Vulnerabilities in microsoft
9,312 resultsVexday analysis
Microsoft apresenta 41 vulnerabilidades registradas, com 29 publicadas nos últimos 90 dias, indicando ritmo elevado de descobertas recentes. Oito vulnerabilidades críticas foram identificadas, predominantemente relacionadas a traversal de diretório (CWE-22), mas nenhuma está sob exploração ativa conhecida no momento. O volume recente de falhas requer atenção contínua em patching, especialmente considerando a superfície de ataque do ecossistema Microsoft.
CVE-2021-26899HIGHWindows UPnP Device Host Elevation of Privilege VulnerabilityEPSS 0.9%CVE-2024-38066HIGHWindows Win32k Elevation of Privilege VulnerabilityEPSS 0.9%CVE-2024-49101MEDIUMWireless Wide Area Network Service (WwanSvc) Elevation of Privilege VulnerabilityEPSS 0.9%CVE-2024-49109MEDIUMWireless Wide Area Network Service (WwanSvc) Elevation of Privilege VulnerabilityEPSS 0.9%CVE-2023-38164HIGHMicrosoft Dynamics 365 (on-premises) Cross-site Scripting VulnerabilityEPSS 0.9%CVE-2019-1087—An elevation of privilege exists in Windows Audio Service, aka 'Windows Audio Service Elevation of Privilege Vulnerability'. This CVE ID is EPSS 0.9%CVE-2020-1247—An elevation of privilege vulnerability exists in Windows when the Windows kernel-mode driver fails to properly handle objects in memory, akEPSS 0.9%CVE-2024-21406HIGHWindows Printing Service Spoofing VulnerabilityEPSS 0.9%CVE-2019-1085—An elevation of privilege vulnerability exists in the way that the wlansvc.dll handles objects in memory, aka 'Windows WLAN Service ElevatioEPSS 0.9%CVE-2019-1088—An elevation of privilege exists in Windows Audio Service, aka 'Windows Audio Service Elevation of Privilege Vulnerability'. This CVE ID is EPSS 0.9%CVE-2020-1079—An elevation of privilege vulnerability exists when the Windows fails to properly handle objects in memory, aka 'Microsoft Windows ElevationEPSS 0.9%CVE-2024-38177HIGHWindows App Installer Spoofing VulnerabilityEPSS 0.9%CVE-2022-38010HIGHMicrosoft Office Visio Remote Code Execution VulnerabilityEPSS 0.9%CVE-2020-1587—Windows Ancillary Function Driver for WinSock Elevation of Privilege VulnerabilityEPSS 0.9%CVE-2020-1579—Windows Function Discovery SSDP Provider Elevation of Privilege VulnerabilityEPSS 0.9%CVE-2020-1262—An elevation of privilege vulnerability exists when the Windows kernel fails to properly handle objects in memory, aka 'Windows Kernel ElevaEPSS 0.9%CVE-2019-1086—An elevation of privilege exists in Windows Audio Service, aka 'Windows Audio Service Elevation of Privilege Vulnerability'. This CVE ID is EPSS 0.9%CVE-2020-1266—An elevation of privilege vulnerability exists when the Windows kernel fails to properly handle objects in memory, aka 'Windows Kernel ElevaEPSS 0.9%CVE-2024-43470HIGHAzure Network Watcher VM Agent Elevation of Privilege VulnerabilityEPSS 0.9%CVE-2025-54107MEDIUMMapUrlToZone Security Feature Bypass VulnerabilityEPSS 0.9%