Vulnerabilities
Vulnerable Software
Microsoft:  Security Vulnerabilities
Stack-based buffer overflow in Azure Application Gateway allows an unauthorized attacker to elevate privileges over a network.
CVSS Score
9.8
EPSS Score
0.001
Published
2025-11-26
Uncontrolled search path element issue exists in the installer of LogStare Collector (for Windows). If exploited, arbitrary code may be executed with the privilege of the user invoking the installer.
CVSS Score
7.8
EPSS Score
0.0
Published
2025-11-21
LogStare Collector contains a stored cross-site scripting vulnerability in UserManagement. If crafted user information is stored, an arbitrary script may be executed on the web browser of the user who logs in to the product's management page.
CVSS Score
5.4
EPSS Score
0.0
Published
2025-11-21
LogStare Collector contains an incorrect authorization vulnerability in UserRegistration. If exploited, a non-administrative user may create a new user account by sending a crafted HTTP request.
CVSS Score
4.3
EPSS Score
0.0
Published
2025-11-21
Cross-site request forgery vulnerability exists in LogStare Collector. If a user views a crafted page while logged, unintended operations may be performed.
CVSS Score
6.5
EPSS Score
0.0
Published
2025-11-21
LogStare Collector improperly handles the password hash data. An administrative user may obtain the other users' password hashes.
CVSS Score
4.9
EPSS Score
0.0
Published
2025-11-21
The installation directory of LogStare Collector is configured with incorrect access permissions. A non-administrative user may manipulate files within the installation directory and execute arbitrary code with the administrative privilege.
CVSS Score
5.5
EPSS Score
0.0
Published
2025-11-21
Microsoft Defender Portal Spoofing Vulnerability
CVSS Score
8.3
EPSS Score
0.001
Published
2025-11-20
Improper authorization in Dynamics OmniChannel SDK Storage Containers allows an unauthorized attacker to elevate privileges over a network.
CVSS Score
8.8
EPSS Score
0.001
Published
2025-11-20
Improper access control in GitHub Copilot and Visual Studio Code allows an authorized attacker to execute code over a network.
CVSS Score
8.0
EPSS Score
0.001
Published
2025-11-20


Contact Us

Shodan ® - All rights reserved