Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1000 CNY

100.0%

Microsoft Corporation — Vulnerabilities & Security Advisories 865

Browse all 865 CVE security advisories affecting Microsoft Corporation. AI-powered Chinese analysis, POCs, and references for each vulnerability.

Microsoft Corporation operates primarily as a technology conglomerate, providing cloud computing services, software licensing, and enterprise hardware. Its extensive software ecosystem, particularly Windows and Azure, makes it a frequent target for cyberattacks, resulting in 865 recorded CVEs. Historically, the company faces significant challenges with remote code execution (RCE) vulnerabilities, often stemming from complex codebases in Office applications and system services. Privilege escalation flaws and cross-site scripting (XSS) issues also appear frequently, reflecting the breadth of its attack surface. Notable security incidents include the SolarWinds supply chain compromise, which impacted Microsoft’s Orion software, and various ransomware attacks exploiting unpatched Exchange Server vulnerabilities. These events highlight the critical importance of rigorous patch management and secure development practices within Microsoft Corporation’s vast infrastructure, underscoring the persistent risks associated with its dominant market position.

CVE IDTitleCVSSSeverityPublished
CVE-2019-1353 Git 安全漏洞 — Git 8.4 -2020-01-24
CVE-2019-1348 Git 输入验证错误漏洞 — Git 3.3 -2020-01-24
CVE-2019-1387 Git 输入验证错误漏洞 — Git 8.8 -2019-12-18
CVE-2018-1038 Microsoft Windows kernel 权限许可和访问控制问题漏洞 — Windows 7.8 -2018-04-02
CVE-2018-0903 Microsoft Access 缓冲区错误漏洞 — Microsoft Access 7.8 -2018-03-14
CVE-2018-0895 Microsoft Windows kernel 信息泄露漏洞 — Windows kernel 4.7 -2018-03-14
CVE-2018-0902 Microsoft Cryptography Next Generation cng.sys驱动程序安全漏洞 — Cryptography Next Generation (CNG) kernel-mode driver (cng.sys) 7.0 -2018-03-14
CVE-2018-0901 Microsoft Windows kernel 信息泄露漏洞 — Windows kernel 4.7 -2018-03-14
CVE-2018-0900 Microsoft Windows kernel 信息泄露漏洞 — Windows kernel 4.7 -2018-03-14
CVE-2018-0899 Microsoft Windows kernel 信息泄露漏洞 — Windows kernel 4.7 -2018-03-14
CVE-2018-0898 Microsoft Windows kernel 信息泄露漏洞 — Windows kernel 4.7 -2018-03-14
CVE-2018-0897 Microsoft Windows kernel 信息泄露漏洞 — Windows kernel 4.7 -2018-03-14
CVE-2018-0896 Microsoft Windows kernel 信息泄露漏洞 — Windows kernel 4.7 -2018-03-14
CVE-2018-0894 Microsoft Windows kernel 信息泄露漏洞 — Windows kernel 4.7 -2018-03-14
CVE-2018-0893 Microsoft Edge scripting引擎缓冲区错误漏洞 — Microsoft Edge 7.5 -2018-03-14
CVE-2018-0891 Microsoft Edge、Internet Explorer和ChakraCore 信息泄露漏洞 — ChakraCore, Microsoft Edge, Internet Explorer 4.3 -2018-03-14
CVE-2018-0889 Microsoft Internet Explorer 缓冲区错误漏洞 — Microsoft Edge 7.5 -2018-03-14
CVE-2018-0888 Microsoft Hyper-V Network Switch 信息泄露漏洞 — Hyper-V Network SwitchHyper-V Network Switch 5.3 -2018-03-14
CVE-2018-0886 Microsoft Credential Security Support Provider protocol 安全漏洞 — Windows 7.0 -2018-03-14
CVE-2018-0885 Microsoft Hyper-V Network Switch 安全漏洞 — Microsoft Hyper-V Network Switch 5.3 -2018-03-14
CVE-2018-0884 Microsoft Windows Scripting Host 安全漏洞 — Windows Scripting Host 7.3 -2018-03-14
CVE-2018-0883 Microsoft Windows Shell 安全漏洞 — Windows Shell 7.5 -2018-03-14
CVE-2018-0882 Microsoft Desktop Bridge 权限许可和访问控制问题漏洞 — Windows Deskop Bridge 7.0 -2018-03-14
CVE-2018-0813 Microsoft Windows kernel 信息泄露漏洞 — Windows kernel 5.5 -2018-03-14
CVE-2018-0868 Microsoft Windows Installer 权限许可和访问控制问题漏洞 — Windows Installer 7.0 -2018-03-14
CVE-2018-0787 Microsoft ASP.NET Core 权限许可和访问控制漏洞 — ASP.NET Core 8.8 -2018-03-14
CVE-2018-0808 Microsoft ASP.NET Core 安全漏洞 — ASP.NET Core 9.1 -2018-03-14
CVE-2018-0811 Microsoft Windows kernel 信息泄露漏洞 — Windows kernel 5.5 -2018-03-14
CVE-2018-0815 Microsoft Windows Graphics Device Interface 权限许可和访问控制问题漏洞 — Windows 7.8 -2018-03-14
CVE-2018-0817 Microsoft Windows Graphics Device Interface 权限许可和访问控制问题漏洞 — Windows 7.0 -2018-03-14

This page lists every published CVE security advisory associated with Microsoft Corporation. Each entry links to a detailed page with CVSS scoring, CWE classification, affected products and references. AI-generated Chinese analysis is provided for fast triage.