Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1325 CNY

100%

Microsoft — Vulnerabilities & Security Advisories 8663

Browse all 8663 CVE security advisories affecting Microsoft. AI-powered Chinese analysis, POCs, and references for each vulnerability.

Microsoft operates as a global technology corporation primarily providing enterprise software, cloud computing services, and consumer electronics. Its extensive software portfolio, including Windows operating systems and Office suites, has historically been associated with a high volume of Common Vulnerabilities and Exposures (CVEs), currently totaling 8,272. Common vulnerability classes affecting these products include remote code execution, cross-site scripting, and privilege escalation, often stemming from complex legacy codebases and extensive feature sets. Notable security incidents include the 2021 SolarWinds supply chain compromise, which impacted Microsoft’s Orion platform, and various critical zero-day exploits in Internet Explorer and Edge browsers. The company maintains a dedicated security response team and regularly issues patches through Windows Update to mitigate these risks, though the sheer scale of its ecosystem continues to present significant attack surfaces for threat actors seeking unauthorized access or data exfiltration.

CVE IDTitleCVSSSeverityPublished
CVE-2023-24928 Microsoft PostScript and PCL6 Class Printer Driver Remote Code Execution Vulnerability — Windows 10 Version 1809CWE-122 8.8 High2023-04-11
CVE-2023-24886 Microsoft PostScript and PCL6 Class Printer Driver Remote Code Execution Vulnerability — Windows 10 Version 1809CWE-908 8.8 High2023-04-11
CVE-2023-24885 Microsoft PostScript and PCL6 Class Printer Driver Remote Code Execution Vulnerability — Windows 10 Version 1809CWE-843 8.8 High2023-04-11
CVE-2023-24927 Microsoft PostScript and PCL6 Class Printer Driver Remote Code Execution Vulnerability — Windows 10 Version 1809CWE-843 8.8 High2023-04-11
CVE-2023-24884 Microsoft PostScript and PCL6 Class Printer Driver Remote Code Execution Vulnerability — Windows 10 Version 1809CWE-681 8.8 High2023-04-11
CVE-2023-24926 Microsoft PostScript and PCL6 Class Printer Driver Remote Code Execution Vulnerability — Windows 10 Version 1809CWE-122 8.8 High2023-04-11
CVE-2023-24883 Microsoft PostScript and PCL6 Class Printer Driver Information Disclosure Vulnerability — Windows 10 Version 1809CWE-126 6.5 Medium2023-04-11
CVE-2023-24925 Microsoft PostScript and PCL6 Class Printer Driver Remote Code Execution Vulnerability — Windows 10 Version 1809CWE-416 8.8 High2023-04-11
CVE-2023-24912 Windows Graphics Component Elevation of Privilege Vulnerability — Windows 10 Version 1809CWE-122 7.8 High2023-04-11
CVE-2023-24924 Microsoft PostScript and PCL6 Class Printer Driver Remote Code Execution Vulnerability — Windows 10 Version 1809CWE-125 8.8 High2023-04-11
CVE-2023-23375 Microsoft ODBC and OLE DB Remote Code Execution Vulnerability — Microsoft OLE DB Driver 18 for SQL ServerCWE-20 7.8 High2023-04-11
CVE-2023-24860 Microsoft Defender Denial of Service Vulnerability — Microsoft Malware Protection Engine 7.5 High2023-04-11
CVE-2023-21554 Microsoft Message Queuing (MSMQ) Remote Code Execution Vulnerability — Windows 10 Version 1809CWE-20 9.8 Critical2023-04-11
CVE-2023-24893 Visual Studio Code Remote Code Execution Vulnerability — Visual Studio CodeCWE-20 7.8 High2023-04-11
CVE-2023-28313 Microsoft Dynamics 365 Customer Voice Cross-Site Scripting Vulnerability — Send Customer Voice survey from Dynamics 365CWE-79 6.1 Medium2023-04-11
CVE-2023-28314 Microsoft Dynamics 365 (on-premises) Cross-site Scripting Vulnerability — Microsoft Dynamics 365 (on-premises) version 9.0CWE-79 6.1 Medium2023-04-11
CVE-2023-28305 Windows DNS Server Remote Code Execution Vulnerability — Windows Server 2019CWE-416 6.6 Medium2023-04-11
CVE-2023-28309 Microsoft Dynamics 365 (on-premises) Cross-site Scripting Vulnerability — Microsoft Dynamics 365 (on-premises) version 9.0CWE-79 7.6 High2023-04-11
CVE-2023-28298 Windows Kernel Denial of Service Vulnerability — Windows 10 Version 1809 5.5 Medium2023-04-11
CVE-2023-28300 Azure Service Connector Security Feature Bypass Vulnerability — Azure Service ConnectorCWE-284 7.5 High2023-04-11
CVE-2023-28297 Windows Remote Procedure Call Service (RPCSS) Elevation of Privilege Vulnerability — Windows 10 Version 1809CWE-416 8.8 High2023-04-11
CVE-2023-28291 Raw Image Extension Remote Code Execution Vulnerability — Raw Image ExtensionCWE-20 8.4 High2023-04-11
CVE-2023-28292 Raw Image Extension Remote Code Execution Vulnerability — Raw Image ExtensionCWE-122 7.8 High2023-04-11
CVE-2023-28288 Microsoft SharePoint Server Spoofing Vulnerability — Microsoft SharePoint Enterprise Server 2016CWE-918 8.1 High2023-04-11
CVE-2023-28285 Microsoft Office Remote Code Execution Vulnerability — Microsoft Office 2019 for MacCWE-416 7.8 High2023-04-11
CVE-2023-28221 Windows Error Reporting Service Elevation of Privilege Vulnerability — Windows 10 Version 1809CWE-200 7.0 High2023-04-11
CVE-2023-28222 Windows Kernel Elevation of Privilege Vulnerability — Windows 10 Version 1809CWE-59 7.1 High2023-04-11
CVE-2023-28217 Windows Network Address Translation (NAT) Denial of Service Vulnerability — Windows 10 Version 1809CWE-400 7.5 High2023-04-11
CVE-2023-28218 Windows Ancillary Function Driver for WinSock Elevation of Privilege Vulnerability — Windows 10 Version 1809CWE-122 7.0 High2023-04-11
CVE-2023-28216 Windows Advanced Local Procedure Call (ALPC) Elevation of Privilege Vulnerability — Windows 10 Version 1809 7.0 High2023-04-11

This page lists every published CVE security advisory associated with Microsoft. Each entry links to a detailed page with CVSS scoring, CWE classification, affected products and references. AI-generated Chinese analysis is provided for fast triage.