Vulnerabilities in microsoft
9,312 resultsVexday analysis
Microsoft apresenta 41 vulnerabilidades registradas, com 29 publicadas nos últimos 90 dias, indicando ritmo elevado de descobertas recentes. Oito vulnerabilidades críticas foram identificadas, predominantemente relacionadas a traversal de diretório (CWE-22), mas nenhuma está sob exploração ativa conhecida no momento. O volume recente de falhas requer atenção contínua em patching, especialmente considerando a superfície de ataque do ecossistema Microsoft.
CVE-2023-21722MEDIUM.NET Framework Denial of Service VulnerabilityEPSS 0.9%CVE-2020-17026HIGHWindows Remote Access Elevation of Privilege VulnerabilityEPSS 0.9%CVE-2025-26630HIGHMicrosoft Access Remote Code Execution VulnerabilityEPSS 0.9%CVE-2024-20659HIGHWindows Hyper-V Security Feature Bypass VulnerabilityEPSS 0.9%CVE-2026-54733CRITICALmoodle-local_o365: Authentication bypass via unverified JWT signature in Teams SSO endpointEPSS 0.9%CVE-2023-21734HIGHMicrosoft Office Remote Code Execution VulnerabilityEPSS 0.9%CVE-2020-0745—An elevation of privilege vulnerability exists when the Windows Graphics Component improperly handles objects in memory, aka 'Windows GraphiEPSS 0.9%CVE-2020-0682—An elevation of privilege vulnerability exists in the way that the Windows Function Discovery Service handles objects in memory, aka 'WindowEPSS 0.9%CVE-2020-0678—An elevation of privilege vulnerability exists when Windows Error Reporting manager improperly handles hard links, aka 'Windows Error ReportEPSS 0.9%CVE-2023-32054HIGHVolume Shadow Copy Elevation of Privilege VulnerabilityEPSS 0.9%CVE-2020-0757—An elevation of privilege vulnerability exists when Windows improperly handles Secure Socket Shell remote commands, aka 'Windows SSH ElevatiEPSS 0.9%CVE-2024-20671MEDIUMMicrosoft Defender Security Feature Bypass VulnerabilityEPSS 0.9%CVE-2020-0725—An elevation of privilege vulnerability exists in Windows when the Win32k component fails to properly handle objects in memory, aka 'Win32k EPSS 0.9%CVE-2020-0724—An elevation of privilege vulnerability exists in Windows when the Win32k component fails to properly handle objects in memory, aka 'Win32k EPSS 0.9%CVE-2020-0685—An elevation of privilege vulnerability exists when Windows improperly handles COM object creation, aka 'Windows COM Server Elevation of PriEPSS 0.9%CVE-2019-1323—An elevation of privilege vulnerability exists in the Microsoft Windows Update Client when it does not properly handle privileges, aka 'MicrEPSS 0.9%CVE-2020-0719—An elevation of privilege vulnerability exists in Windows when the Win32k component fails to properly handle objects in memory, aka 'Win32k EPSS 0.9%CVE-2020-0845—An elevation of privilege vulnerability exists in the way that the Windows Network Connections Service handles objects in memory, aka 'WindoEPSS 0.9%CVE-2023-36712HIGHWindows Kernel Elevation of Privilege VulnerabilityEPSS 0.9%CVE-2026-32213CRITICALAzure AI Foundry Elevation of Privilege VulnerabilityEPSS 0.9%