Записи MSI
22 опубликованных записей вендора msi.
Профиль для исследователя
- Попали в KEV
- 0 · 0 %
- С эксплойтом
- 0 · 0 %
- Pre-auth RCE
- 0
- С записью об исправлении
- 4,5 %
- Медиана: публикация → KEV
- Ни одна запись не попала в KEV
Повторяющиеся классы
- CWE-200 Exposure of Sensitive Information to an Unauthorized Actor3
- CWE-123 Write-what-where Condition1
- CWE-125 Out-of-bounds Read1
- CWE-276 Incorrect Default Permissions1
- CWE-345 Insufficient Verification of Data Authenticity1
- CWE-404 Improper Resource Shutdown or Release1
Классы уязвимостей, которые чаще всего встречаются у этого вендора: куда смотреть.
CWEВсе записи
22 записей| Срочность | CVE | Уязвимость | Критичность | KEV | EPSS | Опубликовано |
|---|---|---|---|---|---|---|
43В плане | CVE-2021-27965Proof of concept | The MsIo64.sys driver before 1.1.19.1016 in MSI Dragon Center before 2.0.98.0 has a buffer overflow that allows privilege escalation via a cmsi · dragon center · CWE-120 | Критическая9,8 | — | 11,8 % | 4 мар. 2021 г. |
37Наблюдать | CVE-2019-16098Proof of concept | The driver in Micro-Star MSI Afterburner 4.6.2.15658 (aka RTCore64.sys and RTCore32.sys) allows any authenticated user to read and write to msi · afterburner · CWE-125 | Высокая7,8 | — | 19,8 % | 11 сент. 2019 г. |
35Наблюдать | CVE-2022-31877Эксплойта нет | An issue in the component MSI.TerminalServer.exe of MSI Center v1.0.41.0 allows attackers to escalate privileges via a crafted TCP packet.msi · center · CWE-345 | Высокая8,8 | — | 0,4 % | 28 нояб. 2022 г. |
32Наблюдать | CVE-2020-17382Proof of concept | The MSI AmbientLink MsIo64 driver 1.0.0.8 has a Buffer Overflow (0x80102040, 0x80102044, 0x80102050,and 0x80102054).msi · ambientlink mslo64 firmware · CWE-787 | Высокая7,8 | — | 2,1 % | 2 окт. 2020 г. |
32Наблюдать | CVE-2024-36877Proof of concept | Micro-Star International Z-series motherboards (Z590, Z490, and Z790) and B-series motherboards (B760, B560, B660, and B460) with firmware 7CWE-123 | Высокая8,2 | — | 0,7 % | 12 авг. 2024 г. |
31Наблюдать | CVE-2021-29337Proof of concept | MODAPI.sys in MSI Dragon Center 2.0.104.0 allows low-privileged users to access kernel memory and potentially escalate privileges via a crafmsi · dragon center | Высокая7,8 | — | 0,8 % | 21 июн. 2021 г. |
31Наблюдать | CVE-2022-38532Proof of concept | Micro-Star International Co., Ltd MSI Center 1.0.50.0 was discovered to contain a vulnerability in the component C_Features of MSI.CentralSemsi · center | Высокая7,8 | — | 0,5 % | 19 сент. 2022 г. |
31Наблюдать | CVE-2021-44901Эксплойта нет | Micro-Star International (MSI) Dragon Center <= 2.0.116.0 is vulnerable to multiple Privilege Escalation (LPE/EoP) vulnerabilities in the atmsi · dragon center | Высокая7,8 | — | 0,5 % | 4 февр. 2022 г. |
31Наблюдать | CVE-2020-13149Эксплойта нет | Weak permissions on the "%PROGRAMDATA%\MSI\Dragon Center" folder in Dragon Center before 2.6.2003.2401, shipped with Micro-Star MSI Gaming lmsi · dragon center · CWE-276 | Высокая7,8 | — | 0,4 % | 18 мая 2020 г. |
31Наблюдать | CVE-2021-44899Эксплойта нет | Micro-Star International (MSI) Center <= 1.0.31.0 is vulnerable to multiple Privilege Escalation vulnerabilities in the atidgllk.sys, atillkmsi · center | Высокая7,8 | — | 0,4 % | 4 февр. 2022 г. |
31Наблюдать | CVE-2021-44903Эксплойта нет | Micro-Star International (MSI) Center Pro <= 2.0.16.0 is vulnerable to multiple Privilege Escalation (LPE/EoP) vulnerabilities in the atidglmsi · center pro | Высокая7,8 | — | 0,3 % | 4 февр. 2022 г. |
31Наблюдать | CVE-2021-44900Эксплойта нет | Micro-Star International (MSI) App Player <= 4.280.1.6309 is vulnerable to multiple Privilege Escalation (LPE/EoP) vulnerabilities in the NTmsi · app player | Высокая7,8 | — | 0,3 % | 4 февр. 2022 г. |
31Наблюдать | CVE-2021-32415Эксплойта нет | EXEMSI MSI Wrapper Versions prior to 10.0.50 and at least since version 6.0.91 will introduce a local privilege escalation vulnerability in msi · wrapper | Высокая7,8 | — | 0,2 % | 13 дек. 2022 г. |
31Наблюдать | CVE-2024-3745Эксплойта нет | MSI Afterburner v4.6.6.16381 Beta 3 - ACL Bypassmsi · msi afterburner · CWE-863 | Высокая7,8 | — | 0,2 % | 18 мая 2024 г. |
30Наблюдать | CVE-2026-37453Эксплойта нет | Insecure Permissions vulnerability in MSI NBFoundation Service v.2.0.2506.1201 allows a remote attacker to obtain sensitive information via msi · center · CWE-200 | Высокая7,5 | — | 0,5 % | 25 июн. 2026 г. |
30Наблюдать | CVE-2026-37454Эксплойта нет | Insecure Permissions vulnerability in MSI NBFoundation Service v.2.0.2506.1201 allows a remote attacker to obtain sensitive information via msi · center · CWE-200 | Высокая7,5 | — | 0,3 % | 25 июн. 2026 г. |
28Наблюдать | CVE-2022-34108Эксплойта нет | An issue in the Feature Navigator of Micro-Star International MSI Feature Nagivator v1.0.1808.0901 allows attackers to cause a Denial of Sermsi · micro-star international feature navigator | Высокая7,1 | — | 0,3 % | 12 сент. 2022 г. |
28Наблюдать | CVE-2022-34109Эксплойта нет | An issue in Micro-Star International MSI Feature Navigator v1.0.1808.0901 allows attackers to write arbitrary files to the directory \PromoPmsi · micro-star international feature navigator | Высокая7,1 | — | 0,3 % | 12 сент. 2022 г. |
27Наблюдать | CVE-2024-12227Proof of concept | MSI Dragon Center IOCTL NTIOLib_X64.sys MmUnMapIoSpace null pointer dereferencemsi · dragon center · CWE-404 | Средняя6,8 | — | 0,2 % | 5 дек. 2024 г. |
22Наблюдать | CVE-2022-34110Эксплойта нет | An issue in Micro-Star International MSI Feature Navigator v1.0.1808.0901 allows attackers to download arbitrary files regardless of file tymsi · micro-star international feature navigator | Средняя5,5 | — | 0,3 % | 12 сент. 2022 г. |
17Наблюдать | CVE-2024-1460Эксплойта нет | MSI Afterburner v4.6.5.16370 - Kernel Memory Leakmsi · afterburner · CWE-200 | Средняя4,4 | — | 0,2 % | 6 мар. 2024 г. |
17Наблюдать | CVE-2024-1443Эксплойта нет | MSI Afterburner v4.6.5.16370 - Denial of Servicemsi · afterburner · CWE-476 | Средняя4,4 | — | 0,2 % | 6 мар. 2024 г. |
- CVE-2021-2796543В плане
The MsIo64.sys driver before 1.1.19.1016 in MSI Dragon Center before 2.0.98.0 has a buffer overflow that allows privilege escalation via a c
КритическаяCVSS 9,8Proof of conceptEPSS 12 %msi · dragon center4 мар. 2021 г.
- CVE-2019-1609837Наблюдать
The driver in Micro-Star MSI Afterburner 4.6.2.15658 (aka RTCore64.sys and RTCore32.sys) allows any authenticated user to read and write to
ВысокаяCVSS 7,8Proof of conceptEPSS 20 %msi · afterburner11 сент. 2019 г.
- CVE-2022-3187735Наблюдать
An issue in the component MSI.TerminalServer.exe of MSI Center v1.0.41.0 allows attackers to escalate privileges via a crafted TCP packet.
ВысокаяCVSS 8,8Эксплойта нетEPSS 0 %msi · center28 нояб. 2022 г.
- CVE-2020-1738232Наблюдать
The MSI AmbientLink MsIo64 driver 1.0.0.8 has a Buffer Overflow (0x80102040, 0x80102044, 0x80102050,and 0x80102054).
ВысокаяCVSS 7,8Proof of conceptEPSS 2 %msi · ambientlink mslo64 firmware2 окт. 2020 г.
- CVE-2024-3687732Наблюдать
Micro-Star International Z-series motherboards (Z590, Z490, and Z790) and B-series motherboards (B760, B560, B660, and B460) with firmware 7
ВысокаяCVSS 8,2Proof of conceptEPSS 1 %12 авг. 2024 г.
- CVE-2021-2933731Наблюдать
MODAPI.sys in MSI Dragon Center 2.0.104.0 allows low-privileged users to access kernel memory and potentially escalate privileges via a craf
ВысокаяCVSS 7,8Proof of conceptEPSS 1 %msi · dragon center21 июн. 2021 г.
- CVE-2022-3853231Наблюдать
Micro-Star International Co., Ltd MSI Center 1.0.50.0 was discovered to contain a vulnerability in the component C_Features of MSI.CentralSe
ВысокаяCVSS 7,8Proof of conceptEPSS 0 %msi · center19 сент. 2022 г.
- CVE-2021-4490131Наблюдать
Micro-Star International (MSI) Dragon Center <= 2.0.116.0 is vulnerable to multiple Privilege Escalation (LPE/EoP) vulnerabilities in the at
ВысокаяCVSS 7,8Эксплойта нетEPSS 0 %msi · dragon center4 февр. 2022 г.
- CVE-2020-1314931Наблюдать
Weak permissions on the "%PROGRAMDATA%\MSI\Dragon Center" folder in Dragon Center before 2.6.2003.2401, shipped with Micro-Star MSI Gaming l
ВысокаяCVSS 7,8Эксплойта нетEPSS 0 %msi · dragon center18 мая 2020 г.
- CVE-2021-4489931Наблюдать
Micro-Star International (MSI) Center <= 1.0.31.0 is vulnerable to multiple Privilege Escalation vulnerabilities in the atidgllk.sys, atillk
ВысокаяCVSS 7,8Эксплойта нетEPSS 0 %msi · center4 февр. 2022 г.
- CVE-2021-4490331Наблюдать
Micro-Star International (MSI) Center Pro <= 2.0.16.0 is vulnerable to multiple Privilege Escalation (LPE/EoP) vulnerabilities in the atidgl
ВысокаяCVSS 7,8Эксплойта нетEPSS 0 %msi · center pro4 февр. 2022 г.
- CVE-2021-4490031Наблюдать
Micro-Star International (MSI) App Player <= 4.280.1.6309 is vulnerable to multiple Privilege Escalation (LPE/EoP) vulnerabilities in the NT
ВысокаяCVSS 7,8Эксплойта нетEPSS 0 %msi · app player4 февр. 2022 г.
- CVE-2021-3241531Наблюдать
EXEMSI MSI Wrapper Versions prior to 10.0.50 and at least since version 6.0.91 will introduce a local privilege escalation vulnerability in
ВысокаяCVSS 7,8Эксплойта нетEPSS 0 %msi · wrapper13 дек. 2022 г.
- CVE-2024-374531Наблюдать
MSI Afterburner v4.6.6.16381 Beta 3 - ACL Bypass
ВысокаяCVSS 7,8Эксплойта нетEPSS 0 %msi · msi afterburner18 мая 2024 г.
- CVE-2026-3745330Наблюдать
Insecure Permissions vulnerability in MSI NBFoundation Service v.2.0.2506.1201 allows a remote attacker to obtain sensitive information via
ВысокаяCVSS 7,5Эксплойта нетEPSS 1 %msi · center25 июн. 2026 г.
- CVE-2026-3745430Наблюдать
Insecure Permissions vulnerability in MSI NBFoundation Service v.2.0.2506.1201 allows a remote attacker to obtain sensitive information via
ВысокаяCVSS 7,5Эксплойта нетEPSS 0 %msi · center25 июн. 2026 г.
- CVE-2022-3410828Наблюдать
An issue in the Feature Navigator of Micro-Star International MSI Feature Nagivator v1.0.1808.0901 allows attackers to cause a Denial of Ser
ВысокаяCVSS 7,1Эксплойта нетEPSS 0 %msi · micro-star international feature navigator12 сент. 2022 г.
- CVE-2022-3410928Наблюдать
An issue in Micro-Star International MSI Feature Navigator v1.0.1808.0901 allows attackers to write arbitrary files to the directory \PromoP
ВысокаяCVSS 7,1Эксплойта нетEPSS 0 %msi · micro-star international feature navigator12 сент. 2022 г.
- CVE-2024-1222727Наблюдать
MSI Dragon Center IOCTL NTIOLib_X64.sys MmUnMapIoSpace null pointer dereference
СредняяCVSS 6,8Proof of conceptEPSS 0 %msi · dragon center5 дек. 2024 г.
- CVE-2022-3411022Наблюдать
An issue in Micro-Star International MSI Feature Navigator v1.0.1808.0901 allows attackers to download arbitrary files regardless of file ty
СредняяCVSS 5,5Эксплойта нетEPSS 0 %msi · micro-star international feature navigator12 сент. 2022 г.
- CVE-2024-146017Наблюдать
MSI Afterburner v4.6.5.16370 - Kernel Memory Leak
СредняяCVSS 4,4Эксплойта нетEPSS 0 %msi · afterburner6 мар. 2024 г.
- CVE-2024-144317Наблюдать
MSI Afterburner v4.6.5.16370 - Denial of Service
СредняяCVSS 4,4Эксплойта нетEPSS 0 %msi · afterburner6 мар. 2024 г.