Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1325 CNY

100%

Microsoft — Vulnerabilities & Security Advisories 8663

Browse all 8663 CVE security advisories affecting Microsoft. AI-powered Chinese analysis, POCs, and references for each vulnerability.

Microsoft operates as a global technology corporation primarily providing enterprise software, cloud computing services, and consumer electronics. Its extensive software portfolio, including Windows operating systems and Office suites, has historically been associated with a high volume of Common Vulnerabilities and Exposures (CVEs), currently totaling 8,272. Common vulnerability classes affecting these products include remote code execution, cross-site scripting, and privilege escalation, often stemming from complex legacy codebases and extensive feature sets. Notable security incidents include the 2021 SolarWinds supply chain compromise, which impacted Microsoft’s Orion platform, and various critical zero-day exploits in Internet Explorer and Edge browsers. The company maintains a dedicated security response team and regularly issues patches through Windows Update to mitigate these risks, though the sheer scale of its ecosystem continues to present significant attack surfaces for threat actors seeking unauthorized access or data exfiltration.

CVE IDTitleCVSSSeverityPublished
CVE-2023-36801 DHCP Server Service Information Disclosure Vulnerability — Windows Server 2019CWE-126 5.3 Medium2023-09-12
CVE-2023-36767 Microsoft Office Security Feature Bypass Vulnerability — Microsoft Office 2019CWE-20 4.3 Medium2023-09-12
CVE-2023-36803 Windows Kernel Information Disclosure Vulnerability — Windows 10 Version 1809CWE-126 5.5 Medium2023-09-12
CVE-2023-36802 Microsoft Streaming Service Proxy Elevation of Privilege Vulnerability — Windows 10 Version 1809CWE-416 7.8 High2023-09-12
CVE-2023-36805 Windows MSHTML Platform Security Feature Bypass Vulnerability — Windows 10 Version 1809CWE-77 7.0 High2023-09-12
CVE-2023-36804 Windows GDI Elevation of Privilege Vulnerability — Windows 10 Version 1809CWE-416 7.8 High2023-09-12
CVE-2023-38139 Windows Kernel Elevation of Privilege Vulnerability — Windows 10 Version 1809CWE-416 7.8 High2023-09-12
CVE-2023-38141 Windows Kernel Elevation of Privilege Vulnerability — Windows 10 Version 1809CWE-367 7.8 High2023-09-12
CVE-2023-38140 Windows Kernel Information Disclosure Vulnerability — Windows 10 Version 1809CWE-908 5.5 Medium2023-09-12
CVE-2023-38143 Windows Common Log File System Driver Elevation of Privilege Vulnerability — Windows 10 Version 1809CWE-122 7.8 High2023-09-12
CVE-2023-38142 Windows Kernel Elevation of Privilege Vulnerability — Windows 10 Version 1809CWE-190 7.8 High2023-09-12
CVE-2023-38146 Windows Themes Remote Code Execution Vulnerability — Windows 11 version 21H2CWE-367 8.8 High2023-09-12
CVE-2023-38144 Windows Common Log File System Driver Elevation of Privilege Vulnerability — Windows 10 Version 1809CWE-126 7.8 High2023-09-12
CVE-2023-38148 Internet Connection Sharing (ICS) Remote Code Execution Vulnerability — Windows Server 2022CWE-121 8.8 High2023-09-12
CVE-2023-38147 Windows Miracast Wireless Display Remote Code Execution Vulnerability — Windows 10 Version 1809CWE-122 8.8 High2023-09-12
CVE-2023-38150 Windows Kernel Elevation of Privilege Vulnerability — Windows 11 version 21H2CWE-190 7.8 High2023-09-12
CVE-2023-38149 Windows TCP/IP Denial of Service Vulnerability — Windows 10 Version 1809CWE-400 7.5 High2023-09-12
CVE-2023-38156 Azure HDInsight Apache Ambari JDBC Injection Elevation of Privilege Vulnerability — Azure HDInsightCWE-20 7.2 High2023-09-12
CVE-2023-38152 DHCP Server Service Information Disclosure Vulnerability — Windows Server 2019CWE-126 5.3 Medium2023-09-12
CVE-2023-38162 DHCP Server Service Denial of Service Vulnerability — Windows Server 2019CWE-191 7.5 High2023-09-12
CVE-2023-38161 Windows GDI Elevation of Privilege Vulnerability — Windows 10 Version 1809CWE-416 7.8 High2023-09-12
CVE-2023-35355 Windows Cloud Files Mini Filter Driver Elevation of Privilege Vulnerability — Windows 10 Version 1809CWE-121 7.8 High2023-09-12
CVE-2023-36741 Microsoft Edge (Chromium-based) Elevation of Privilege Vulnerability — Microsoft Edge (Chromium-based)CWE-416 8.3 High2023-08-26
CVE-2023-36787 Microsoft Edge (Chromium-based) Elevation of Privilege Vulnerability — Microsoft Edge (Chromium-based)CWE-416 8.8 High2023-08-21
CVE-2023-38158 Microsoft Edge (Chromium-based) Information Disclosure Vulnerability — Microsoft Edge (Chromium-based) 3.1 Low2023-08-21
CVE-2023-38180 .NET and Visual Studio Denial of Service Vulnerability — ASP.NET Core 2.1 7.5 High2023-08-08
CVE-2023-35391 ASP.NET Core SignalR and Visual Studio Information Disclosure Vulnerability — Microsoft Visual Studio 2022 version 17.2 6.2 Medium2023-08-08
CVE-2023-36899 ASP.NET Elevation of Privilege Vulnerability — Microsoft .NET Framework 4.8CWE-20 8.8 High2023-08-08
CVE-2023-36873 .NET Framework Spoofing Vulnerability — Microsoft .NET Framework 4.8CWE-20 7.4 High2023-08-08
CVE-2023-38176 Azure Arc-Enabled Servers Elevation of Privilege Vulnerability — Azure Arc-Enabled ServersCWE-22 7.0 High2023-08-08

This page lists every published CVE security advisory associated with Microsoft. Each entry links to a detailed page with CVSS scoring, CWE classification, affected products and references. AI-generated Chinese analysis is provided for fast triage.