Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1000 CNY

100.0%

microsoft — Vulnerabilities & Security Advisories 8415

Browse all 8415 CVE security advisories affecting microsoft. AI-powered Chinese analysis, POCs, and references for each vulnerability.

Microsoft operates as a global technology corporation primarily providing enterprise software, cloud computing services, and consumer electronics. Its extensive software portfolio, including Windows operating systems and Office suites, has historically been associated with a high volume of Common Vulnerabilities and Exposures (CVEs), currently totaling 8,272. Common vulnerability classes affecting these products include remote code execution, cross-site scripting, and privilege escalation, often stemming from complex legacy codebases and extensive feature sets. Notable security incidents include the 2021 SolarWinds supply chain compromise, which impacted Microsoft’s Orion platform, and various critical zero-day exploits in Internet Explorer and Edge browsers. The company maintains a dedicated security response team and regularly issues patches through Windows Update to mitigate these risks, though the sheer scale of its ecosystem continues to present significant attack surfaces for threat actors seeking unauthorized access or data exfiltration.

CVE IDTitleCVSSSeverityPublished
CVE-2024-26158 Microsoft Install Service Elevation of Privilege Vulnerability — Windows 10 Version 1809CWE-59 7.8 High2024-04-09
CVE-2024-26232 Microsoft Message Queuing (MSMQ) Remote Code Execution Vulnerability — Windows 10 Version 1809CWE-843 7.3 High2024-04-09
CVE-2024-26200 Windows Routing and Remote Access Service (RRAS) Remote Code Execution Vulnerability — Windows 10 Version 1809CWE-122 8.8 High2024-04-09
CVE-2024-26205 Windows Routing and Remote Access Service (RRAS) Remote Code Execution Vulnerability — Windows 10 Version 1809CWE-122 8.8 High2024-04-09
CVE-2024-26172 Windows DWM Core Library Information Disclosure Vulnerability — Windows 10 Version 1809CWE-125 5.5 Medium2024-04-09
CVE-2024-26179 Windows Routing and Remote Access Service (RRAS) Remote Code Execution Vulnerability — Windows 10 Version 1809CWE-122 8.8 High2024-04-09
CVE-2024-26255 Windows Remote Access Connection Manager Information Disclosure Vulnerability — Windows 10 Version 1809CWE-126 5.5 Medium2024-04-09
CVE-2024-26256 Libarchive Remote Code Execution Vulnerability — Windows 11 version 22H2CWE-122 7.8 High2024-04-09
CVE-2024-26254 Microsoft Virtual Machine Bus (VMBus) Denial of Service Vulnerability — Windows 10 Version 1809CWE-822 7.5 High2024-04-09
CVE-2024-26252 Windows rndismp6.sys Remote Code Execution Vulnerability — Windows 10 Version 1809CWE-822 6.8 Medium2024-04-09
CVE-2024-26253 Windows rndismp6.sys Remote Code Execution Vulnerability — Windows 10 Version 1809CWE-20 6.8 Medium2024-04-09
CVE-2024-21424 Azure Compute Gallery Elevation of Privilege Vulnerability — Azure Compute GalleryCWE-284 6.5 Medium2024-04-09
CVE-2024-26250 Secure Boot Security Feature Bypass Vulnerability — Windows 10 Version 1809CWE-693 6.7 Medium2024-04-09
CVE-2024-21409 .NET, .NET Framework, and Visual Studio Remote Code Execution Vulnerability — Microsoft Visual Studio 2022 version 17.9CWE-416 7.3 High2024-04-09
CVE-2024-20689 Secure Boot Security Feature Bypass Vulnerability — Windows Server 2012CWE-121 7.1 High2024-04-09
CVE-2024-20688 Secure Boot Security Feature Bypass Vulnerability — Windows Server 2012CWE-121 7.1 High2024-04-09
CVE-2024-20669 Secure Boot Security Feature Bypass Vulnerability — Windows 10 Version 1809CWE-693 6.7 Medium2024-04-09
CVE-2024-29049 Microsoft Edge (Chromium-based) Webview2 Spoofing Vulnerability — Microsoft Edge (Chromium-based) Extended StableCWE-79 4.1 Medium2024-04-04
CVE-2024-29981 Microsoft Edge (Chromium-based) Spoofing Vulnerability — Microsoft Edge (Chromium-based)CWE-1021 4.3 Medium2024-04-04
CVE-2024-29059 .NET Framework Information Disclosure Vulnerability — Microsoft .NET Framework 4.8CWE-209 7.5 High2024-03-22
CVE-2024-29057 Microsoft Edge (Chromium-based) Spoofing Vulnerability — Microsoft Edge (Chromium-based)CWE-357 4.3 Medium2024-03-22
CVE-2024-26247 Microsoft Edge (Chromium-based) Security Feature Bypass Vulnerability — Microsoft Edge (Chromium-based)CWE-269 4.7 Medium2024-03-22
CVE-2024-28916 Xbox Gaming Services Elevation of Privilege Vulnerability — Xbox Gaming ServicesCWE-59 8.8 High2024-03-20
CVE-2024-26246 Microsoft Edge (Chromium-based) Security Feature Bypass Vulnerability — Microsoft Edge for AndroidCWE-1220 3.9 Low2024-03-14
CVE-2024-26163 Microsoft Edge (Chromium-based) Security Feature Bypass Vulnerability — Microsoft Edge (Chromium-based)CWE-693 4.7 Medium2024-03-14
CVE-2024-26165 Visual Studio Code Elevation of Privilege Vulnerability — Visual Studio CodeCWE-256 8.8 High2024-03-12
CVE-2024-26185 Windows Compressed Folder Tampering Vulnerability — Windows 11 version 22H2CWE-73 6.5 Medium2024-03-12
CVE-2024-26204 Outlook for Android Information Disclosure Vulnerability — Microsoft Outlook for AndroidCWE-77 7.5 High2024-03-12
CVE-2024-26181 Windows Kernel Denial of Service Vulnerability — Windows 10 Version 1809CWE-20 5.5 Medium2024-03-12
CVE-2024-26182 Windows Kernel Elevation of Privilege Vulnerability — Windows 10 Version 1809CWE-416 7.8 High2024-03-12

This page lists every published CVE security advisory associated with microsoft. Each entry links to a detailed page with CVSS scoring, CWE classification, affected products and references. AI-generated Chinese analysis is provided for fast triage.