Vulnerabilidades em microsoft

10.810 resultados
Análise Vexday

Microsoft apresenta 41 vulnerabilidades registradas, com 29 publicadas nos últimos 90 dias, indicando ritmo elevado de descobertas recentes. Oito vulnerabilidades críticas foram identificadas, predominantemente relacionadas a traversal de diretório (CWE-22), mas nenhuma está sob exploração ativa conhecida no momento. O volume recente de falhas requer atenção contínua em patching, especialmente considerando a superfície de ataque do ecossistema Microsoft.

CVE-2020-1074HIGHJet Database Engine Remote Code Execution VulnerabilityEPSS 48.4%CVE-2021-40487HIGHMicrosoft SharePoint Server Remote Code Execution VulnerabilityEPSS 48.2%CVE-2019-1040MEDIUMWindows NTLM Tampering VulnerabilityEPSS 48.0%CVE-2021-34481HIGHWindows Print Spooler Remote Code Execution VulnerabilityEPSS 47.7%CVE-2025-53778HIGHWindows NTLM Elevation of Privilege VulnerabilityEPSS 47.6%CVE-2018-8544—A remote code execution vulnerability exists in the way that the VBScript engine handles objects in memory, aka "Windows VBScript Engine RemEPSS 47.6%CVE-2020-16875HIGHMicrosoft Exchange Server Remote Code Execution VulnerabilityEPSS 47.4%CVE-2022-35748HIGHHTTP.sys Denial of Service VulnerabilityEPSS 47.2%CVE-2018-8413—A remote code execution vulnerability exists when "Windows Theme API" does not properly decompress files, aka "Windows Theme API Remote CodeEPSS 46.3%CVE-2024-43573MEDIUMWindows MSHTML Platform Spoofing VulnerabilityEPSS 46.1%KEVCVE-2021-24093HIGHWindows Graphics Component Remote Code Execution VulnerabilityEPSS 46.1%CVE-2017-0176—A buffer overflow in Smart Card authentication code in gpkcsp.dll in Microsoft Windows XP through SP3 and Server 2003 through SP2 allows a rEPSS 45.8%CVE-2024-38024HIGHMicrosoft SharePoint Server Remote Code Execution VulnerabilityEPSS 45.2%CVE-2019-0803HIGHAn elevation of privilege vulnerability exists in Windows when the Win32k component fails to properly handle objects in memory, aka 'Win32k EPSS 45.0%KEVCVE-2022-37954HIGHDirectX Graphics Kernel Elevation of Privilege VulnerabilityEPSS 44.9%CVE-2024-29988HIGHSmartScreen Prompt Security Feature Bypass VulnerabilityEPSS 44.9%KEVCVE-2018-8619—A remote code execution vulnerability exists when the Internet Explorer VBScript execution policy does not properly restrict VBScript under EPSS 44.8%CVE-2013-3900MEDIUMWinVerifyTrust Signature Validation VulnerabilityEPSS 44.6%KEVCVE-2023-33133HIGHMicrosoft Excel Remote Code Execution VulnerabilityEPSS 44.0%CVE-2020-1301—A remote code execution vulnerability exists in the way that the Microsoft Server Message Block 1.0 (SMBv1) server handles certain requests,EPSS 43.8%