Vulnerabilidades em microsoft

10.810 resultados
Análise Vexday

Microsoft apresenta 41 vulnerabilidades registradas, com 29 publicadas nos últimos 90 dias, indicando ritmo elevado de descobertas recentes. Oito vulnerabilidades críticas foram identificadas, predominantemente relacionadas a traversal de diretório (CWE-22), mas nenhuma está sob exploração ativa conhecida no momento. O volume recente de falhas requer atenção contínua em patching, especialmente considerando a superfície de ataque do ecossistema Microsoft.

CVE-2018-8448—An elevation of privilege vulnerability exists when Microsoft Exchange Outlook Web Access (OWA) fails to properly handle web requests, aka "EPSS 3.2%CVE-2018-0961—A remote code execution vulnerability exists when Windows Hyper-V on a host server fails to properly validate vSMB packet data, aka "Hyper-VEPSS 3.2%CVE-2020-17078HIGHRaw Image Extension Remote Code Execution VulnerabilityEPSS 3.2%CVE-2022-38034HIGHWindows Workstation Service Elevation of Privilege VulnerabilityEPSS 3.2%CVE-2020-1237—An elevation of privilege vulnerability exists in the way that the Windows Kernel handles objects in memory, aka 'Windows Kernel Elevation oEPSS 3.2%CVE-2020-1292—An elevation of privilege vulnerability exists in OpenSSH for Windows when it does not properly restrict access to configuration settings, aEPSS 3.2%CVE-2024-43582HIGHRemote Desktop Protocol Server Remote Code Execution VulnerabilityEPSS 3.2%CVE-2021-31175HIGHMicrosoft Office Remote Code Execution VulnerabilityEPSS 3.2%CVE-2021-24114MEDIUMMicrosoft Teams iOS Information Disclosure VulnerabilityEPSS 3.2%CVE-2021-27060HIGHVisual Studio Code Remote Code Execution VulnerabilityEPSS 3.2%CVE-2021-40448MEDIUMMicrosoft Accessibility Insights for Android Information Disclosure VulnerabilityEPSS 3.2%CVE-2020-17150HIGHVisual Studio Code Remote Code Execution VulnerabilityEPSS 3.2%CVE-2018-8208—An elevation of privilege vulnerability exists in Windows when Desktop Bridge does not properly manage the virtual registry, aka "Windows DeEPSS 3.2%CVE-2025-24076HIGHMicrosoft Windows Cross Device Service Elevation of Privilege VulnerabilityEPSS 3.2%CVE-2022-30130LOW.NET Framework Denial of Service VulnerabilityEPSS 3.2%CVE-2021-34442HIGHWindows DNS Server Remote Code Execution VulnerabilityEPSS 3.1%CVE-2018-8567—An elevation of privilege vulnerability exists when Microsoft Edge does not properly enforce cross-domain policies, which could allow an attEPSS 3.1%CVE-2020-1093HIGHVBScript Remote Code Execution VulnerabilityEPSS 3.1%CVE-2020-1064HIGHMSHTML Engine Remote Code Execution VulnerabilityEPSS 3.1%CVE-2020-1035HIGHVBScript Remote Code Execution VulnerabilityEPSS 3.1%