Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1000 CNY

100.0%

microsoft — Vulnerabilities & Security Advisories 8284

Browse all 8284 CVE security advisories affecting microsoft. AI-powered Chinese analysis, POCs, and references for each vulnerability.

Microsoft operates as a global technology corporation primarily providing enterprise software, cloud computing services, and consumer electronics. Its extensive software portfolio, including Windows operating systems and Office suites, has historically been associated with a high volume of Common Vulnerabilities and Exposures (CVEs), currently totaling 8,272. Common vulnerability classes affecting these products include remote code execution, cross-site scripting, and privilege escalation, often stemming from complex legacy codebases and extensive feature sets. Notable security incidents include the 2021 SolarWinds supply chain compromise, which impacted Microsoft’s Orion platform, and various critical zero-day exploits in Internet Explorer and Edge browsers. The company maintains a dedicated security response team and regularly issues patches through Windows Update to mitigate these risks, though the sheer scale of its ecosystem continues to present significant attack surfaces for threat actors seeking unauthorized access or data exfiltration.

CVE IDTitleCVSSSeverityPublished
CVE-2019-0588 Microsoft Exchange Server 信息泄露漏洞 — Microsoft Exchange Server 6.5 -2019-01-08
CVE-2019-0622 Microsoft Skype for Andriod 授权问题漏洞 — Skype 4.6 -2019-01-08
CVE-2018-8653 Microsoft Internet Explorer 脚本引擎缓冲区错误漏洞 — Internet Explorer 9 7.5 -2018-12-20
CVE-2018-8650 Microsoft SharePoint Enterprise Server 2016 跨站脚本漏洞 — Microsoft SharePoint 5.4 -2018-12-12
CVE-2018-8477 Microsoft Windows内核信息泄露漏洞 — Windows 7 5.5 -2018-12-12
CVE-2018-8514 Microsoft Windows 信息泄露漏洞 — Windows 7 4.7 -2018-12-12
CVE-2018-8517 Microsoft .NET Framework 输入验证错误漏洞 — Microsoft .NET Framework 7.5 -2018-12-12
CVE-2018-8540 Microsoft .NET Framework 代码注入漏洞 — Microsoft .NET Framework 8.1 -2018-12-12
CVE-2018-8580 Microsoft SharePoint Server 信息泄露漏洞 — Microsoft SharePoint 6.5 -2018-12-12
CVE-2018-8583 Microsoft Edge和ChakraCore 缓冲区错误漏洞 — Microsoft Edge 7.5 -2018-12-12
CVE-2018-8587 Microsoft Outlook 缓冲区错误漏洞 — Microsoft Office 7.8 -2018-12-12
CVE-2018-8595 Microsoft Windows GDI组件信息泄露漏洞 — Windows 7 6.5 -2018-12-12
CVE-2018-8596 Microsoft Windows GDI组件信息泄露漏洞 — Windows 7 6.5 -2018-12-12
CVE-2018-8597 Microsoft Excel 缓冲区错误漏洞 — Microsoft Office 7.8 -2018-12-12
CVE-2018-8598 Microsoft Excel 信息泄露漏洞 — Microsoft Office 5.5 -2018-12-12
CVE-2018-8599 Microsoft Diagnostics Hub Standard Collector Service 权限许可和访问控制问题漏洞 — Microsoft Visual Studio 7.8 -2018-12-12
CVE-2018-8604 Microsoft Exchange Server 安全漏洞 — Microsoft Exchange Server 5.3 -2018-12-12
CVE-2018-8611 Microsoft Windows内核权限许可和访问控制问题漏洞 — Windows 7 7.8 -2018-12-12
CVE-2018-8612 Microsoft Connected User Experiences and Telemetry Service 安全漏洞 — Windows Server 2016 6.5 -2018-12-12
CVE-2018-8617 Microsoft Edge和ChakraCore 缓冲区错误漏洞 — Microsoft Edge 7.5 -2018-12-12
CVE-2018-8618 Microsoft Edge和ChakraCore 缓冲区错误漏洞 — Microsoft Edge 7.5 -2018-12-12
CVE-2018-8619 Microsoft Internet Explorer 缓冲区错误漏洞 — Internet Explorer 9 7.5 -2018-12-12
CVE-2018-8621 Microsoft Windows内核信息泄露漏洞 — Windows Server 2012 4.7 -2018-12-12
CVE-2018-8622 Microsoft Windows内核信息泄露漏洞 — Windows 7 5.5 -2018-12-12
CVE-2018-8624 Microsoft Edge和ChakraCore 缓冲区错误漏洞 — Microsoft Edge 7.5 -2018-12-12
CVE-2018-8625 Microsoft Internet Explorer VBScript引擎资源管理错误漏洞 — Internet Explorer 9 7.5 -2018-12-12
CVE-2018-8626 Microsoft Windows Domain Name System服务器缓冲区错误漏洞 — Windows Server 2012 R2 9.8 -2018-12-12
CVE-2018-8627 Microsoft Excel 信息泄露漏洞 — Microsoft Office 5.5 -2018-12-12
CVE-2018-8628 Microsoft PowerPoint 缓冲区错误漏洞 — Microsoft Office 7.8 -2018-12-12
CVE-2018-8629 Microsoft Edge和ChakraCore 缓冲区错误漏洞 — Microsoft Edge 7.5 -2018-12-12

This page lists every published CVE security advisory associated with microsoft. Each entry links to a detailed page with CVSS scoring, CWE classification, affected products and references. AI-generated Chinese analysis is provided for fast triage.