Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1000 CNY

100.0%

Microsoft Corporation — Vulnerabilities & Security Advisories 865

Browse all 865 CVE security advisories affecting Microsoft Corporation. AI-powered Chinese analysis, POCs, and references for each vulnerability.

Microsoft Corporation operates primarily as a technology conglomerate, providing cloud computing services, software licensing, and enterprise hardware. Its extensive software ecosystem, particularly Windows and Azure, makes it a frequent target for cyberattacks, resulting in 865 recorded CVEs. Historically, the company faces significant challenges with remote code execution (RCE) vulnerabilities, often stemming from complex codebases in Office applications and system services. Privilege escalation flaws and cross-site scripting (XSS) issues also appear frequently, reflecting the breadth of its attack surface. Notable security incidents include the SolarWinds supply chain compromise, which impacted Microsoft’s Orion software, and various ransomware attacks exploiting unpatched Exchange Server vulnerabilities. These events highlight the critical importance of rigorous patch management and secure development practices within Microsoft Corporation’s vast infrastructure, underscoring the persistent risks associated with its dominant market position.

CVE IDTitleCVSSSeverityPublished
CVE-2018-0855 Microsoft Embedded OpenType字体引擎信息泄露漏洞 — Windows Embedded OpenType (EOT) font engine 5.5 -2018-02-15
CVE-2018-0856 Microsoft Edge和ChakraCore 缓冲区错误漏洞 — Microsoft Edge, ChakraCore 7.5 -2018-02-15
CVE-2018-0861 Microsoft Edge scripting引擎缓冲区错误漏洞 — Microsoft Edge 7.5 -2018-02-15
CVE-2018-0860 Microsoft Edge和ChakraCore 缓冲区错误漏洞 — Microsoft Edge, ChakraCore 7.5 -2018-02-15
CVE-2018-0859 Microsoft Edge和ChakraCore 缓冲区错误漏洞 — Microsoft Edge, ChakraCore 7.5 -2018-02-15
CVE-2018-0857 Microsoft Edge和ChakraCore 缓冲区错误漏洞 — Microsoft Edge, ChakraCore 7.5 -2018-02-15
CVE-2018-0858 Microsoft ChakraCore 缓冲区错误漏洞 — ChakraCore 7.5 -2018-02-15
CVE-2018-0845 Microsoft Office Equation Editor 缓冲区错误漏洞 — Equation Editor 8.8 -2018-01-22
CVE-2018-0848 Microsoft Office Equation Editor 缓冲区错误漏洞 — Equation Editor 8.8 -2018-01-22
CVE-2018-0849 Microsoft Office Equation Editor 缓冲区错误漏洞 — Equation Editor 8.8 -2018-01-22
CVE-2018-0862 Microsoft Office Equation Editor 缓冲区错误漏洞 — Equation Editor 8.8 -2018-01-22
CVE-2018-0764 Microsoft .NET Framework和.NET Core 安全漏洞 — .NET Framework and .NET Core 7.5 -2018-01-10
CVE-2018-0784 Microsoft ASP.NET Core 权限许可和访问控制问题漏洞 — ASP.NET Core 8.8 -2018-01-10
CVE-2018-0785 Microsoft ASP.NET Core 跨站请求伪造漏洞 — ASP.NET Core 8.8 -2018-01-10
CVE-2018-0786 Microsoft .NET Framework和.NET Core 安全漏洞 — .NET Framework, .NET Core, and PowerShell Core 7.5 -2018-01-10
CVE-2018-0789 Microsoft SharePoint Foundation和SharePoint Server 权限许可和访问控制问题漏洞 — Microsoft SharePoint Server 8.8 -2018-01-10
CVE-2018-0790 Microsoft SharePoint Foundation和SharePoint Server 权限许可和访问控制问题漏洞 — Microsoft SharePoint 8.8 -2018-01-10
CVE-2018-0791 Microsoft Outlook 安全漏洞 — Microsoft Outlook 7.8 -2018-01-10
CVE-2018-0792 Microsoft Office Word 缓冲区错误漏洞 — Microsoft Word 8.8 -2018-01-10
CVE-2018-0793 Microsoft Outlook 安全漏洞 — Microsoft Outlook 7.8 -2018-01-10
CVE-2018-0795 Microsoft Office 缓冲区错误漏洞 — Microsoft Office 8.8 -2018-01-10
CVE-2018-0819 Microsoft Office 2016 for Mac 安全漏洞 — Microsoft Office 2016 for Mac 6.5 -2018-01-10
CVE-2018-0818 Microsoft ChakraCore scripting引擎安全漏洞 — ChakraCore 8.8 -2018-01-10
CVE-2018-0812 Microsoft Office Equation Editor 缓冲区错误漏洞 — Equation Editor 8.8 -2018-01-10
CVE-2018-0807 Microsoft Office Equation Editor 缓冲区错误漏洞 — Equation Editor 8.8 -2018-01-10
CVE-2018-0806 Microsoft Office Equation Editor 缓冲区错误漏洞 — Equation Editor 8.8 -2018-01-10
CVE-2018-0805 Microsoft Office Equation Editor 缓冲区错误漏洞 — Equation Editor 8.8 -2018-01-10
CVE-2018-0804 Microsoft Office Equation Editor 缓冲区错误漏洞 — Equation Editor 8.8 -2018-01-10
CVE-2018-0802 Microsoft Office 缓冲区错误漏洞 — Equation Editor 7.8 -2018-01-10
CVE-2018-0796 Microsoft Office Excel 缓冲区错误漏洞 — Microsoft Excel 8.8 -2018-01-10

This page lists every published CVE security advisory associated with Microsoft Corporation. Each entry links to a detailed page with CVSS scoring, CWE classification, affected products and references. AI-generated Chinese analysis is provided for fast triage.