Microsoft Office Remote Code Execution Vulnerability
Use after free in Microsoft Office allows an unauthorized attacker to execute code locally.
Release Notes Click to Run Install KB5002887.
Browse 4,355 advisories from this official source. Search by product, CVE, severity, or advisory ID.
Each date says whether the vendor published or updated the bulletin. A vendor bulletin describes products that may be affected. It does not prove that the vulnerable product or version is installed in your environment.
Use after free in Microsoft Office allows an unauthorized attacker to execute code locally.
Release Notes Click to Run Install KB5002887.
Heap-based buffer overflow in Windows GDI+ allows an unauthorized attacker to execute code locally.
Install KB5099538. Install KB5099540. Install KB5099539. Install KB5099536. Install KB5101650. Install KB5101649. Install KB5099535. Install KB5099445. Install KB5099444.
Heap-based buffer overflow in Active Directory Domain Services allows an unauthorized attacker to execute code over a network.
Install KB5099538. Install KB5099540. Install KB5099539. Install KB5099536. Install KB5101650. Install KB5101649. Install KB5099535. Install KB5099445. Install KB5099444.
Heap-based buffer overflow in Windows DHCP Server allows an authorized attacker to execute code over a network.
Install KB5099538. Install KB5099540. Install KB5099536. Install KB5099535. Install KB5094042. Install KB5094041.
Improper validation of consistency within input in Windows Secure Kernel Mode allows an authorized attacker to elevate privileges locally.
Install KB5099538. Install KB5099540. Install KB5099539. Install KB5099536. Install KB5101650. Install KB5099414. Install KB5101649. Install KB5095051. Install KB5099535.
Improper authentication in Azure Spring Apps allows an authorized attacker to elevate privileges over a network.
Release Notes
Incorrect type conversion or cast in Windows Notification allows an authorized attacker to elevate privileges locally.
Install KB5099538. Install KB5099540. Install KB5099539. Install KB5099536. Install KB5101650. Install KB5101649. Install KB5099535.
Heap-based buffer overflow in Windows Media allows an authorized attacker to elevate privileges locally.
Install KB5101650. Install KB5101649.
Improper access control in Windows Operating Systems allows an authorized attacker to elevate privileges locally.
Install KB5099538. Install KB5099540. Install KB5099539. Install KB5099536. Install KB5101650. Install KB5101649.
Exposure of sensitive information to an unauthorized actor in Windows Notification allows an authorized attacker to disclose information locally.
Install KB5099538. Install KB5099540. Install KB5099539. Install KB5099536. Install KB5101650. Install KB5101649. Install KB5099535. Install KB5099445. Install KB5099444.
Heap-based buffer overflow in Windows Kernel allows an authorized attacker to elevate privileges locally.
Install KB5099538. Install KB5099540. Install KB5099539. Install KB5099536. Install KB5101650. Install KB5101649. Install KB5099535. Install KB5099445. Install KB5099444.
Use after free in Windows Application Model allows an authorized attacker to elevate privileges locally.
Install KB5099538. Install KB5099540. Install KB5099539. Install KB5099536. Install KB5101650. Install KB5101649. Install KB5099535.
Heap-based buffer overflow in Remote Desktop Client allows an unauthorized attacker to elevate privileges over a network.
Install KB5099538. Install KB5099540. Install KB5099539. Install KB5099536. Install KB5101650. Install KB5101649. Install KB5099535. Install KB5099445. Install KB5099444.
Use after free in Windows Kernel allows an authorized attacker to elevate privileges locally.
Install KB5099538. Install KB5099540. Install KB5099539. Install KB5099536. Install KB5101650. Install KB5101649.
Uncaught exception in Windows Server Update Service allows an unauthorized attacker to perform tampering over a network.
Install KB5099538. Install KB5099540. Install KB5099536. Install KB5099535. Install KB5099445. Install KB5099444.
Use after free in Windows Unified Consent System allows an authorized attacker to elevate privileges locally.
Install KB5099539. Install KB5099536. Install KB5101650. Install KB5101649.
Improper access control in Windows Win32K allows an authorized attacker to elevate privileges locally.
Install KB5099538. Install KB5099540. Install KB5099539. Install KB5099536. Install KB5101650. Install KB5101649. Install KB5099535. Install KB5099445. Install KB5099444.
Use after free in Windows Runtime allows an authorized attacker to elevate privileges locally.
Install KB5099536. Install KB5101650. Install KB5101649.
Concurrent execution using shared resource with improper synchronization ('race condition') in Windows Runtime allows an authorized attacker to elevate privileges locally.
Install KB5099536. Install KB5101650. Install KB5101649.
Concurrent execution using shared resource with improper synchronization ('race condition') in Windows USB Driver allows an authorized attacker to elevate privileges locally.
Install KB5099538. Install KB5099540. Install KB5099539. Install KB5099536. Install KB5101650. Install KB5101649. Install KB5099535. Install KB5099445. Install KB5099444.
Stack-based buffer overflow in Windows Resilient File System (ReFS) allows an authorized attacker to elevate privileges locally.
Install KB5099538. Install KB5099540. Install KB5099539. Install KB5099536. Install KB5101650. Install KB5101649. Install KB5099535.
Concurrent execution using shared resource with improper synchronization ('race condition') in Windows Operating Systems allows an authorized attacker to elevate privileges locally.
Install KB5099536. Install KB5101650. Install KB5101649.
Insertion of sensitive information into log file in Windows Kernel allows an authorized attacker to disclose information locally.
Install KB5099540. Install KB5099539. Install KB5099536. Install KB5101650. Install KB5101649.
Null pointer dereference in Windows Image Acquisition allows an authorized attacker to elevate privileges locally.
Install KB5099536. Install KB5101650. Install KB5101649.
We normalize the fields that vendors publish so you can search and compare advisories in one place. We do not replace the original bulletin or turn a product-name match into proof that a system is vulnerable.
Confirm the installed product and version, read the linked vendor guidance, and test the recommended update or mitigation through your normal change process.
Read how SecurityAlert collects and checks threat intelligence.