Skip to main content

Over 150 LLM Providers · Over 5,300 Models The most extensible AI-powered pentesting platform. Open source. Star on GitHub

Microsoft

91,472 known vulnerabilities

1,058
CRITICAL
11,903
HIGH
5,674
MEDIUM
354
LOW

Top Products

windows 8173 windows server 2016 5644 windows server 2019 5279 windows server 2012 4134 windows 10 3588 windows server 2022 3387 windows server 2008 3078 windows 10 1809 2579 windows 10 21h2 2553 windows 10 22h2 2550
18,990 CVEs · Page 202/380
5.3
CVE-2022-30154

Microsoft File Server Shadow Copy Agent Service (RVSS) Elevation of Privilege Vulnerability

8.8
CVE-2022-30153

Windows Lightweight Directory Access Protocol (LDAP) Remote Code Execution Vulnerability

7.5
CVE-2022-30152

Windows Network Address Translation (NAT) Denial of Service Vulnerability

7.0
CVE-2022-30151

Windows Ancillary Function Driver for WinSock Elevation of Privilege Vulnerability

7.5
CVE-2022-30150

Windows Defender Remote Credential Guard Elevation of Privilege Vulnerability

7.5
CVE-2022-30149

Windows Lightweight Directory Access Protocol (LDAP) Remote Code Execution Vulnerability

5.5
CVE-2022-30148

Windows Desired State Configuration (DSC) Information Disclosure Vulnerability

7.8
CVE-2022-30147

Windows Installer Elevation of Privilege Vulnerability

7.5
CVE-2022-30146

Windows Lightweight Directory Access Protocol (LDAP) Remote Code Execution Vulnerability

7.5
CVE-2022-30145

Windows Encrypting File System (EFS) Remote Code Execution Vulnerability

7.5
CVE-2022-30143

Windows Lightweight Directory Access Protocol (LDAP) Remote Code Execution Vulnerability

7.5
CVE-2022-30142

Windows File History Remote Code Execution Vulnerability

8.1
CVE-2022-30141

Windows Lightweight Directory Access Protocol (LDAP) Remote Code Execution Vulnerability

7.5
CVE-2022-30140

Windows iSCSI Discovery Service Remote Code Execution Vulnerability

7.5
CVE-2022-30139

Windows Lightweight Directory Access Protocol (LDAP) Remote Code Execution Vulnerability

6.7
CVE-2022-30137

Executive Summary An Elevation of Privilege (EOP) vulnerability has been identified within Service Fabric clusters that

9.8
CVE-2022-30136

Windows Network File System Remote Code Execution Vulnerability

7.8
CVE-2022-30135

Windows Media Center Elevation of Privilege Vulnerability

7.8
CVE-2022-30132

Windows Container Manager Service Elevation of Privilege Vulnerability

7.8
CVE-2022-30131

Windows Container Isolation FS Filter Driver Elevation of Privilege Vulnerability

7.8
CVE-2022-29149

Open Management Infrastructure (OMI) Elevation of Privilege Vulnerability

7.5
CVE-2022-29143

Microsoft SQL Server Remote Code Execution Vulnerability

7.8
CVE-2022-29119

HEVC Video Extensions Remote Code Execution Vulnerability

7.8
CVE-2022-29111

HEVC Video Extensions Remote Code Execution Vulnerability

8.3
CVE-2022-22021

Microsoft Edge (Chromium-based) Remote Code Execution Vulnerability

7.8
CVE-2022-22018

HEVC Video Extensions Remote Code Execution Vulnerability

5.5
CVE-2022-30669

Adobe Illustrator versions 26.0.2 (and earlier) and 25.4.5 (and earlier) are affected by an out-of-bounds read vulnerabi

5.5
CVE-2022-30668

Adobe Illustrator versions 26.0.2 (and earlier) and 25.4.5 (and earlier) are affected by an out-of-bounds read vulnerabi

5.5
CVE-2022-30667

Adobe Illustrator versions 26.0.2 (and earlier) and 25.4.5 (and earlier) are affected by an out-of-bounds read vulnerabi

5.5
CVE-2022-30666

Adobe Illustrator versions 26.0.2 (and earlier) and 25.4.5 (and earlier) are affected by an out-of-bounds read vulnerabi

7.8
CVE-2022-30649

Adobe Illustrator versions 26.0.2 (and earlier) and 25.4.5 (and earlier) are affected by an out-of-bounds write vulnerab

7.8
CVE-2022-30648

Adobe Illustrator versions 26.0.2 (and earlier) and 25.4.5 (and earlier) are affected by a Use-After-Free vulnerability

7.8
CVE-2022-30647

Adobe Illustrator versions 26.0.2 (and earlier) and 25.4.5 (and earlier) are affected by a Use-After-Free vulnerability

5.5
CVE-2022-28850

Adobe Bridge version 12.0.1 (and earlier versions) is affected by an out-of-bounds read vulnerability that could lead to

7.8
CVE-2022-28849

Adobe Bridge version 12.0.1 (and earlier versions) is affected by a Use-After-Free vulnerability that could result in ar

7.8
CVE-2022-28848

Adobe Bridge version 12.0.1 (and earlier versions) is affected by an out-of-bounds write vulnerability that could result

7.8
CVE-2022-28847

Adobe Bridge version 12.0.1 (and earlier versions) is affected by an out-of-bounds write vulnerability that could result

7.8
CVE-2022-28846

Adobe Bridge version 12.0.1 (and earlier versions) is affected by an out-of-bounds write vulnerability that could result

7.8
CVE-2022-28845

Adobe Bridge version 12.0.1 (and earlier versions) is affected by an out-of-bounds write vulnerability that could result

7.8
CVE-2022-28844

Adobe Bridge version 12.0.1 (and earlier versions) is affected by an out-of-bounds write vulnerability that could result

7.8
CVE-2022-28843

Adobe Bridge version 12.0.1 (and earlier versions) is affected by an out-of-bounds write vulnerability that could result

7.8
CVE-2022-28842

Adobe Bridge version 12.0.1 (and earlier versions) is affected by a Use-After-Free vulnerability that could result in ar

7.8
CVE-2022-28841

Adobe Bridge version 12.0.1 (and earlier versions) is affected by an out-of-bounds write vulnerability that could result

7.8
CVE-2022-28840

Adobe Bridge version 12.0.1 (and earlier versions) is affected by an out-of-bounds write vulnerability that could result

7.8
CVE-2022-28839

Adobe Bridge version 12.0.1 (and earlier versions) is affected by an out-of-bounds write vulnerability that could result

7.8
CVE-2022-28226

Local privilege vulnerability in Yandex Browser for Windows prior to 22.3.3.801 allows a local, low privileged, attacker

7.8
CVE-2022-28225

Local privilege vulnerability in Yandex Browser for Windows prior to 22.3.3.684 allows a local, low privileged, attacker

7.8
CVE-2021-43755

Adobe After Effects versions 22.0 (and earlier) and 18.4.2 (and earlier) are affected by an Out-of-bounds Write vulnerab

7.8
CVE-2021-42735

Adobe Photoshop version 22.5.1 (and earlier versions ) is affected by an Access of Memory Location After End of Buffer v

7.8
CVE-2021-25261

Local privilege vulnerability in Yandex Browser for Windows prior to 22.5.0.862 allows a local, low privileged, attacker

Frequently Asked Questions

How many CVEs affect Microsoft?

Microsoft has 91,472 CVE records in our database, including 2628 critical and 63090 high severity vulnerabilities. 351 of these are listed in CISA's Known Exploited Vulnerabilities catalog.

What are the most severe Microsoft vulnerabilities?

Microsoft has 2628 critical severity (CVSS 9.0+) and 63090 high severity (CVSS 7.0-8.9) vulnerabilities. 351 vulnerabilities are confirmed as actively exploited in the wild.

How can I scan for Microsoft vulnerabilities?

CyberStrike's AI-powered security agents automatically detect vulnerabilities in Microsoft products across your infrastructure. The platform provides continuous pentesting, DAST scanning, and real-time vulnerability monitoring with actionable remediation guidance.

Detect Microsoft Vulnerabilities

CyberStrike scans your infrastructure for Microsoft vulnerabilities and provides real-time remediation guidance.

Get Started