CVE-2024-21347
Last Modified: 10 Aug 2026Microsoft ODBC Driver Remote Code Execution Vulnerability
CVE-2024-21346
Last Modified: 10 Aug 2026Win32k Elevation of Privilege Vulnerability
CVE-2024-21345
Last Modified: 10 Aug 2026Windows Kernel Elevation of Privilege Vulnerability
CVE-2024-21344
Last Modified: 10 Aug 2026Windows Network Address Translation (NAT) Denial of Service Vulnerability
CVE-2024-21343
Last Modified: 10 Aug 2026Windows Network Address Translation (NAT) Denial of Service Vulnerability
CVE-2024-21342
Last Modified: 10 Aug 2026Windows DNS Client Denial of Service Vulnerability
CVE-2024-21341
Last Modified: 10 Aug 2026Windows Kernel Remote Code Execution Vulnerability
CVE-2024-21339
Last Modified: 10 Aug 2026Windows USB Generic Parent Driver Remote Code Execution Vulnerability
CVE-2024-20684
Last Modified: 10 Aug 2026Windows Hyper-V Denial of Service Vulnerability
CVE-2024-21328
Last Modified: 3 May 2025Dynamics 365 Sales Spoofing Vulnerability
CVE-2024-20695
Last Modified: 10 Aug 2026Skype for Business Information Disclosure Vulnerability
CVE-2024-21315
Last Modified: 10 Aug 2026Microsoft Defender for Endpoint Protection Elevation of Privilege Vulnerability
CVE-2024-21304
Last Modified: 10 Aug 2026Trusted Compute Base Elevation of Privilege Vulnerability
CVE-2024-20679
Last Modified: 3 May 2025Azure Stack Hub Spoofing Vulnerability
CVE-2024-20673
Last Modified: 10 Aug 2026Microsoft Office Remote Code Execution Vulnerability
CVE-2024-21420
Last Modified: 10 Aug 2026Microsoft WDAC OLE DB provider for SQL Server Remote Code Execution Vulnerability
CVE-2024-21413
Last Modified: 28 Oct 2025Microsoft Outlook Remote Code Execution Vulnerability
CVE-2024-21402
Last Modified: 9 May 2025Microsoft Outlook Elevation of Privilege Vulnerability
CVE-2024-21401
Last Modified: 3 May 2025Microsoft Entra Jira Single-Sign-On Plugin Elevation of Privilege Vulnerability
CVE-2024-21396
Last Modified: 9 May 2025Dynamics 365 Sales Spoofing Vulnerability
CVE-2024-21394
Last Modified: 3 May 2025Dynamics 365 Field Service Spoofing Vulnerability
CVE-2024-21393
Last Modified: 3 May 2025Microsoft Dynamics 365 (on-premises) Cross-site Scripting Vulnerability
CVE-2024-21389
Last Modified: 3 May 2025Microsoft Dynamics 365 (on-premises) Cross-site Scripting Vulnerability
CVE-2024-21381
Last Modified: 10 Aug 2026Microsoft Azure Active Directory B2C Spoofing Vulnerability
CVE-2024-21379
Last Modified: 10 Aug 2026Microsoft Word Remote Code Execution Vulnerability
CVE-2024-21375
Last Modified: 10 Aug 2026Microsoft WDAC OLE DB provider for SQL Server Remote Code Execution Vulnerability
CVE-2024-21372
Last Modified: 10 Aug 2026Windows OLE Remote Code Execution Vulnerability
CVE-2024-21371
Last Modified: 10 Aug 2026Windows Kernel Elevation of Privilege Vulnerability
CVE-2024-21369
Last Modified: 10 Aug 2026Microsoft WDAC OLE DB provider for SQL Server Remote Code Execution Vulnerability
CVE-2024-21366
Last Modified: 10 Aug 2026Microsoft WDAC OLE DB provider for SQL Server Remote Code Execution Vulnerability
CVE-2024-21361
Last Modified: 10 Aug 2026Microsoft WDAC OLE DB provider for SQL Server Remote Code Execution Vulnerability
CVE-2024-21360
Last Modified: 10 Aug 2026Microsoft WDAC OLE DB provider for SQL Server Remote Code Execution Vulnerability
CVE-2024-21358
Last Modified: 10 Aug 2026Microsoft WDAC OLE DB provider for SQL Server Remote Code Execution Vulnerability
CVE-2024-21357
Last Modified: 10 Aug 2026Windows Pragmatic General Multicast (PGM) Remote Code Execution Vulnerability
CVE-2024-21354
Last Modified: 10 Aug 2026Microsoft Message Queuing (MSMQ) Elevation of Privilege Vulnerability
CVE-2024-21352
Last Modified: 10 Aug 2026Microsoft WDAC OLE DB provider for SQL Server Remote Code Execution Vulnerability
CVE-2024-21351
Last Modified: 28 Oct 2025Windows SmartScreen Security Feature Bypass Vulnerability
CVE-2024-21350
Last Modified: 10 Aug 2026Microsoft WDAC OLE DB provider for SQL Server Remote Code Execution Vulnerability
CVE-2024-21349
Last Modified: 10 Aug 2026Microsoft ActiveX Data Objects Remote Code Execution Vulnerability
CVE-2024-21340
Last Modified: 10 Aug 2026Windows Kernel Information Disclosure Vulnerability
CVE-2024-21338
Last Modified: 28 Oct 2025Windows Kernel Elevation of Privilege Vulnerability
CVE-2024-21329
Last Modified: 3 May 2025Azure Connected Machine Agent Elevation of Privilege Vulnerability
CVE-2024-21327
Last Modified: 9 May 2025Microsoft Dynamics 365 Customer Engagement Cross-Site Scripting Vulnerability
CVE-2024-20667
Last Modified: 10 Aug 2026Azure DevOps Server Remote Code Execution Vulnerability
CVE-2023-20570
Last Modified: 22 Mar 2025Insufficient verification of data authenticity in the configuration state machine may allow a local attacker to potentially load arbitrary bitstreams.
CVE-2024-23440
Last Modified: 19 May 2025Vba32 Antivirus v3.36.0 is vulnerable to an Arbitrary Memory Read vulnerability. The 0x22200B IOCTL code of the Vba32m64.sys driver allows to read up to 0x802 of memory from ar arbitrary user-supplied pointer.
CVE-2024-23439
Last Modified: 19 May 2025Vba32 Antivirus v3.36.0 is vulnerable to an Arbitrary Memory Read vulnerability by triggering the 0x22201B, 0x22201F, 0x222023, 0x222027 ,0x22202B, 0x22202F, 0x22203F, 0x222057 and 0x22205B IOCTL codes of the Vba32m64.sys driver.
CVE-2024-1378
Last Modified: 21 Nov 2024A command injection vulnerability was identified in GitHub Enterprise Server that allowed an attacker with an editor role in the Management Console to gain admin SSH access to the appliance via nomad templates when configuring SMTP options. Exploitation of this vulnerability required access to the GitHub Enterprise Server instance and access to the Management Console with the editor role. This vulnerability affected all versions of GitHub Enterprise Server prior to 3.12 and was fixed in versions 3.11.5, 3.10.7, 3.9.10, and 3.8.15. This vulnerability was reported via the GitHub Bug Bounty program https://bounty.github.com .
CVE-2024-1374
Last Modified: 9 May 2025A command injection vulnerability was identified in GitHub Enterprise Server that allowed an attacker with an editor role in the Management Console to gain admin SSH access to the appliance via nomad templates when configuring audit log forwarding. Exploitation of this vulnerability required access to the GitHub Enterprise Server instance and access to the Management Console with the editor role. This vulnerability affected all versions of GitHub Enterprise Server prior to 3.12 and was fixed in versions 3.11.5, 3.10.7, 3.9.10, and 3.8.15. This vulnerability was reported via the GitHub Bug Bounty program https://bounty.github.com .
CVE-2024-1372
Last Modified: 9 May 2025A command injection vulnerability was identified in GitHub Enterprise Server that allowed an attacker with an editor role in the Management Console to gain admin SSH access to the appliance when configuring SAML settings. Exploitation of this vulnerability required access to the GitHub Enterprise Server instance and access to the Management Console with the editor role. This vulnerability affected all versions of GitHub Enterprise Server prior to 3.12 and was fixed in versions 3.11.5, 3.10.7, 3.9.10, and 3.8.15. This vulnerability was reported via the GitHub Bug Bounty program https://bounty.github.com .
