Vulnerabilidades em microsoft
9.364 resultadosAnálise Vexday
Microsoft apresenta 41 vulnerabilidades registradas, com 29 publicadas nos últimos 90 dias, indicando ritmo elevado de descobertas recentes. Oito vulnerabilidades críticas foram identificadas, predominantemente relacionadas a traversal de diretório (CWE-22), mas nenhuma está sob exploração ativa conhecida no momento. O volume recente de falhas requer atenção contínua em patching, especialmente considerando a superfície de ataque do ecossistema Microsoft.
CVE-2020-1074HIGHJet Database Engine Remote Code Execution VulnerabilityEPSS 53.4%CVE-2019-0808HIGHAn elevation of privilege vulnerability exists in Windows when the Win32k component fails to properly handle objects in memory, aka 'Win32k EPSS 53.3%KEVCVE-2019-0541HIGHA remote code execution vulnerability exists in the way that the MSHTML engine inproperly validates input, aka "MSHTML Engine Remote Code ExEPSS 53.2%KEVCVE-2021-34501HIGHMicrosoft Excel Remote Code Execution VulnerabilityEPSS 53.2%CVE-2024-38023HIGHMicrosoft SharePoint Server Remote Code Execution VulnerabilityEPSS 52.9%CVE-2022-35823HIGHMicrosoft SharePoint Remote Code Execution VulnerabilityEPSS 52.9%CVE-2020-1054HIGHAn elevation of privilege vulnerability exists in Windows when the Windows kernel-mode driver fails to properly handle objects in memory, akEPSS 52.8%KEVCVE-2021-31213HIGHVisual Studio Code Remote Containers Extension Remote Code Execution VulnerabilityEPSS 52.8%CVE-2024-43461HIGHWindows MSHTML Platform Spoofing VulnerabilityEPSS 52.2%KEVCVE-2024-38018HIGHMicrosoft SharePoint Server Remote Code Execution VulnerabilityEPSS 51.5%CVE-2018-0946—A remote code execution vulnerability exists in the way that the scripting engine handles objects in memory in Microsoft Edge, aka "ScriptinEPSS 51.4%CVE-2024-38030MEDIUMWindows Themes Spoofing VulnerabilityEPSS 51.1%CVE-2018-8552—An information disclosure vulnerability exists when VBScript improperly discloses the contents of its memory, which could provide an attackeEPSS 51.0%CVE-2024-38094HIGHMicrosoft SharePoint Remote Code Execution VulnerabilityEPSS 50.9%KEVCVE-2018-8495—A remote code execution vulnerability exists when Windows Shell improperly handles URIs, aka "Windows Shell Remote Code Execution VulnerabilEPSS 50.7%CVE-2021-28474HIGHMicrosoft SharePoint Server Remote Code Execution VulnerabilityEPSS 50.6%CVE-2018-8133—A remote code execution vulnerability exists in the way that the Chakra scripting engine handles objects in memory in Microsoft Edge, aka "CEPSS 50.5%CVE-2022-37961HIGHMicrosoft SharePoint Server Remote Code Execution VulnerabilityEPSS 50.0%CVE-2021-26414MEDIUMWindows DCOM Server Security Feature BypassEPSS 50.0%CVE-2019-0785—A memory corruption vulnerability exists in the Windows Server DHCP service when an attacker sends specially crafted packets to a DHCP failoEPSS 49.6%