Vulnerabilidades en microsoft
9330 resultadosAnálisis Vexday
Microsoft apresenta 41 vulnerabilidades registradas, com 29 publicadas nos últimos 90 dias, indicando ritmo elevado de descobertas recentes. Oito vulnerabilidades críticas foram identificadas, predominantemente relacionadas a traversal de diretório (CWE-22), mas nenhuma está sob exploração ativa conhecida no momento. O volume recente de falhas requer atenção contínua em patching, especialmente considerando a superfície de ataque do ecossistema Microsoft.
CVE-2026-58602HIGHWindows Kernel-Mode Driver Elevation of Privilege VulnerabilityEPSS 0.2%CVE-2026-57980MEDIUMMicrosoft Edge (Chromium-based) Tampering VulnerabilityEPSS 0.2%CVE-2026-58601HIGHVirtual Hard Disk (VHD) Miniport Driver Elevation of Privilege VulernabilityEPSS 0.2%CVE-2026-33101HIGHWindows Print Spooler Elevation of Privilege VulnerabilityEPSS 0.2%CVE-2025-59033HIGHThe Microsoft vulnerable driver block list is implemented as Windows Defender Application Control (WDAC) policy. Entries that specify only tEPSS 0.2%CVE-2026-42832HIGHMicrosoft Office Spoofing VulnerabilityEPSS 0.2%CVE-2022-50238HIGHThe on-endpoint Microsoft vulnerable driver blocklist is not fully synchronized with the online Microsoft recommended driver block rules. SoEPSS 0.2%CVE-2026-32214MEDIUMUniversal Plug and Play (upnp.dll) Information Disclosure VulnerabilityEPSS 0.2%CVE-2026-33103MEDIUMMicrosoft Dynamics 365 (On-Premises) Information Disclosure VulnerabilityEPSS 0.2%CVE-2026-50451HIGHWindows Routing and Remote Access Service (RRAS) Elevation of Privilege VulnerabilityEPSS 0.2%CVE-2025-59288MEDIUMPlaywright Spoofing VulnerabilityEPSS 0.2%CVE-2025-59289HIGHWindows Bluetooth Service Elevation of Privilege VulnerabilityEPSS 0.2%CVE-2026-50392HIGHWindows Secure Kernel Mode Elevation of Privilege VulnerabilityEPSS 0.2%CVE-2026-35436HIGHMicrosoft Office Click-To-Run Elevation of Privilege VulnerabilityEPSS 0.2%CVE-2026-40381HIGHAzure Connected Machine Agent Elevation of Privilege VulnerabilityEPSS 0.2%CVE-2026-21221HIGHCapability Access Management Service (camsvc) Elevation of Privilege VulnerabilityEPSS 0.2%CVE-2026-47648HIGHWindows Storage Elevation of Privilege VulnerabilityEPSS 0.2%CVE-2026-50295MEDIUMWindows Zero Trust DNS Security Feature Bypass VulnerabilityEPSS 0.2%CVE-2026-49171HIGHWindows Speech Runtime Elevation of Privilege VulnerabilityEPSS 0.2%CVE-2026-57978MEDIUMMicrosoft Edge (Chromium-based) Spoofing VulnerabilityEPSS 0.2%