Analyst command view

MSRC Driver CVE Board

Latest-state board for filtered MSRC CVEs from 2020-01-01 to today, tuned for fast triage across module, CWE, release window, exploitation signal, and acknowledgement context.

Live snapshot
Last Sync
2026-05-22T10:50:34Z
Freshness
2 hour(s) ago
Refresh Policy
24h baseline + release watch
Storage
Latest snapshot only
Rows In View
2109
Current result set after filter and search.
Exploited Flagged
1998
Rows with a non-empty exploitation signal.
Distinct CWE
1
Unique weakness classes in this view.
Modules
592
Unique inferred driver or component labels.
Reset
Active filters CWE Unspecified Clear filters

Top CWE

1 classes
Release Month
March 2021
12 CVE | last update 2 hour(s) ago
Release 2021-03-09 Patch Tuesday Count 11
CVE Module CWE Title Advisory text and compact technical context Release Exploited Acknowledgement
CVE-2021-27061
HEVC Video Extensions
Exploitation Less Likely
HEVC Video Extensions Remote Code Execution Vulnerability
CVSS vector: AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H/E:U/RL:O/RC:C
2021-03-09 No
Reported By
Dhanesh Kizhakkinan of FireEye Inc.
CVE-2021-27051
HEVC Video Extensions
Exploitation Less Likely
HEVC Video Extensions Remote Code Execution Vulnerability
CVSS vector: AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H/E:U/RL:O/RC:C
2021-03-09 No
Reported By
Dhanesh Kizhakkinan of FireEye Inc.
Le Huu Quang Linh (@linhlhq) from Vietnam National Cyber Security Center (NCSC Vietnam)
CVE-2021-27050
HEVC Video Extensions
Exploitation Less Likely
HEVC Video Extensions Remote Code Execution Vulnerability
CVSS vector: AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H/E:U/RL:O/RC:C
2021-03-09 No
CVE-2021-27049
HEVC Video Extensions
Exploitation Less Likely
HEVC Video Extensions Remote Code Execution Vulnerability
CVSS vector: AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H/E:U/RL:O/RC:C
2021-03-09 No
Reported By
Dhanesh Kizhakkinan of FireEye Inc.
CVE-2021-27048
HEVC Video Extensions
Exploitation Less Likely
HEVC Video Extensions Remote Code Execution Vulnerability
CVSS vector: AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H/E:U/RL:O/RC:C
2021-03-09 No
Reported By
Dhanesh Kizhakkinan of FireEye Inc.
CVE-2021-27047
HEVC Video Extensions
Exploitation Less Likely
HEVC Video Extensions Remote Code Execution Vulnerability
CVSS vector: AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H/E:U/RL:O/RC:C
2021-03-09 No
Reported By
Dhanesh Kizhakkinan of FireEye Inc.
CVE-2021-26902
HEVC Video Extensions
Exploitation Less Likely
HEVC Video Extensions Remote Code Execution Vulnerability
CVSS vector: AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H/E:U/RL:O/RC:C
2021-03-09 No
Reported By
Dhanesh Kizhakkinan of FireEye Inc.
CVE-2021-24110
HEVC Video Extensions
Exploitation Less Likely
HEVC Video Extensions Remote Code Execution Vulnerability
CVSS vector: AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H/E:U/RL:O/RC:C
2021-03-09 No
Reported By
Dhanesh Kizhakkinan of FireEye Inc
CVE-2021-24089
HEVC Video Extensions
Exploitation Less Likely
HEVC Video Extensions Remote Code Execution Vulnerability
CVSS vector: AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H/E:U/RL:O/RC:C
2021-03-09 No
Reported By
Dhanesh Kizhakkinan of FireEye Inc.
Le Huu Quang Linh (@linhlhq) from Vietnam National Cyber Security Center (NCSC Vietnam)
CVE-2021-24095
DirectX
Exploitation More Likely
DirectX Elevation of Privilege Vulnerability
CVSS vector: AV:L/AC:H/PR:L/UI:N/S:U/C:H/I:H/A:H/E:U/RL:O/RC:C
2021-03-09 No
Reported By
CVE-2021-26890
Application Virtualization
Exploitation Less Likely
Application Virtualization Remote Code Execution Vulnerability
CVSS vector: AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H/E:U/RL:O/RC:C
2021-03-09 No
Reported By
Will Dormann CERT/CC
Release 2021-03-06 Other / OOB Count 1
CVE Module CWE Title Advisory text and compact technical context Release Exploited Acknowledgement
CVE-2021-27803
A vulnerability was discovered in how p2p/p2p_pd.c in wpa_supplicant before 2.10 processes P2P (Wi-Fi Direct) provision discovery requests. It could result in
No latest release note
A vulnerability was discovered in how p2p/p2p_pd.c in wpa_supplicant before 2.10 processes P2P (Wi-Fi Direct) provision discovery requests. It could result in denial of service or other impact (potentially execution of arbitrary code) for an attacker within radio range.
CVSS vector: AV:A/AC:H/PR:N/UI:N/S:U/C:H/I:H/A:H
2021-03-06 - -
Release Month
February 2021
29 CVE | last update 2 hour(s) ago
Release 2021-02-09 Patch Tuesday Count 29
CVE Module CWE Title Advisory text and compact technical context Release Exploited Acknowledgement
CVE-2021-1732
Windows Win32k
Exploitation Detected
Windows Win32k Elevation of Privilege Vulnerability
CVSS vector: AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H/E:F/RL:O/RC:C
2021-02-09 Yes
Reported By
YanZiShuang(@madongze) of Big CJTeam and Gcow Team
JinQuan, MaDongZe, TuXiaoYi, and LiHao of DBAPPSecurity Co., Ltd
CVE-2021-1698
Windows Win32k
Exploitation More Likely
Windows Win32k Elevation of Privilege Vulnerability
CVSS vector: AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H/E:U/RL:O/RC:C
2021-02-09 No
Reported By
Jarvis_1oop of Pinduoduo Security Research Lab
CVE-2021-24080
Windows Trust Verification API
Exploitation Less Likely
Windows Trust Verification API Denial of Service Vulnerability
CVSS vector: AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:H/E:U/RL:O/RC:C
2021-02-09 No
Reported By
Symeon Paraschoudis
CVE-2021-24094
Windows TCP/IP
Exploitation More Likely
Windows TCP/IP Remote Code Execution Vulnerability
CVSS vector: AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H/E:U/RL:O/RC:C
2021-02-09 No -
CVE-2021-24086
Windows TCP/IP
Exploitation More Likely
Windows TCP/IP Denial of Service Vulnerability
CVSS vector: AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H/E:U/RL:O/RC:C
2021-02-09 No -
CVE-2021-24074
Windows TCP/IP
Exploitation More Likely
Windows TCP/IP Remote Code Execution Vulnerability
CVSS vector: AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H/E:U/RL:O/RC:C
2021-02-09 No -
CVE-2021-1734
Windows Remote Procedure Call
Exploitation Less Likely
Windows Remote Procedure Call Information Disclosure Vulnerability
CVSS vector: AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N/E:U/RL:O/RC:C
2021-02-09 No
Reported By
Yuki Chen
CVE-2021-25195
Windows PKU2U
Exploitation Less Likely
Windows PKU2U Elevation of Privilege Vulnerability
CVSS vector: AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H/E:U/RL:O/RC:C
2021-02-09 No
Reported By
Maxwell Whitaker of Microsoft’s Security Assurance and Vulnerability Research team
CVE-2021-24084
Windows Mobile Device Management
Exploitation Less Likely
Windows Mobile Device Management Information Disclosure Vulnerability
CVSS vector: AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N/E:U/RL:O/RC:C
2021-02-09 No
Reported By
Abdelhamid Naceri (halov) working with Trend Micro Zero Day Initiative
CVE-2021-24088
Windows Local Spooler
Exploitation Less Likely
Windows Local Spooler Remote Code Execution Vulnerability
CVSS vector: AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H/E:U/RL:O/RC:C
2021-02-09 No
Reported By
Xuefeng Li (@lxf02942370) of Sangfor & Zhiniang Peng (@edwardzpeng)
CVE-2021-24096
Windows Kernel
Exploitation Less Likely
Windows Kernel Elevation of Privilege Vulnerability
CVSS vector: AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H/E:U/RL:O/RC:C
2021-02-09 No
Reported By
James Forshaw of Google Project Zero
CVE-2021-1727
Windows Installer
Exploitation More Likely
Windows Installer Elevation of Privilege Vulnerability
CVSS vector: AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H/E:P/RL:O/RC:C
2021-02-09 No -
CVE-2021-24093
Windows Graphics Component
Exploitation Less Likely
Windows Graphics Component Remote Code Execution Vulnerability
CVSS vector: AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H/E:U/RL:O/RC:C
2021-02-09 No
Reported By
Dominik Röttsches of Google and Mateusz Jurczyk of Google Project Zero
CVE-2021-24077
Windows Fax Service
Exploitation Less Likely
Windows Fax Service Remote Code Execution Vulnerability
CVSS vector: AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H/E:U/RL:O/RC:C
2021-02-09 No
Reported By
Xuefeng Li (@lxf02942370) of Sangfor & Zhiniang Peng (@edwardzpeng)
CVE-2021-1722
Windows Fax Service
Exploitation Less Likely
Windows Fax Service Remote Code Execution Vulnerability
CVSS vector: AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:H/A:H/E:U/RL:O/RC:C
2021-02-09 No
Reported By
Xuefeng Li (@lxf02942370) of Sangfor & Zhiniang Peng (@edwardzpeng)
CVE-2021-24103
Windows Event Tracing
Exploitation Less Likely
Windows Event Tracing Elevation of Privilege Vulnerability
CVSS vector: AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H/E:U/RL:O/RC:C
2021-02-09 No
Reported By
Yuki Chen
CVE-2021-24102
Windows Event Tracing
Exploitation Less Likely
Windows Event Tracing Elevation of Privilege Vulnerability
CVSS vector: AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H/E:U/RL:O/RC:C
2021-02-09 No
Reported By
Yuki Chen
CVE-2021-24106
Windows DirectX
Exploitation Less Likely
Windows DirectX Information Disclosure Vulnerability
CVSS vector: AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N/E:U/RL:O/RC:C
2021-02-09 No
Reported By
madongze(@YanZiShuang) of DBAPPSecurity Co., Ltd
Simon Barsky (@expend20)
liuxiaoliang and pjf
k0shl
CVE-2021-24078
Windows DNS Server
Exploitation More Likely
Windows DNS Server Remote Code Execution Vulnerability
CVSS vector: AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H/E:U/RL:O/RC:C
2021-02-09 No
Reported By
Quan Luo from Codesafe Team of Legendsec at Qi'anxin Group
CVE-2021-24098
Windows Console Driver
Exploitation Less Likely
Windows Console Driver Denial of Service Vulnerability
CVSS vector: AV:L/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:H/E:U/RL:O/RC:C
2021-02-09 No
Reported By
Walied Assar
songmingxuan by JD logistics security
CVE-2021-24091
Windows Camera Codec Pack
Exploitation Less Likely
Windows Camera Codec Pack Remote Code Execution Vulnerability
CVSS vector: AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H/E:U/RL:O/RC:C
2021-02-09 No
Reported By
Hossein Lotfi of Trend Micro Zero Day Initiative
CVE-2021-24079
Windows Backup Engine
Exploitation Less Likely
Windows Backup Engine Information Disclosure Vulnerability
CVSS vector: AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N/E:U/RL:O/RC:C
2021-02-09 No
Reported By
khangkito - Tran Van Khang of VinCSS
CVE-2021-24083
Windows Address Book
Exploitation Less Likely
Windows Address Book Remote Code Execution Vulnerability
CVSS vector: AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H/E:U/RL:O/RC:C
2021-02-09 No
Reported By
CVE-2021-1728
System Center Operations Manager
Exploitation Less Likely
System Center Operations Manager Elevation of Privilege Vulnerability
CVSS vector: AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H/E:U/RL:O/RC:C
2021-02-09 No -
CVE-2021-24105
Package Managers Configurations
Exploitation Less Likely
Package Managers Configurations Remote Code Execution Vulnerability
CVSS vector: AV:L/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H/E:P/RL:O/RC:C
2021-02-09 No
Reported By
CVE-2021-24076
Microsoft Windows VMSwitch
Exploitation Less Likely
Microsoft Windows VMSwitch Information Disclosure Vulnerability
CVSS vector: AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N/E:P/RL:O/RC:C
2021-02-09 No
Reported By
Microsoft Platform Security & Vulnerability Research
CVE-2021-24075
Microsoft Windows VMSwitch
Exploitation Less Likely
Microsoft Windows VMSwitch Denial of Service Vulnerability
CVSS vector: AV:N/AC:L/PR:L/UI:R/S:C/C:N/I:N/A:H/E:U/RL:O/RC:C
2021-02-09 No
Reported By
Microsoft Platform Security & Vulnerability Research
Wei
CVE-2021-24081
Microsoft Windows Codecs Library
Exploitation Less Likely
Microsoft Windows Codecs Library Remote Code Execution Vulnerability
CVSS vector: AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H/E:P/RL:O/RC:C
2021-02-09 No
Reported By
Hossein Lotfi of Trend Micro Zero Day Initiative
CVE-2021-24114
Microsoft Teams iOS
Exploitation Less Likely
Microsoft Teams iOS Information Disclosure Vulnerability
CVSS vector: AV:N/AC:L/PR:L/UI:R/S:U/C:H/I:N/A:N/E:U/RL:O/RC:C
2021-02-09 No
Reported By
Numan TÜRLE of Gais Security
Release Month
January 2021
9 CVE | last update 2 hour(s) ago
Release 2021-01-30 Other / OOB Count 1
CVE Module CWE Title Advisory text and compact technical context Release Exploited Acknowledgement
CVE-2020-36226
A flaw was discovered in OpenLDAP before 2.4.57 leading to a memch->bv_len miscalculation and slapd crash in the saslAuthzTo processing resulting in
No latest release note
A flaw was discovered in OpenLDAP before 2.4.57 leading to a memch->bv_len miscalculation and slapd crash in the saslAuthzTo processing resulting in denial of service.
CVSS vector: AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H
2021-01-30 - -
Release 2021-01-23 Other / OOB Count 1
CVE Module CWE Title Advisory text and compact technical context Release Exploited Acknowledgement
CVE-2021-2010
Vulnerability in the MySQL Client product of Oracle MySQL (component: C API). Supported versions that are affected are 5.6.50 and prior 5.7.32 and prior and 8.0.22 and prior. Difficult to exploit vulnerability allows low privileged attacker with network access via multiple protocols to compromise MySQL Client. Successful attacks of this vulnerability can result in unauthorized update insert or delete access to some of MySQL Client accessible data and unauthorized ability to cause a partial
No latest release note
Vulnerability in the MySQL Client product of Oracle MySQL (component: C API). Supported versions that are affected are 5.6.50 and prior 5.7.32 and prior and 8.0.22 and prior. Difficult to exploit vulnerability allows low privileged attacker with network access via multiple protocols to compromise MySQL Client. Successful attacks of this vulnerability can result in unauthorized update insert or delete access to some of MySQL Client accessible data and unauthorized ability to cause a partial denial of service (partial DOS) of MySQL Client. CVSS 3.1 Base Score 4.2 (Integrity and Availability impacts). CVSS Vector: (CVSS:3.1/AV:N/AC:H/PR:L/UI:N/S:U/C:N/I:L/A:L).
CVSS vector: AV:N/AC:H/PR:L/UI:N/S:U/C:N/I:L/A:L
2021-01-23 - -
Release 2021-01-12 Patch Tuesday Count 7
CVE Module CWE Title Advisory text and compact technical context Release Exploited Acknowledgement
CVE-2021-1709
Windows Win32k
Exploitation More Likely
Windows Win32k Elevation of Privilege Vulnerability
CVSS vector: AV:L/AC:H/PR:L/UI:N/S:U/C:H/I:H/A:H/E:U/RL:O/RC:C
2021-01-12 No
Reported By
Guopengfei from Codesafe Team of Legendsec at Qi'anxin Group
CVE-2021-1690
Windows WalletService
Exploitation Less Likely
Windows WalletService Elevation of Privilege Vulnerability
CVSS vector: AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H/E:U/RL:O/RC:C
2021-01-12 No
Reported By
Fangming Gu (@afang5472) and Zhiniang Peng (@edwardzpeng) of Sangfor Lights Lab
CVE-2021-1687
Windows WalletService
Exploitation Less Likely
Windows WalletService Elevation of Privilege Vulnerability
CVSS vector: AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H/E:U/RL:O/RC:C
2021-01-12 No
Reported By
Fangming Gu (@afang5472) and Zhiniang Peng (@edwardzpeng) of Sangfor Lights Lab
CVE-2021-1686
Windows WalletService
Exploitation Less Likely
Windows WalletService Elevation of Privilege Vulnerability
CVSS vector: AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H/E:U/RL:O/RC:C
2021-01-12 No
Reported By
Fangming Gu (@afang5472) and Zhiniang Peng (@edwardzpeng) of Sangfor Lights Lab
CVE-2021-1681
Windows WalletService
Exploitation Less Likely
Windows WalletService Elevation of Privilege Vulnerability
CVSS vector: AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H/E:U/RL:O/RC:C
2021-01-12 No
Reported By
Fangming Gu (@afang5472) and Zhiniang Peng (@edwardzpeng) of Sangfor Lights Lab
CVE-2021-1646
Windows WLAN Service
Exploitation Less Likely
Windows WLAN Service Elevation of Privilege Vulnerability
CVSS vector: AV:P/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H/E:U/RL:O/RC:C
2021-01-12 No
Reported By
Feeker Wang from Codesafe Team of Legendsec at Qi'anxin Group
CVE-2021-1694
Windows Update Stack
Exploitation Less Likely
Windows Update Stack Elevation of Privilege Vulnerability
CVSS vector: AV:A/AC:H/PR:N/UI:N/S:U/C:H/I:H/A:H/E:U/RL:O/RC:C
2021-01-12 No
Reported By
Maxime Nadeau, Julien Pineault and Mathieu Novis of GoSecure, inc.
Romain Carnus of GoSecure
Lockheed Martin Red Team
Prev Page 24 / 43 | rows 1151-1200 of 2109 Next