information Disclosure Vulnerability
Microsoft Word Information Disclosure Vulnerability
|
Medium
|
Microsoft
365 Apps
Office
Office Long Term Servicing Channel
+5
|
3年前
|
|
CVE-2022-41104
|
|
Microsoft Excel Security Feature Bypass Vulnerability
Microsoft Excel Security Feature Bypass Vulnerability
|
Medium
|
Microsoft
365 Apps
Excel
Office
+1
|
3年前
|
|
CVE-2022-41105
|
|
Microsoft Excel Information Disclosure Vulnerability
Microsoft Excel Information Disclosure Vulnerability
|
Medium
|
Microsoft
365 Apps
Office
Office Long Term Servicing Channel
|
3年前
|
|
CVE-2022-41106
|
|
Microsoft Excel Remote Code Execution Vulnerability
Microsoft Excel Remote Code Execution Vulnerability
|
High
|
リモートコード実行 (RCE)
Microsoft
365 Apps
Excel
+4
|
3年前
|
|
CVE-2022-41107
|
|
Microsoft Office Graphics Remote Code Execution Vulnerability
Microsoft Office Graphics Remote Code Execution Vulnerability
|
High
|
リモートコード実行 (RCE)
Microsoft
365 Apps
Office
+1
|
3年前
|
|
CVE-2022-41100
|
|
Windows Advanced Local Procedure Call (ALPC) Elevation of Privilege Vulnerability
Windows Advanced Local Procedure Call (ALPC) Elevation of Privilege Vulnerability
|
High
|
Cwe 362
Microsoft
Windows 10
Windows 11
+5
|
3年前
|
|
CVE-2022-41101
|
|
Windows Overlay Filter Elevation of Privilege Vulnerability
Windows Overlay Filter Elevation of Privilege Vulnerability
|
High
|
Microsoft
Windows 10
Windows 11
Windows Server 2016
+2
|
3年前
|
|
CVE-2022-41102
|
|
Windows Overlay Filter Elevation of Privilege Vulnerability
Windows Overlay Filter Elevation of Privilege Vulnerability
|
High
|
Microsoft
Windows 10
Windows 11
Windows Server 2016
+2
|
3年前
|
|
CVE-2022-41092
|
|
Windows Win32k Elevation of Privilege Vulnerability
Windows Win32k Elevation of Privilege Vulnerability
|
High
|
Microsoft
Windows 10
Windows 11
Windows Server 2022
|
3年前
|
|
CVE-2022-41093
|
|
Windows Advanced Local Procedure Call (ALPC) Elevation of Privilege Vulnerability
Windows Advanced Local Procedure Call (ALPC) Elevation of Privilege Vulnerability
|
High
|
Cwe 362
Microsoft
Windows 10
Windows 11
+5
|
3年前
|
|
CVE-2022-41095
|
|
Windows Digital Media Receiver Elevation of Privilege Vulnerability
Windows Digital Media Receiver Elevation of Privilege Vulnerability
|
High
|
Microsoft
Windows 10
Windows 11
Windows 7
+6
|
3年前
|
|
CVE-2022-41096
|
|
Microsoft DWM Core Library Elevation of Privilege Vulnerability
Microsoft DWM Core Library Elevation of Privilege Vulnerability
|
High
|
Microsoft
Windows 10
Windows 11
Windows Server 2019
+1
|
3年前
|
|
CVE-2022-41097
|
|
Network Policy Server (NPS) RADIUS Protocol Information Disclosure Vulnerability
Network Policy Server (NPS) RADIUS Protocol Information Disclosure Vulnerability
|
Medium
|
Microsoft
Windows 10
Windows 11
Windows 7
+7
|
3年前
|
|
CVE-2022-41098
|
|
Windows GDI+ Information Disclosure Vulnerability
Windows GDI+ Information Disclosure Vulnerability
|
Medium
|
Microsoft
Windows 10
Windows 11
Windows 7
+6
|
3年前
|