Analyst command view

MSRC Driver CVE Board

Latest-state board for filtered MSRC CVEs from 2020-01-01 to today, tuned for fast triage across module, CWE, release window, exploitation signal, and acknowledgement context.

Live snapshot
Last Sync
2026-05-20T07:39:30Z
Freshness
1 day(s) ago
Refresh Policy
24h baseline + release watch
Storage
Latest snapshot only
Rows In View
2109
Current result set after filter and search.
Exploited Flagged
1998
Rows with a non-empty exploitation signal.
Distinct CWE
1
Unique weakness classes in this view.
Modules
592
Unique inferred driver or component labels.
Reset
Active filters CWE Unspecified Clear filters

Top CWE

1 classes
Release Month
January 2022
12 CVE | last update 1 day(s) ago
Release 2022-01-11 Patch Tuesday Count 12
CVE Module CWE Title Advisory text and compact technical context Release Exploited Acknowledgement
CVE-2022-21835
Microsoft Cryptographic Services
Exploitation Less Likely
Microsoft Cryptographic Services Elevation of Privilege Vulnerability
CVSS vector: AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H/E:U/RL:O/RC:C
2022-01-11 No
Reported By
CVE-2022-21910
Microsoft Cluster Port Driver
Exploitation Less Likely
Microsoft Cluster Port Driver Elevation of Privilege Vulnerability
CVSS vector: AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H/E:U/RL:O/RC:C
2022-01-11 No
Reported By
JIWO Technology Co., Ltd
CVE-2022-21884
Local Security Authority Subsystem Service
Exploitation Less Likely
Local Security Authority Subsystem Service Elevation of Privilege Vulnerability
CVSS vector: AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H/E:U/RL:O/RC:C
2022-01-11 No
CVE-2021-36976
Libarchive
Exploitation Less Likely
Libarchive Remote Code Execution Vulnerability
No CVSS vector published
2022-01-11 No -
CVE-2022-21907
HTTP Protocol Stack
Exploitation More Likely
HTTP Protocol Stack Remote Code Execution Vulnerability
CVSS vector: AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H/E:U/RL:O/RC:C
2022-01-11 No
CVE-2022-21917
HEVC Video Extensions
Exploitation Less Likely
HEVC Video Extensions Remote Code Execution Vulnerability
CVSS vector: AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H/E:P/RL:O/RC:C
2022-01-11 No
Reported By
Dhanesh Kizhakkinan with Mandiant
CVE-2022-21918
DirectX Graphics Kernel File
Exploitation Less Likely
DirectX Graphics Kernel File Denial of Service Vulnerability
CVSS vector: AV:L/AC:L/PR:L/UI:N/S:C/C:N/I:N/A:H/E:U/RL:O/RC:C
2022-01-11 No
Reported By
HongZhenhao of Ant Group Light-Year Security Lab
CVE-2022-21912
DirectX Graphics Kernel
Exploitation Less Likely
DirectX Graphics Kernel Remote Code Execution Vulnerability
CVSS vector: AV:L/AC:H/PR:L/UI:N/S:C/C:H/I:H/A:H/E:U/RL:O/RC:C
2022-01-11 No
Reported By
HongZhenhao of Ant Group Light-Year Security Lab
CVE-2022-21898
DirectX Graphics Kernel
Exploitation Less Likely
DirectX Graphics Kernel Remote Code Execution Vulnerability
CVSS vector: AV:L/AC:H/PR:L/UI:N/S:C/C:H/I:H/A:H/E:U/RL:O/RC:C
2022-01-11 No
Reported By
HongZhenhao of Ant Group Light-Year Security Lab
CVE-2022-21865
Connected Devices Platform Service
Exploitation Less Likely
Connected Devices Platform Service Elevation of Privilege Vulnerability
CVSS vector: AV:L/AC:H/PR:L/UI:N/S:U/C:H/I:H/A:H/E:U/RL:O/RC:C
2022-01-11 No -
CVE-2022-21869
Clipboard User Service
Exploitation Less Likely
Clipboard User Service Elevation of Privilege Vulnerability
CVSS vector: AV:L/AC:H/PR:L/UI:N/S:U/C:H/I:H/A:H/E:U/RL:O/RC:C
2022-01-11 No -
CVE-2022-21857
Active Directory Domain Services
Exploitation Less Likely
Active Directory Domain Services Elevation of Privilege Vulnerability
CVSS vector: AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H/E:U/RL:O/RC:C
2022-01-11 No -
Release Month
December 2021
38 CVE | last update 1 day(s) ago
Release 2021-12-16 Other / OOB Count 4
CVE Module CWE Title Advisory text and compact technical context Release Exploited Acknowledgement
CVE-2014-9638
oggenc in vorbis-tools 1.4.0 allows remote attackers to cause a
No latest release note
oggenc in vorbis-tools 1.4.0 allows remote attackers to cause a denial of service (divide-by-zero error and crash) via a WAV file with the number of channels set to zero.
No CVSS vector published
2021-12-16 - -
CVE-2020-13962
Qt 5.12.2 through 5.14.2 as used in unofficial builds of Mumble 1.3.0 and other products mishandles OpenSSL's error queue which can cause a
No latest release note
Qt 5.12.2 through 5.14.2 as used in unofficial builds of Mumble 1.3.0 and other products mishandles OpenSSL's error queue which can cause a denial of service to QSslSocket users. Because errors leak in unrelated TLS sessions an unrelated session may be disconnected when any handshake fails. (Mumble 1.3.1 is not affected regardless of the Qt version.)
CVSS vector: AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H
2021-12-16 - -
CVE-2014-9639
Integer overflow in oggenc in vorbis-tools 1.4.0 allows remote attackers to cause a
No latest release note
Integer overflow in oggenc in vorbis-tools 1.4.0 allows remote attackers to cause a denial of service (crash) via a crafted number of channels in a WAV file which triggers an out-of-bounds memory access.
No CVSS vector published
2021-12-16 - -
CVE-2021-44228
Apache Log4j
No latest release note
Apache Log4j Remote Code Execution Vulnerability
No CVSS vector published
2021-12-16 Yes -
Release 2021-12-14 Patch Tuesday Count 34
CVE Module CWE Title Advisory text and compact technical context Release Exploited Acknowledgement
CVE-2021-43215
iSNS Server Memory Corruption Vulnerability Can Lead to
Exploitation More Likely
iSNS Server Memory Corruption Vulnerability Can Lead to Remote Code Execution
CVSS vector: AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H/E:U/RL:O/RC:C
2021-12-14 No
Reported By
liubenjin with Codesafe Team of Legendsec at Qi'anxin Group
CVE-2021-43247
Windows TCP/IP Driver
Exploitation Less Likely
Windows TCP/IP Driver Elevation of Privilege Vulnerability
CVSS vector: AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H/E:U/RL:O/RC:C
2021-12-14 No
Reported By
Fraunhofer FKIE CA&D working with Trend Micro Zero Day Initiative
CVE-2021-43237
Windows Setup
Exploitation Less Likely
Windows Setup Elevation of Privilege Vulnerability
CVSS vector: AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H/E:U/RL:O/RC:C
2021-12-14 No
Reported By
Abdelhamid Naceri working with Trend Micro Zero Day Initiative
CVE-2021-43223
Windows Remote Access Connection Manager
Exploitation Less Likely
Windows Remote Access Connection Manager Elevation of Privilege Vulnerability
CVSS vector: AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H/E:U/RL:O/RC:C
2021-12-14 No
Reported By
CVE-2021-43238
Windows Remote Access
Exploitation Less Likely
Windows Remote Access Elevation of Privilege Vulnerability
CVSS vector: AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H/E:U/RL:O/RC:C
2021-12-14 No
Reported By
Abdelhamid Naceri working with Trend Micro Zero Day Initiative
CVE-2021-43239
Windows Recovery Environment Agent
Exploitation Less Likely
Windows Recovery Environment Agent Elevation of Privilege Vulnerability
CVSS vector: AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:H/A:H/E:U/RL:O/RC:C
2021-12-14 No
Reported By
Rahul Varanasi of Microsoft
CVE-2021-41333
Windows Print Spooler
Exploitation More Likely
Windows Print Spooler Elevation of Privilege Vulnerability
CVSS vector: AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H/E:F/RL:O/RC:C
2021-12-14 No
Reported By
James Forshaw of Google Project Zero
Abdelhamid Naceri working with Trend Micro Zero Day Initiative
CVE-2021-43231
Windows NTFS
Exploitation Less Likely
Windows NTFS Elevation of Privilege Vulnerability
CVSS vector: AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H/E:U/RL:O/RC:C
2021-12-14 No
Reported By
CVE-2021-43230
Windows NTFS
Exploitation Less Likely
Windows NTFS Elevation of Privilege Vulnerability
CVSS vector: AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H/E:U/RL:O/RC:C
2021-12-14 No
Reported By
CVE-2021-43229
Windows NTFS
Exploitation Less Likely
Windows NTFS Elevation of Privilege Vulnerability
CVSS vector: AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H/E:U/RL:O/RC:C
2021-12-14 No
Reported By
CVE-2021-43880
Windows Mobile Device Management
Exploitation More Likely
Windows Mobile Device Management Elevation of Privilege Vulnerability
CVSS vector: AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H/E:U/RL:O/RC:C
2021-12-14 No -
CVE-2021-40441
Windows Media Center
Exploitation Less Likely
Windows Media Center Elevation of Privilege Vulnerability
CVSS vector: AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H/E:U/RL:O/RC:C
2021-12-14 No
Reported By
JIWO Technology Co., Ltd
CVE-2021-43244
Windows Kernel
Exploitation Less Likely
Windows Kernel Information Disclosure Vulnerability
CVSS vector: AV:L/AC:L/PR:L/UI:N/S:C/C:H/I:N/A:N/E:U/RL:O/RC:C
2021-12-14 No
Reported By
CVE-2021-43883
Windows Installer
Exploitation More Likely
Windows Installer Elevation of Privilege Vulnerability
CVSS vector: AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H/E:P/RL:O/RC:C
2021-12-14 No -
CVE-2021-43246
Windows Hyper-V
Exploitation Less Likely
Windows Hyper-V Denial of Service Vulnerability
CVSS vector: AV:L/AC:H/PR:L/UI:N/S:C/C:N/I:N/A:H/E:U/RL:O/RC:C
2021-12-14 No
Reported By
HongZhenhao of Ant Group Light-Year Security Lab
CVE-2021-43234
Windows Fax Service
Exploitation Less Likely
Windows Fax Service Remote Code Execution Vulnerability
CVSS vector: AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H/E:U/RL:O/RC:C
2021-12-14 No
Reported By
CVE-2021-43232
Windows Event Tracing
Exploitation Less Likely
Windows Event Tracing Remote Code Execution Vulnerability
CVSS vector: AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H/E:U/RL:O/RC:C
2021-12-14 No
Reported By
CVE-2021-43893
Windows Encrypting File System (EFS)
Exploitation Less Likely
Windows Encrypting File System (EFS) Elevation of Privilege Vulnerability
CVSS vector: AV:N/AC:H/PR:L/UI:N/S:U/C:H/I:H/A:H/E:U/RL:O/RC:C
2021-12-14 No
Reported By
James Forshaw of Google Project Zero
CVE-2021-43217
Windows Encrypting File System (EFS)
Exploitation Less Likely
Windows Encrypting File System (EFS) Remote Code Execution Vulnerability
CVSS vector: AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:H/A:H/E:U/RL:O/RC:C
2021-12-14 No
Reported By
CVE-2021-43245
Windows Digital TV Tuner
Exploitation Less Likely
Windows Digital TV Tuner Elevation of Privilege Vulnerability
CVSS vector: AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H/E:U/RL:O/RC:C
2021-12-14 No
Reported By
JIWO Technology Co., Ltd
CVE-2021-43248
Windows Digital Media Receiver
Exploitation Less Likely
Windows Digital Media Receiver Elevation of Privilege Vulnerability
CVSS vector: AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H/E:U/RL:O/RC:C
2021-12-14 No
Reported By
CVE-2021-43226
Windows Common Log File System Driver
Exploitation More Likely
Windows Common Log File System Driver Elevation of Privilege Vulnerability
CVSS vector: AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H/E:U/RL:O/RC:C
2021-12-14 No
Reported By
CVE-2021-43224
Windows Common Log File System Driver
Exploitation Less Likely
Windows Common Log File System Driver Information Disclosure Vulnerability
CVSS vector: AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N/E:U/RL:O/RC:C
2021-12-14 No
Reported By
Anonymous
HyungSeok Han with Theori
CVE-2021-43207
Windows Common Log File System Driver
Exploitation More Likely
Windows Common Log File System Driver Elevation of Privilege Vulnerability
CVSS vector: AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H/E:U/RL:O/RC:C
2021-12-14 No
Reported By
CVE-2021-43214
Web Media Extensions
Exploitation Unlikely
Web Media Extensions Remote Code Execution Vulnerability
CVSS vector: AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H/E:U/RL:O/RC:C
2021-12-14 No
CVE-2021-42295
Visual Basic for Applications
Exploitation Less Likely
Visual Basic for Applications Information Disclosure Vulnerability
CVSS vector: AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:N/A:N/E:U/RL:O/RC:C
2021-12-14 No
Reported By
5n1p3r0010 from Topsec ChiXiao lab
CVE-2021-43228
SymCrypt
Exploitation Less Likely
SymCrypt Denial of Service Vulnerability
CVSS vector: AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H/E:U/RL:O/RC:C
2021-12-14 No -
CVE-2021-43235
Storage Spaces Controller
Exploitation Less Likely
Storage Spaces Controller Information Disclosure Vulnerability
CVSS vector: AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N/E:U/RL:O/RC:C
2021-12-14 No
Reported By
CVE-2021-43227
Storage Spaces Controller
Exploitation Less Likely
Storage Spaces Controller Information Disclosure Vulnerability
CVSS vector: AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N/E:U/RL:O/RC:C
2021-12-14 No
Reported By
CVE-2021-43233
Remote Desktop Client
Exploitation More Likely
Remote Desktop Client Remote Code Execution Vulnerability
CVSS vector: AV:N/AC:H/PR:N/UI:R/S:U/C:H/I:H/A:H/E:U/RL:O/RC:C
2021-12-14 No
Reported By
Yuchao Zhou, Zirui Yang and Wenqun Wang of ThreatBook
CVE-2021-43240
NTFS Set Short Name
Exploitation Less Likely
NTFS Set Short Name Elevation of Privilege Vulnerability
CVSS vector: AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H/E:P/RL:O/RC:C
2021-12-14 No -
CVE-2021-43236
Microsoft Message Queuing
Exploitation Less Likely
Microsoft Message Queuing Information Disclosure Vulnerability
CVSS vector: AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N/E:U/RL:O/RC:C
2021-12-14 No
Reported By
liubenjin with Codesafe Team of Legendsec at Qianxin Group
CVE-2021-43222
Microsoft Message Queuing
Exploitation Less Likely
Microsoft Message Queuing Information Disclosure Vulnerability
CVSS vector: AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N/E:U/RL:O/RC:C
2021-12-14 No
Reported By
liubenjin with Codesafe Team of Legendsec at Qi'anxin Group
CVE-2021-43216
Microsoft Local Security Authority (LSA) Server
Exploitation Less Likely
Microsoft Local Security Authority (LSA) Server Information Disclosure Vulnerability
CVSS vector: AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N/E:U/RL:O/RC:C
2021-12-14 No
Prev Page 15 / 43 | rows 701-750 of 2109 Next