Skip to main content

Over 150 LLM Providers · Over 5,300 Models The most extensible AI-powered pentesting platform. Open source. Star on GitHub

Microsoft

91,472 known vulnerabilities

1,058
CRITICAL
11,903
HIGH
5,674
MEDIUM
354
LOW

Top Products

windows 8173 windows server 2016 5644 windows server 2019 5279 windows server 2012 4134 windows 10 3588 windows server 2022 3387 windows server 2008 3078 windows 10 1809 2579 windows 10 21h2 2553 windows 10 22h2 2550
18,990 CVEs · Page 111/380
6.6
CVE-2024-49081

Wireless Wide Area Network Service (WwanSvc) Elevation of Privilege Vulnerability

8.8
CVE-2024-49080

Windows IP Routing Management Snapin Remote Code Execution Vulnerability

7.8
CVE-2024-49079

Input Method Editor (IME) Remote Code Execution Vulnerability

6.8
CVE-2024-49078

Windows Mobile Broadband Driver Elevation of Privilege Vulnerability

6.8
CVE-2024-49077

Windows Mobile Broadband Driver Elevation of Privilege Vulnerability

7.8
CVE-2024-49076

Windows Virtualization-Based Security (VBS) Enclave Elevation of Privilege Vulnerability

7.5
CVE-2024-49075

Windows Remote Desktop Services Denial of Service Vulnerability

7.8
CVE-2024-49074

Windows Kernel-Mode Driver Elevation of Privilege Vulnerability

6.8
CVE-2024-49073

Windows Mobile Broadband Driver Elevation of Privilege Vulnerability

7.8
CVE-2024-49072

Windows Task Scheduler Elevation of Privilege Vulnerability

7.4
CVE-2024-49070

Microsoft SharePoint Remote Code Execution Vulnerability

7.8
CVE-2024-49069

Microsoft Excel Remote Code Execution Vulnerability

8.2
CVE-2024-49068

Microsoft SharePoint Elevation of Privilege Vulnerability

5.5
CVE-2024-49065

Microsoft Office Remote Code Execution Vulnerability

6.5
CVE-2024-49064

Microsoft SharePoint Information Disclosure Vulnerability

8.4
CVE-2024-49063

Microsoft/Muzic Remote Code Execution Vulnerability

6.5
CVE-2024-49062

Microsoft SharePoint Information Disclosure Vulnerability

7.0
CVE-2024-49059

Microsoft Office Elevation of Privilege Vulnerability

8.1
CVE-2024-49057

Microsoft Defender for Endpoint on Android Spoofing Vulnerability

7.8
CVE-2024-43600

Microsoft Office Elevation of Privilege Vulnerability

7.3
CVE-2024-43594

Microsoft System Center Elevation of Privilege Vulnerability

3.1
CVE-2023-23472

IBM InfoSphere DataStage Flow Designer (InfoSphere Information Server 11.7) could allow an authenticated user to obtain

6.3
CVE-2024-52537

Dell Client Platform Firmware Update Utility contains an Improper Link Resolution vulnerability. A high privileged attac

4.4
CVE-2024-35117

IBM OpenPages with Watson 9.0 may write sensitive information, under specific configurations, in clear text to the syste

7.8
CVE-2024-53959

Adobe Framemaker versions 2020.7, 2022.5 and earlier are affected by a Stack-based Buffer Overflow vulnerability that co

7.8
CVE-2024-53956

Premiere Pro versions 25.0, 24.6.3 and earlier are affected by a Heap-based Buffer Overflow vulnerability that could res

7.8
CVE-2024-53955

Bridge versions 14.1.3, 15.0 and earlier are affected by an Integer Underflow (Wrap or Wraparound) vulnerability that co

7.8
CVE-2024-53954

Animate versions 23.0.8, 24.0.5 and earlier are affected by an Integer Underflow (Wrap or Wraparound) vulnerability that

7.8
CVE-2024-53953

Animate versions 23.0.8, 24.0.5 and earlier are affected by a Use After Free vulnerability that could result in arbitrar

5.5
CVE-2024-53952

InDesign Desktop versions ID19.5, ID18.5.4 and earlier are affected by a NULL Pointer Dereference vulnerability that cou

5.5
CVE-2024-53951

InDesign Desktop versions ID19.5, ID18.5.4 and earlier are affected by an out-of-bounds read vulnerability that could le

7.8
CVE-2024-52997

Photoshop Desktop versions 26.0 and earlier are affected by a Use After Free vulnerability that could result in arbitrar

7.8
CVE-2024-52990

Animate versions 23.0.8, 24.0.5 and earlier are affected by a Buffer Underwrite ('Buffer Underflow') vulnerability that

7.8
CVE-2024-52989

Animate versions 23.0.8, 24.0.5 and earlier are affected by an Integer Underflow (Wrap or Wraparound) vulnerability that

7.8
CVE-2024-52988

Animate versions 23.0.8, 24.0.5 and earlier are affected by an out-of-bounds write vulnerability that could result in ar

7.8
CVE-2024-52987

Animate versions 23.0.8, 24.0.5 and earlier are affected by an Integer Underflow (Wrap or Wraparound) vulnerability that

7.8
CVE-2024-52986

Animate versions 23.0.8, 24.0.5 and earlier are affected by an Integer Underflow (Wrap or Wraparound) vulnerability that

7.8
CVE-2024-52985

Animate versions 23.0.8, 24.0.5 and earlier are affected by an Integer Underflow (Wrap or Wraparound) vulnerability that

7.8
CVE-2024-52984

Animate versions 23.0.8, 24.0.5 and earlier are affected by an Integer Underflow (Wrap or Wraparound) vulnerability that

7.8
CVE-2024-52983

Animate versions 23.0.8, 24.0.5 and earlier are affected by an Integer Overflow or Wraparound vulnerability that could r

7.8
CVE-2024-52982

Animate versions 23.0.8, 24.0.5 and earlier are affected by an Improper Input Validation vulnerability that could result

5.5
CVE-2024-49549

InDesign Desktop versions ID19.5, ID18.5.4 and earlier are affected by an out-of-bounds read vulnerability that could le

5.5
CVE-2024-49548

InDesign Desktop versions ID19.5, ID18.5.4 and earlier are affected by an out-of-bounds read vulnerability that could le

5.5
CVE-2024-49547

InDesign Desktop versions ID19.5, ID18.5.4 and earlier are affected by an out-of-bounds read vulnerability that could le

5.5
CVE-2024-49546

InDesign Desktop versions ID19.5, ID18.5.4 and earlier are affected by an out-of-bounds read vulnerability that could le

7.8
CVE-2024-49545

InDesign Desktop versions ID19.5, ID18.5.4 and earlier are affected by a Heap-based Buffer Overflow vulnerability that c

7.8
CVE-2024-49544

InDesign Desktop versions ID19.5, ID18.5.4 and earlier are affected by an out-of-bounds write vulnerability that could r

7.8
CVE-2024-49543

InDesign Desktop versions ID19.5, ID18.5.4 and earlier are affected by a Stack-based Buffer Overflow vulnerability that

5.5
CVE-2024-49541

Illustrator versions 29.0.0, 28.7.2 and earlier are affected by an out-of-bounds read vulnerability that could lead to d

7.8
CVE-2024-49538

Illustrator versions 29.0.0, 28.7.2 and earlier are affected by an out-of-bounds write vulnerability that could result i

Frequently Asked Questions

How many CVEs affect Microsoft?

Microsoft has 91,472 CVE records in our database, including 2628 critical and 63090 high severity vulnerabilities. 351 of these are listed in CISA's Known Exploited Vulnerabilities catalog.

What are the most severe Microsoft vulnerabilities?

Microsoft has 2628 critical severity (CVSS 9.0+) and 63090 high severity (CVSS 7.0-8.9) vulnerabilities. 351 vulnerabilities are confirmed as actively exploited in the wild.

How can I scan for Microsoft vulnerabilities?

CyberStrike's AI-powered security agents automatically detect vulnerabilities in Microsoft products across your infrastructure. The platform provides continuous pentesting, DAST scanning, and real-time vulnerability monitoring with actionable remediation guidance.

Detect Microsoft Vulnerabilities

CyberStrike scans your infrastructure for Microsoft vulnerabilities and provides real-time remediation guidance.

Get Started