Vulnerabilidades em microsoft

10.811 resultados
Análise Vexday

Microsoft apresenta 41 vulnerabilidades registradas, com 29 publicadas nos últimos 90 dias, indicando ritmo elevado de descobertas recentes. Oito vulnerabilidades críticas foram identificadas, predominantemente relacionadas a traversal de diretório (CWE-22), mas nenhuma está sob exploração ativa conhecida no momento. O volume recente de falhas requer atenção contínua em patching, especialmente considerando a superfície de ataque do ecossistema Microsoft.

CVE-2023-36010HIGHMicrosoft Defender Denial of Service VulnerabilityEPSS 2.7%CVE-2020-17052HIGHScripting Engine Memory Corruption VulnerabilityEPSS 2.7%CVE-2019-1071—An information disclosure vulnerability exists when the Windows kernel improperly handles objects in memory, aka 'Windows Kernel InformationEPSS 2.6%CVE-2019-1073—An information disclosure vulnerability exists when the Windows kernel improperly handles objects in memory, aka 'Windows Kernel InformationEPSS 2.6%CVE-2023-35643HIGHDHCP Server Service Information Disclosure VulnerabilityEPSS 2.6%CVE-2021-34439HIGHMicrosoft Windows Media Foundation Remote Code Execution VulnerabilityEPSS 2.6%CVE-2021-27067MEDIUMAzure DevOps Server and Team Foundation Server Information Disclosure VulnerabilityEPSS 2.6%CVE-2019-1075—A spoofing vulnerability exists in ASP.NET Core that could lead to an open redirect, aka 'ASP.NET Core Spoofing Vulnerability'.EPSS 2.6%CVE-2019-0881—An elevation of privilege vulnerability exists when the Windows Kernel improperly handles key enumeration, aka 'Windows Kernel Elevation of EPSS 2.6%CVE-2021-34464HIGHMicrosoft Defender Remote Code Execution VulnerabilityEPSS 2.6%CVE-2018-8341—An information disclosure vulnerability exists when the Windows kernel improperly handles objects in memory, aka "Windows Kernel InformationEPSS 2.6%CVE-2018-8433—An information disclosure vulnerability exists when the Windows Graphics component improperly handles objects in memory, aka "Microsoft GrapEPSS 2.6%CVE-2021-34500MEDIUMWindows Kernel Memory Information Disclosure VulnerabilityEPSS 2.6%CVE-2021-24082MEDIUMMicrosoft.PowerShell.Utility Module WDAC Security Feature Bypass VulnerabilityEPSS 2.6%CVE-2021-27092MEDIUMAzure AD Web Sign-in Security Feature Bypass VulnerabilityEPSS 2.6%CVE-2022-22010MEDIUMMedia Foundation Information Disclosure VulnerabilityEPSS 2.6%CVE-2025-26673HIGHWindows Lightweight Directory Access Protocol (LDAP) Denial of Service VulnerabilityEPSS 2.6%CVE-2023-29331HIGH.NET, .NET Framework, and Visual Studio Denial of Service VulnerabilityEPSS 2.6%CVE-2021-31209MEDIUMMicrosoft Exchange Server Spoofing VulnerabilityEPSS 2.6%CVE-2019-0866—A Cross-site Scripting (XSS) vulnerability exists when Azure DevOps Server and Team Foundation Server do not properly sanitize user providedEPSS 2.6%