Vulnerabilidades en microsoft
9766 resultadosAnálisis Vexday
Microsoft apresenta 41 vulnerabilidades registradas, com 29 publicadas nos últimos 90 dias, indicando ritmo elevado de descobertas recentes. Oito vulnerabilidades críticas foram identificadas, predominantemente relacionadas a traversal de diretório (CWE-22), mas nenhuma está sob exploração ativa conhecida no momento. O volume recente de falhas requer atenção contínua em patching, especialmente considerando a superfície de ataque do ecossistema Microsoft.
CVE-2019-0567—A remote code execution vulnerability exists in the way that the Chakra scripting engine handles objects in memory in Microsoft Edge, aka "CEPSS 80.0%CVE-2022-21972HIGHWindows Point-to-Point Tunneling Protocol Remote Code Execution VulnerabilityEPSS 79.8%CVE-2026-41089CRITICALWindows Netlogon Remote Code Execution VulnerabilityEPSS 79.6%CVE-2022-34721CRITICALWindows Internet Key Exchange (IKE) Protocol Extensions Remote Code Execution VulnerabilityEPSS 78.5%CVE-2023-24880MEDIUMWindows SmartScreen Security Feature Bypass VulnerabilityEPSS 78.2%KEVCVE-2021-1732HIGHWindows Win32k Elevation of Privilege VulnerabilityEPSS 77.8%KEVCVE-2019-1358—A remote code execution vulnerability exists when the Windows Jet Database Engine improperly handles objects in memory, aka 'Jet Database EnEPSS 77.7%CVE-2022-41080HIGHMicrosoft Exchange Server Elevation of Privilege VulnerabilityEPSS 77.3%KEVCVE-2023-36899HIGHASP.NET Elevation of Privilege VulnerabilityEPSS 77.1%CVE-2026-50522CRITICALMicrosoft SharePoint Remote Code Execution VulnerabilityEPSS 77.0%KEVCVE-2022-26937CRITICALWindows Network File System Remote Code Execution VulnerabilityEPSS 76.5%CVE-2022-38053HIGHMicrosoft SharePoint Server Remote Code Execution VulnerabilityEPSS 76.4%CVE-2022-44698MEDIUMWindows SmartScreen Security Feature Bypass VulnerabilityEPSS 76.3%KEVCVE-2019-1439—An information disclosure vulnerability exists when the Windows GDI component improperly discloses the contents of its memory, aka 'Windows EPSS 75.9%CVE-2019-1181CRITICALRemote Desktop Services Remote Code Execution VulnerabilityEPSS 75.8%CVE-2024-38077CRITICALWindows Remote Desktop Licensing Service Remote Code Execution VulnerabilityEPSS 75.4%CVE-2018-8298HIGHA remote code execution vulnerability exists in the way that the ChakraCore scripting engine handles objects in memory, aka "Scripting EnginEPSS 75.3%KEVCVE-2020-0609—A remote code execution vulnerability exists in Windows Remote Desktop Gateway (RD Gateway) when an unauthenticated attacker connects to theEPSS 74.9%CVE-2022-30136CRITICALWindows Network File System Remote Code Execution VulnerabilityEPSS 74.7%CVE-2023-36756HIGHMicrosoft Exchange Server Remote Code Execution VulnerabilityEPSS 74.7%