Vulnerabilidades em microsoft

10.810 resultados
Análise Vexday

Microsoft apresenta 41 vulnerabilidades registradas, com 29 publicadas nos últimos 90 dias, indicando ritmo elevado de descobertas recentes. Oito vulnerabilidades críticas foram identificadas, predominantemente relacionadas a traversal de diretório (CWE-22), mas nenhuma está sob exploração ativa conhecida no momento. O volume recente de falhas requer atenção contínua em patching, especialmente considerando a superfície de ataque do ecossistema Microsoft.

CVE-2020-1209—An elevation of privilege vulnerability exists in the way that the Windows Network List Service handles objects in memory, aka 'Windows NetwEPSS 3.3%CVE-2019-0958—An elevation of privilege vulnerability exists when Microsoft SharePoint Server does not properly sanitize a specially crafted web request tEPSS 3.3%CVE-2019-1038HIGHMicrosoft Browser Memory Corruption VulnerabilityEPSS 3.3%CVE-2019-1080HIGHScripting Engine Memory Corruption VulnerabilityEPSS 3.3%CVE-2019-0957—An elevation of privilege vulnerability exists when Microsoft SharePoint Server does not properly sanitize a specially crafted web request tEPSS 3.3%CVE-2019-0921—An spoofing vulnerability exists when Internet Explorer improperly handles URLs, aka 'Internet Explorer Spoofing Vulnerability'.EPSS 3.3%CVE-2020-1379MEDIUMMedia Foundation Memory Corruption VulnerabilityEPSS 3.3%CVE-2019-1133HIGHScripting Engine Memory Corruption VulnerabilityEPSS 3.3%CVE-2018-8214—An elevation of privilege vulnerability exists in Windows when Desktop Bridge does not properly manage the virtual registry, aka "Windows DeEPSS 3.3%CVE-2021-41338MEDIUMWindows AppContainer Firewall Rules Security Feature Bypass VulnerabilityEPSS 3.3%CVE-2023-21812HIGHWindows Common Log File System Driver Elevation of Privilege VulnerabilityEPSS 3.3%CVE-2020-17067HIGHMicrosoft Excel Security Feature Bypass VulnerabilityEPSS 3.3%CVE-2020-1304—An elevation of privilege vulnerability exists when the Windows Runtime improperly handles objects in memory, aka 'Windows Runtime ElevationEPSS 3.3%CVE-2020-1282—An elevation of privilege vulnerability exists when the Windows Runtime improperly handles objects in memory, aka 'Windows Runtime ElevationEPSS 3.3%CVE-2020-16937MEDIUM.NET Framework Information Disclosure VulnerabilityEPSS 3.3%CVE-2024-20677HIGHMicrosoft Office Remote Code Execution VulnerabilityEPSS 3.3%CVE-2021-31936HIGHMicrosoft Accessibility Insights for Web Information Disclosure VulnerabilityEPSS 3.3%CVE-2018-8454—An information disclosure vulnerability exists when Windows Audio Service fails to properly handle objects in memory, aka "Windows Audio SerEPSS 3.3%CVE-2022-26831HIGHWindows Lightweight Directory Access Protocol (LDAP) Denial of Service VulnerabilityEPSS 3.3%CVE-2021-24112HIGH.NET Core Remote Code Execution VulnerabilityEPSS 3.3%