Predictive Vulnerability Intelligence.

Product

  • Product
  • Pricing
  • Documentation

Company

  • About
  • Partnerships
  • Blog
  • Support

Legal

  • Terms
  • Privacy
  • Data Licensing

© 2026 FAUCET Technologies LLC. All rights reserved.

Msi

First CVE: Sep 11, 2019Active for: 7 yearsTotal CVEs: 21
50.1
VTI Score
TOP TARGET

MSI manufactures system-optimization and overclocking software for consumer and enthusiast hardware, with vulnerabilities concentrating in products such as Dragon Center, Afterburner, and its feature navigator utilities. The exposure recurs through memory-safety weaknesses including buffer overflows and out-of-bounds writes, alongside information-disclosure flaws typical of privileged system-level software; a meaningful share of these disclosures reach serious severity and tend to acquire public exploit tooling. Current exploitation activity and exposure counts are shown alongside this summary.

FAUCET AI Generated
21
Total CVEs
More Total CVEs than 96% of tracked vendors
0.3
Avg CVEs / Product / Year
More Avg CVEs / Product / Year than 3% of tracked vendors
7.4
Avg CVSS Score
Higher Avg CVSS Score than 56% of tracked vendors
0.0%
In CISA KEV
Bottom 1%

Trends Over Time

The number and severity of CVEs published that impact products developed by Msi over time

Volume of CVEsAvg CVSS Base Score
First CVE
Sep 11, 2019
6 years ago
Most Recent CVE
Jun 25, 2026
29 days ago

Products(9 total)

Top CVEs

Signals from CVEs in this vendor scope (21 CVEs).

21 CVEs · Highest risk first

CVEPublishedCVSSRiskKEVExploit
CVE-2021-27965CRITICAL
The MsIo64.sys driver before 1.1.19.1016 in MSI Dragon Center before 2.0.98.0 has a buffer overflow that allows privilege escalation via a crafted 0x80102040, 0x80102044, 0x8010205
Mar 5, 20219.837NONO
CVE-2019-16098HIGH
The driver in Micro-Star MSI Afterburner 4.6.2.15658 (aka RTCore64.sys and RTCore32.sys) allows any authenticated user to read and write to arbitrary memory, I/O ports, and MSRs. T
Sep 11, 20197.835NONO
CVE-2020-17382HIGH
The MSI AmbientLink MsIo64 driver 1.0.0.8 has a Buffer Overflow (0x80102040, 0x80102044, 0x80102050,and 0x80102054).
Oct 2, 20207.832NOYES
CVE-2026-37453HIGH
Insecure Permissions vulnerability in MSI NBFoundation Service v.2.0.2506.1201 allows a remote attacker to obtain sensitive information via the MSI_SERVICE_2 pipe
Jun 25, 20267.530NONO
CVE-2026-37454HIGH
Insecure Permissions vulnerability in MSI NBFoundation Service v.2.0.2506.1201 allows a remote attacker to obtain sensitive information via the 3DES-ECB encryption
Jun 25, 20267.530NONO
CVE-2022-31877HIGH
An issue in the component MSI.TerminalServer.exe of MSI Center v1.0.41.0 allows attackers to escalate privileges via a crafted TCP packet.
Nov 28, 20228.830NONO
CVE-2021-32415HIGH
EXEMSI MSI Wrapper Versions prior to 10.0.50 and at least since version 6.0.91 will introduce a local privilege escalation vulnerability in installers it creates.
Dec 13, 20227.828NONO
CVE-2022-34108HIGH
An issue in the Feature Navigator of Micro-Star International MSI Feature Nagivator v1.0.1808.0901 allows attackers to cause a Denial of Service (DoS) via a crafted image or video
Sep 12, 20227.126NONO
CVE-2022-38532HIGH
Micro-Star International Co., Ltd MSI Center 1.0.50.0 was discovered to contain a vulnerability in the component C_Features of MSI.CentralServer.exe. This vulnerability allows atta
Sep 19, 20227.825NONO
CVE-2021-44903HIGH
Micro-Star International (MSI) Center Pro <= 2.0.16.0 is vulnerable to multiple Privilege Escalation (LPE/EoP) vulnerabilities in the atidgllk.sys, atillk64.sys, MODAPI.sys, NTIOLi
Feb 4, 20227.825NONO
View all 21 CVEs →

CVE Severity & Scoring

Severity distribution of CVEs that affect this vendor's products21 CVEs
14%
81%
Severity distribution among all CVEs352,294 CVEs
45%
40%
11%
MediumHighCritical
Attack Vector
Local17 (81.0%)
Network4 (19.0%)
Unknown0 (0.0%)
Physical0 (0.0%)
Adjacent Network0 (0.0%)
Attack Complexity
Low19 (90.5%)
High2 (9.5%)
Unknown0 (0.0%)
User Interaction
None20 (95.2%)
Unknown0 (0.0%)
Required1 (4.8%)
Privileges Required
Low13 (61.9%)
High2 (9.5%)
None6 (28.6%)
Unknown0 (0.0%)

Exploit Exposure

Signals from CVEs in this vendor scope (21 CVEs).

CISA KEV
0 CVEs
0.0% of CVEs· Bottom 1%
Metasploit
0 CVEs
0.0% of CVEs· Bottom 1%
Nuclei
0 CVEs
0.0% of CVEs· Bottom 1%
ExploitDB
1 CVE
4.8% of CVEs· 75th percentile

Social Chatter

An overview of all social media posts that mention a CVE ID that affects a product developed by Msi.

Media Mentions

Media articles that mention a CVE ID that affects a product developed by Msi — matched by CVE ID, not by vendor name.

Top CNAs Publishing CVEs For Msi's Products

View all 2 CNAs →

Top CWEs