Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1020 CNY

100%

Microsoft Corporation — Vulnerabilities & Security Advisories 865

Browse all 865 CVE security advisories affecting Microsoft Corporation. AI-powered Chinese analysis, POCs, and references for each vulnerability.

Microsoft Corporation operates primarily as a technology conglomerate, providing cloud computing services, software licensing, and enterprise hardware. Its extensive software ecosystem, particularly Windows and Azure, makes it a frequent target for cyberattacks, resulting in 865 recorded CVEs. Historically, the company faces significant challenges with remote code execution (RCE) vulnerabilities, often stemming from complex codebases in Office applications and system services. Privilege escalation flaws and cross-site scripting (XSS) issues also appear frequently, reflecting the breadth of its attack surface. Notable security incidents include the SolarWinds supply chain compromise, which impacted Microsoft’s Orion software, and various ransomware attacks exploiting unpatched Exchange Server vulnerabilities. These events highlight the critical importance of rigorous patch management and secure development practices within Microsoft Corporation’s vast infrastructure, underscoring the persistent risks associated with its dominant market position.

CVE IDTitleCVSSSeverityPublished
CVE-2017-0021 Microsoft Windows 安全漏洞 — Hyper-V vSMB 8.0 -2017-03-17
CVE-2017-0022 Microsoft Windows Microsoft XML Core Services 信息泄露漏洞 — XML Core Services 4.3 -2017-03-17
CVE-2017-0023 多款Microsoft产品PDF 缓冲区错误漏洞 — PDF 7.5 -2017-03-17
CVE-2017-0024 Microsoft Windows Win32k 权限许可和访问控制问题漏洞 — Win32k 7.8 -2017-03-17
CVE-2017-0025 Microsoft Windows GDI 权限许可和访问控制问题漏洞 — Windows GDI 7.8 -2017-03-17
CVE-2017-0026 Microsoft Windows Win32k 权限许可和访问控制问题漏洞 — Win32k 7.8 -2017-03-17
CVE-2017-0027 Microsoft Office 信息泄露漏洞 — Office 5.5 -2017-03-17
CVE-2017-0029 Microsoft Office 安全漏洞 — Office 5.5 -2017-03-17
CVE-2017-0030 Microsoft Office 缓冲区错误漏洞 — Office 7.8 -2017-03-17
CVE-2017-0031 Microsoft Office 缓冲区错误漏洞 — Office 7.8 -2017-03-17
CVE-2017-0032 Microsoft Edge Scripting Engine 安全漏洞 — Browser 7.5 -2017-03-17
CVE-2017-0033 Microsoft Internet Explorer和Edge 输入验证漏洞 — Browser 3.1 -2017-03-17
CVE-2017-0034 Microsoft Edge 缓冲区错误漏洞 — Edge 7.5 -2017-03-17
CVE-2017-0035 Microsoft Edge Scripting Engine 安全漏洞 — Browser 7.5 -2017-03-17
CVE-2017-0039 Microsoft Windows Vista SP2和Server 2008 SP2 DLL加载权限许可和访问控制问题漏洞 — Windows DLL 7.8 -2017-03-17
CVE-2017-0040 Microsoft Internet Explorer Scripting Engine组件安全漏洞 — Internet Explorer 7.5 -2017-03-17
CVE-2017-0042 Microsoft Windows DirectShow 信息泄露漏洞 — Windows DirectShow 3.1 -2017-03-17
CVE-2017-0043 Microsoft Windows Active Directory Federation Services 信息泄露漏洞 — Active Directory Federation Services 2.9 -2017-03-17
CVE-2017-0045 Microsoft Windows DVD Maker 跨站请求伪造漏洞 — Windows DVD Maker 7.1 -2017-03-17
CVE-2017-0047 Microsoft Windows Graphics Device Interface 权限许可和访问控制问题漏洞 — Windows GDI 7.0 -2017-03-17
CVE-2017-0049 Microsoft Internet Explorer脚本引擎信息泄露漏洞 — Internet Explorer 4.3 -2017-03-17
CVE-2017-0050 Microsoft Windows Kernel 权限许可和访问控制问题漏洞 — Windows Kernel 7.8 -2017-03-17
CVE-2017-0051 Microsoft Windows Hyper-V Network Switch 安全漏洞 — Hyper-V Network Switch 5.8 -2017-03-17
CVE-2017-0052 Microsoft Office 安全漏洞 — Office 7.8 -2017-03-17
CVE-2017-0053 Microsoft Office 安全漏洞 — Office 7.8 -2017-03-17
CVE-2017-0055 Microsoft Windows Internet Information Server 跨站脚本漏洞 — IIS Server 6.1 -2017-03-17
CVE-2017-0056 Microsoft Windows Win32k 权限许可和访问控制问题漏洞 — Win32k 7.8 -2017-03-17
CVE-2017-0057 Microsoft Windows DNS Query 信息泄露漏洞 — Windows dnsclient 6.5 -2017-03-17
CVE-2017-0059 Microsoft Internet Explorer 信息泄露漏洞 — Internet Explorer 4.3 -2017-03-17
CVE-2017-0060 Microsoft Windows GDI+ 信息泄露漏洞 — Windows GDI+ 5.5 -2017-03-17

This page lists every published CVE security advisory associated with Microsoft Corporation. Each entry links to a detailed page with CVSS scoring, CWE classification, affected products and references. AI-generated Chinese analysis is provided for fast triage.