Vulnerabilidades en microsoft
9312 resultadosAnálisis Vexday
Microsoft apresenta 41 vulnerabilidades registradas, com 29 publicadas nos últimos 90 dias, indicando ritmo elevado de descobertas recentes. Oito vulnerabilidades críticas foram identificadas, predominantemente relacionadas a traversal de diretório (CWE-22), mas nenhuma está sob exploração ativa conhecida no momento. O volume recente de falhas requer atenção contínua em patching, especialmente considerando a superfície de ataque do ecossistema Microsoft.
CVE-2023-21750HIGHWindows Kernel Elevation of Privilege VulnerabilityEPSS 0.7%CVE-2020-1002—An elevation of privilege vulnerability exists when the MpSigStub.exe for Defender allows file deletion in arbitrary locations.To exploit thEPSS 0.7%CVE-2024-30030HIGHWin32k Elevation of Privilege VulnerabilityEPSS 0.7%CVE-2022-33675HIGHAzure Site Recovery Elevation of Privilege VulnerabilityEPSS 0.7%CVE-2026-32175MEDIUM.NET Core Tampering VulnerabilityEPSS 0.7%CVE-2024-29992MEDIUMAzure Identity Library for .NET Information Disclosure VulnerabilityEPSS 0.7%CVE-2024-30028HIGHWin32k Elevation of Privilege VulnerabilityEPSS 0.7%CVE-2026-33109CRITICALAzure Managed Instance for Apache Cassandra Remote Code Execution VulnerabilityEPSS 0.7%CVE-2025-49744HIGHWindows Graphics Component Elevation of Privilege VulnerabilityEPSS 0.7%CVE-2021-26413MEDIUMWindows Installer Spoofing VulnerabilityEPSS 0.7%CVE-2020-0785—An elevation of privilege vulnerability exists when the Windows User Profile Service (ProfSvc) improperly handles symlinks, aka 'Windows UseEPSS 0.7%CVE-2024-38079HIGHWindows Graphics Component Elevation of Privilege VulnerabilityEPSS 0.7%CVE-2024-38070HIGHWindows LockDown Policy (WLDP) Security Feature Bypass VulnerabilityEPSS 0.7%CVE-2020-1437—An elevation of privilege vulnerability exists in the way that the Windows Network Location Awareness Service handles objects in memory, akaEPSS 0.7%CVE-2020-1360—An elevation of privilege vulnerability exists when the Windows Profile Service improperly handles file operations, aka 'Windows Profile SerEPSS 0.7%CVE-2020-1087—An elevation of privilege vulnerability exists in the way that the Windows Kernel handles objects in memory, aka 'Windows Kernel Elevation oEPSS 0.7%CVE-2020-1124—An elevation of privilege vulnerability exists when the Windows State Repository Service improperly handles objects in memory, aka 'Windows EPSS 0.7%CVE-2020-1385—An elevation of privilege vulnerability exists in the way that the Windows Credential Picker handles objects in memory, aka 'Windows CredentEPSS 0.7%CVE-2020-1085—An elevation of privilege vulnerability exists in the way that the Windows Function Discovery Service handles objects in memory, aka 'WindowEPSS 0.7%CVE-2020-1368—An elevation of privilege vulnerability exists in the way that the Credential Enrollment Manager service handles objects in memory, aka 'WinEPSS 0.7%