Vulnerabilities in microsoft
9,312 resultsVexday analysis
Microsoft apresenta 41 vulnerabilidades registradas, com 29 publicadas nos últimos 90 dias, indicando ritmo elevado de descobertas recentes. Oito vulnerabilidades críticas foram identificadas, predominantemente relacionadas a traversal de diretório (CWE-22), mas nenhuma está sob exploração ativa conhecida no momento. O volume recente de falhas requer atenção contínua em patching, especialmente considerando a superfície de ataque do ecossistema Microsoft.
CVE-2020-1081—An elevation of privilege vulnerability exists when the Windows Printer Service improperly validates file paths while loading printer driverEPSS 0.8%CVE-2020-1111—An elevation of privilege vulnerability exists when Windows improperly handles calls to Clipboard Service, aka 'Windows Clipboard Service ElEPSS 0.8%CVE-2025-47955HIGHWindows Remote Access Connection Manager Elevation of Privilege VulnerabilityEPSS 0.8%CVE-2020-1137—An elevation of privilege vulnerability exists in the way the Windows Push Notification Service handles objects in memory, aka 'Windows PushEPSS 0.8%CVE-2020-1110—An elevation of privilege vulnerability exists when the Windows Update Stack fails to properly handle objects in memory, aka 'Windows UpdateEPSS 0.8%CVE-2020-1068—An elevation of privilege vulnerability exists in Windows Media Service that allows file creation in arbitrary locations.To exploit the vulnEPSS 0.8%CVE-2020-1166—An elevation of privilege vulnerability exists when Windows improperly handles calls to Clipboard Service, aka 'Windows Clipboard Service ElEPSS 0.8%CVE-2020-1197—An elevation of privilege vulnerability exists when Windows Error Reporting manager improperly handles a process crash, aka 'Windows Error REPSS 0.8%CVE-2020-1154—An elevation of privilege vulnerability exists when the Windows Common Log File System (CLFS) driver improperly handles objects in memory, aEPSS 0.8%CVE-2020-1140—An elevation of privilege vulnerability exists when DirectX improperly handles objects in memory, aka 'DirectX Elevation of Privilege VulnerEPSS 0.8%CVE-2020-0916—An elevation of privilege vulnerability exists in the way that the Windows Graphics Device Interface (GDI) handles objects in memory, aka 'WEPSS 0.8%CVE-2020-1142—An elevation of privilege vulnerability exists in the way that the Windows Graphics Device Interface (GDI) handles objects in memory, aka 'WEPSS 0.8%CVE-2020-1114—An elevation of privilege vulnerability exists when the Windows kernel fails to properly handle objects in memory, aka 'Windows Kernel ElevaEPSS 0.8%CVE-2020-1165—An elevation of privilege vulnerability exists when Windows improperly handles calls to Clipboard Service, aka 'Windows Clipboard Service ElEPSS 0.8%CVE-2020-0915—An elevation of privilege vulnerability exists in the way that the Windows Graphics Device Interface (GDI) handles objects in memory, aka 'WEPSS 0.8%CVE-2020-1121—An elevation of privilege vulnerability exists when Windows improperly handles calls to Clipboard Service, aka 'Windows Clipboard Service ElEPSS 0.8%CVE-2020-1132—An elevation of privilege vulnerability exists when Windows Error Reporting manager improperly handles file and folder links, aka 'Windows EEPSS 0.8%CVE-2020-1254—An elevation of privilege vulnerability exists when Windows Modules Installer Service improperly handles class object members.A locally authEPSS 0.8%CVE-2020-1201—An elevation of privilege vulnerability exists in the way the Windows Now Playing Session Manager handles objects in memory, aka 'Windows NoEPSS 0.8%CVE-2020-1138—An elevation of privilege vulnerability exists when the Storage Service improperly handles file operations, aka 'Windows Storage Service EleEPSS 0.8%