Vulnerabilities in microsoft
9,312 resultsVexday analysis
Microsoft apresenta 41 vulnerabilidades registradas, com 29 publicadas nos últimos 90 dias, indicando ritmo elevado de descobertas recentes. Oito vulnerabilidades críticas foram identificadas, predominantemente relacionadas a traversal de diretório (CWE-22), mas nenhuma está sob exploração ativa conhecida no momento. O volume recente de falhas requer atenção contínua em patching, especialmente considerando a superfície de ataque do ecossistema Microsoft.
CVE-2025-30398HIGHNuance PowerScribe 360 Information Disclosure VulnerabilityEPSS 0.8%CVE-2020-1404—An elevation of privilege vulnerability exists when the Windows Runtime improperly handles objects in memory, aka 'Windows Runtime ElevationEPSS 0.8%CVE-2020-1370—An elevation of privilege vulnerability exists when the Windows Runtime improperly handles objects in memory, aka 'Windows Runtime ElevationEPSS 0.8%CVE-2020-1373—An elevation of privilege vulnerability exists in the way that the Windows Network Connections Service handles objects in memory, aka 'WindoEPSS 0.8%CVE-2020-1413—An elevation of privilege vulnerability exists when the Windows Runtime improperly handles objects in memory, aka 'Windows Runtime ElevationEPSS 0.8%CVE-2020-1414—An elevation of privilege vulnerability exists when the Windows Runtime improperly handles objects in memory, aka 'Windows Runtime ElevationEPSS 0.8%CVE-2020-1415—An elevation of privilege vulnerability exists when the Windows Runtime improperly handles objects in memory, aka 'Windows Runtime ElevationEPSS 0.8%CVE-2024-38243HIGHKernel Streaming Service Driver Elevation of Privilege VulnerabilityEPSS 0.8%CVE-2020-1249—An elevation of privilege vulnerability exists when the Windows Runtime improperly handles objects in memory, aka 'Windows Runtime ElevationEPSS 0.8%CVE-2020-1270—An elevation of privilege vulnerability exists in the way that the wlansvc.dll handles objects in memory, aka 'Windows WLAN Service ElevatioEPSS 0.8%CVE-2023-36760HIGH3D Viewer Remote Code Execution VulnerabilityEPSS 0.8%CVE-2020-1324—An elevation of privilege (user to user) vulnerability exists in Windows Security Health Service when handling certain objects in memory.To EPSS 0.8%CVE-2020-1438—An elevation of privilege vulnerability exists in the way that the Windows Network Connections Service handles objects in memory, aka 'WindoEPSS 0.8%CVE-2020-1384—An elevation of privilege vulnerability exists when the Windows Cryptography Next Generation (CNG) Key Isolation service improperly handles EPSS 0.8%CVE-2020-1390—An elevation of privilege vulnerability exists in the way that the Windows Network Connections Service handles objects in memory, aka 'WindoEPSS 0.8%CVE-2020-1394—An elevation of privilege vulnerability exists in the way that the Windows Geolocation Framework handles objects in memory, aka 'Windows EleEPSS 0.8%CVE-2020-1427—An elevation of privilege vulnerability exists in the way that the Windows Network Connections Service handles objects in memory, aka 'WindoEPSS 0.8%CVE-2020-1396—An elevation of privilege vulnerability exists when Windows improperly handles calls to Advanced Local Procedure Call (ALPC).An attacker whoEPSS 0.8%CVE-2020-1359—An elevation of privilege vulnerability exists when the Windows Cryptography Next Generation (CNG) Key Isolation service improperly handles EPSS 0.8%CVE-2020-1387—An elevation of privilege vulnerability exists in the way the Windows Push Notification Service handles objects in memory, aka 'Windows PushEPSS 0.8%