Vulnerabilities in microsoft

9,312 results
Vexday analysis

Microsoft apresenta 41 vulnerabilidades registradas, com 29 publicadas nos últimos 90 dias, indicando ritmo elevado de descobertas recentes. Oito vulnerabilidades críticas foram identificadas, predominantemente relacionadas a traversal de diretório (CWE-22), mas nenhuma está sob exploração ativa conhecida no momento. O volume recente de falhas requer atenção contínua em patching, especialmente considerando a superfície de ataque do ecossistema Microsoft.

CVE-2021-31191MEDIUMWindows Projected File System FS Filter Driver Information Disclosure VulnerabilityEPSS 0.8%CVE-2021-34457MEDIUMWindows Remote Access Connection Manager Information Disclosure VulnerabilityEPSS 0.8%CVE-2022-22048MEDIUMBitLocker Security Feature Bypass VulnerabilityEPSS 0.8%CVE-2021-38662MEDIUMWindows Fast FAT File System Driver Information Disclosure VulnerabilityEPSS 0.8%CVE-2024-38238HIGHKernel Streaming Service Driver Elevation of Privilege VulnerabilityEPSS 0.8%CVE-2023-36726HIGHWindows Internet Key Exchange (IKE) Extension Elevation of Privilege VulnerabilityEPSS 0.8%CVE-2021-36969MEDIUMWindows Redirected Drive Buffering SubSystem Driver Information Disclosure VulnerabilityEPSS 0.8%CVE-2021-36972MEDIUMWindows SMB Information Disclosure VulnerabilityEPSS 0.8%CVE-2021-38635MEDIUMWindows Redirected Drive Buffering SubSystem Driver Information Disclosure VulnerabilityEPSS 0.8%CVE-2021-38636MEDIUMWindows Redirected Drive Buffering SubSystem Driver Information Disclosure VulnerabilityEPSS 0.8%CVE-2021-38637MEDIUMWindows Storage Information Disclosure VulnerabilityEPSS 0.8%CVE-2023-36418HIGHAzure RTOS GUIX Studio Remote Code Execution VulnerabilityEPSS 0.8%CVE-2024-21309HIGHWindows Kernel-Mode Driver Elevation of Privilege VulnerabilityEPSS 0.8%CVE-2024-20682HIGHWindows Cryptographic Services Remote Code Execution VulnerabilityEPSS 0.8%CVE-2025-21211MEDIUMSecure Boot Security Feature Bypass VulnerabilityEPSS 0.8%CVE-2023-33162MEDIUMMicrosoft Excel Information Disclosure VulnerabilityEPSS 0.8%CVE-2021-1727HIGHWindows Installer Elevation of Privilege VulnerabilityEPSS 0.8%CVE-2020-0867An elevation of privilege vulnerability exists when the Windows Update Orchestrator Service improperly handles file operations, aka 'WindowsEPSS 0.8%CVE-2020-0631An elevation of privilege vulnerability exists in the way that the Windows Search Indexer handles objects in memory, aka 'Windows Search IndEPSS 0.8%CVE-2024-38119HIGHWindows Network Address Translation (NAT) Remote Code Execution VulnerabilityEPSS 0.8%