Vulnerabilidades em microsoft

10.811 resultados
Análise Vexday

Microsoft apresenta 41 vulnerabilidades registradas, com 29 publicadas nos últimos 90 dias, indicando ritmo elevado de descobertas recentes. Oito vulnerabilidades críticas foram identificadas, predominantemente relacionadas a traversal de diretório (CWE-22), mas nenhuma está sob exploração ativa conhecida no momento. O volume recente de falhas requer atenção contínua em patching, especialmente considerando a superfície de ataque do ecossistema Microsoft.

CVE-2022-21965HIGHMicrosoft Teams Denial of Service VulnerabilityEPSS 3.0%CVE-2021-26420HIGHMicrosoft SharePoint Server Remote Code Execution VulnerabilityEPSS 3.0%CVE-2024-43484HIGH.NET, .NET Framework, and Visual Studio Denial of Service VulnerabilityEPSS 3.0%CVE-2020-1295—An elevation of privilege vulnerability exists in Microsoft SharePoint, aka 'Microsoft SharePoint Elevation of Privilege Vulnerability'.EPSS 3.0%CVE-2021-31199MEDIUMMicrosoft Enhanced Cryptographic Provider Elevation of Privilege VulnerabilityEPSS 3.0%KEVCVE-2018-8127—An information disclosure vulnerability exists when the Windows kernel improperly handles objects in memory, aka "Windows Kernel InformationEPSS 3.0%CVE-2022-21988HIGHMicrosoft Office Visio Remote Code Execution VulnerabilityEPSS 2.9%CVE-2021-41352HIGHSCOM Information Disclosure VulnerabilityEPSS 2.9%CVE-2024-30105HIGH.NET and Visual Studio Denial of Service VulnerabilityEPSS 2.9%CVE-2021-31174MEDIUMMicrosoft Excel Information Disclosure VulnerabilityEPSS 2.9%CVE-2021-31946HIGHPaint 3D Remote Code Execution VulnerabilityEPSS 2.9%CVE-2023-0754CRITICAL The affected products are vulnerable to an integer overflow or wraparound, which could  allow an attacker to crash the server and remotely EPSS 2.9%CVE-2018-8235—A security feature bypass vulnerability exists when Microsoft Edge improperly handles requests of different origins, aka "Microsoft Edge SecEPSS 2.9%CVE-2025-59512HIGHCustomer Experience Improvement Program (CEIP) Elevation of Privilege VulnerabilityEPSS 2.9%CVE-2021-31941HIGHMicrosoft Office Graphics Remote Code Execution VulnerabilityEPSS 2.9%CVE-2021-33757MEDIUMWindows Security Account Manager Remote Protocol Security Feature Bypass VulnerabilityEPSS 2.9%CVE-2018-0975—An information disclosure vulnerability exists in the Windows kernel that could allow an attacker to retrieve information that could lead toEPSS 2.9%CVE-2020-0902—An elevation of privilege vulnerability exists in Service Fabric File Store Service under certain conditions, aka 'Service Fabric Elevation EPSS 2.9%CVE-2023-35618CRITICALMicrosoft Edge (Chromium-based) Elevation of Privilege VulnerabilityEPSS 2.9%CVE-2023-28244HIGHWindows Kerberos Elevation of Privilege VulnerabilityEPSS 2.9%