Vulnerabilidades em microsoft

10.810 resultados
Análise Vexday

Microsoft apresenta 41 vulnerabilidades registradas, com 29 publicadas nos últimos 90 dias, indicando ritmo elevado de descobertas recentes. Oito vulnerabilidades críticas foram identificadas, predominantemente relacionadas a traversal de diretório (CWE-22), mas nenhuma está sob exploração ativa conhecida no momento. O volume recente de falhas requer atenção contínua em patching, especialmente considerando a superfície de ataque do ecossistema Microsoft.

CVE-2020-17124HIGHMicrosoft PowerPoint Remote Code Execution VulnerabilityEPSS 3.5%CVE-2020-17125HIGHMicrosoft Excel Remote Code Execution VulnerabilityEPSS 3.5%CVE-2021-34444MEDIUMWindows DNS Server Denial of Service VulnerabilityEPSS 3.5%CVE-2019-1229—Dynamics On-Premise Elevation of Privilege VulnerabilityEPSS 3.5%CVE-2018-8512—A security feature bypass vulnerability exists in Microsoft Edge when the Edge Content Security Policy (CSP) fails to properly validate certEPSS 3.5%CVE-2024-30103HIGHMicrosoft Outlook Remote Code Execution VulnerabilityEPSS 3.4%CVE-2018-8406HIGHAn elevation of privilege vulnerability exists when the DirectX Graphics Kernel (DXGKRNL) driver improperly handles objects in memory, aka "EPSS 3.4%KEVCVE-2018-8405HIGHAn elevation of privilege vulnerability exists when the DirectX Graphics Kernel (DXGKRNL) driver improperly handles objects in memory, aka "EPSS 3.4%KEVCVE-2018-0971—An information disclosure vulnerability exists in the Windows kernel that could allow an attacker to retrieve information that could lead toEPSS 3.4%CVE-2018-0969—An information disclosure vulnerability exists in the Windows kernel that could allow an attacker to retrieve information that could lead toEPSS 3.4%CVE-2022-30150HIGHWindows Defender Remote Credential Guard Elevation of Privilege VulnerabilityEPSS 3.4%CVE-2018-0973—An information disclosure vulnerability exists in the Windows kernel that could allow an attacker to retrieve information that could lead toEPSS 3.4%CVE-2018-0970—An information disclosure vulnerability exists in the Windows kernel that could allow an attacker to retrieve information that could lead toEPSS 3.4%CVE-2018-0972—An information disclosure vulnerability exists in the Windows kernel that could allow an attacker to retrieve information that could lead toEPSS 3.4%CVE-2018-0974—An information disclosure vulnerability exists in the Windows kernel that could allow an attacker to retrieve information that could lead toEPSS 3.4%CVE-2019-0938—An elevation of privilege vulnerability exists in Microsoft Edge that could allow an attacker to escape from the AppContainer sandbox in theEPSS 3.4%CVE-2021-1708MEDIUMWindows GDI+ Information Disclosure VulnerabilityEPSS 3.4%CVE-2025-27738MEDIUMWindows Resilient File System (ReFS) Information Disclosure VulnerabilityEPSS 3.4%CVE-2021-34504HIGHWindows Address Book Remote Code Execution VulnerabilityEPSS 3.4%CVE-2020-1212—An elevation of privilege vulnerability exists when an OLE Automation component improperly handles memory.To exploit this vulnerability, an EPSS 3.4%