Vulnerabilities in microsoft

9,312 results
Vexday analysis

Microsoft apresenta 41 vulnerabilidades registradas, com 29 publicadas nos últimos 90 dias, indicando ritmo elevado de descobertas recentes. Oito vulnerabilidades críticas foram identificadas, predominantemente relacionadas a traversal de diretório (CWE-22), mas nenhuma está sob exploração ativa conhecida no momento. O volume recente de falhas requer atenção contínua em patching, especialmente considerando a superfície de ataque do ecossistema Microsoft.

CVE-2021-26899HIGHWindows UPnP Device Host Elevation of Privilege VulnerabilityEPSS 0.9%CVE-2024-38066HIGHWindows Win32k Elevation of Privilege VulnerabilityEPSS 0.9%CVE-2024-49101MEDIUMWireless Wide Area Network Service (WwanSvc) Elevation of Privilege VulnerabilityEPSS 0.9%CVE-2024-49109MEDIUMWireless Wide Area Network Service (WwanSvc) Elevation of Privilege VulnerabilityEPSS 0.9%CVE-2023-38164HIGHMicrosoft Dynamics 365 (on-premises) Cross-site Scripting VulnerabilityEPSS 0.9%CVE-2019-1087An elevation of privilege exists in Windows Audio Service, aka 'Windows Audio Service Elevation of Privilege Vulnerability'. This CVE ID is EPSS 0.9%CVE-2020-1247An elevation of privilege vulnerability exists in Windows when the Windows kernel-mode driver fails to properly handle objects in memory, akEPSS 0.9%CVE-2024-21406HIGHWindows Printing Service Spoofing VulnerabilityEPSS 0.9%CVE-2019-1085An elevation of privilege vulnerability exists in the way that the wlansvc.dll handles objects in memory, aka 'Windows WLAN Service ElevatioEPSS 0.9%CVE-2019-1088An elevation of privilege exists in Windows Audio Service, aka 'Windows Audio Service Elevation of Privilege Vulnerability'. This CVE ID is EPSS 0.9%CVE-2020-1079An elevation of privilege vulnerability exists when the Windows fails to properly handle objects in memory, aka 'Microsoft Windows ElevationEPSS 0.9%CVE-2024-38177HIGHWindows App Installer Spoofing VulnerabilityEPSS 0.9%CVE-2022-38010HIGHMicrosoft Office Visio Remote Code Execution VulnerabilityEPSS 0.9%CVE-2020-1587Windows Ancillary Function Driver for WinSock Elevation of Privilege VulnerabilityEPSS 0.9%CVE-2020-1579Windows Function Discovery SSDP Provider Elevation of Privilege VulnerabilityEPSS 0.9%CVE-2020-1262An elevation of privilege vulnerability exists when the Windows kernel fails to properly handle objects in memory, aka 'Windows Kernel ElevaEPSS 0.9%CVE-2019-1086An elevation of privilege exists in Windows Audio Service, aka 'Windows Audio Service Elevation of Privilege Vulnerability'. This CVE ID is EPSS 0.9%CVE-2020-1266An elevation of privilege vulnerability exists when the Windows kernel fails to properly handle objects in memory, aka 'Windows Kernel ElevaEPSS 0.9%CVE-2024-43470HIGHAzure Network Watcher VM Agent Elevation of Privilege VulnerabilityEPSS 0.9%CVE-2025-54107MEDIUMMapUrlToZone Security Feature Bypass VulnerabilityEPSS 0.9%