Vulnerabilidades em microsoft

9.364 resultados
Análise Vexday

Microsoft apresenta 41 vulnerabilidades registradas, com 29 publicadas nos últimos 90 dias, indicando ritmo elevado de descobertas recentes. Oito vulnerabilidades críticas foram identificadas, predominantemente relacionadas a traversal de diretório (CWE-22), mas nenhuma está sob exploração ativa conhecida no momento. O volume recente de falhas requer atenção contínua em patching, especialmente considerando a superfície de ataque do ecossistema Microsoft.

CVE-2013-3900MEDIUMWinVerifyTrust Signature Validation VulnerabilityEPSS 44.6%KEVCVE-2023-33133HIGHMicrosoft Excel Remote Code Execution VulnerabilityEPSS 44.0%CVE-2021-24093HIGHWindows Graphics Component Remote Code Execution VulnerabilityEPSS 43.8%CVE-2018-8625A remote code execution vulnerability exists in the way that the VBScript engine handles objects in memory, aka "Windows VBScript Engine RemEPSS 43.8%CVE-2024-43573MEDIUMWindows MSHTML Platform Spoofing VulnerabilityEPSS 43.7%KEVCVE-2022-21993HIGHWindows Services for NFS ONCRPC XDR Driver Information Disclosure VulnerabilityEPSS 43.6%CVE-2023-36874HIGHWindows Error Reporting Service Elevation of Privilege VulnerabilityEPSS 43.4%KEVCVE-2023-21818HIGHWindows Secure Channel Denial of Service VulnerabilityEPSS 43.2%CVE-2024-30080CRITICALMicrosoft Message Queuing (MSMQ) Remote Code Execution VulnerabilityEPSS 43.1%CVE-2018-8464An remote code execution vulnerability exists when Microsoft Edge PDF Reader improperly handles objects in memory, aka "Microsoft Edge PDF REPSS 42.6%CVE-2020-0787HIGHAn elevation of privilege vulnerability exists when the Windows Background Intelligent Transfer Service (BITS) improperly handles symbolic lEPSS 42.5%KEVCVE-2018-1026A remote code execution vulnerability exists in Microsoft Office software when the software fails to properly handle objects in memory, aka EPSS 42.2%CVE-2023-21674HIGHWindows Advanced Local Procedure Call (ALPC) Elevation of Privilege VulnerabilityEPSS 41.8%KEVCVE-2022-21999HIGHWindows Print Spooler Elevation of Privilege VulnerabilityEPSS 41.7%KEVCVE-2019-0841HIGHAn elevation of privilege vulnerability exists when Windows AppX Deployment Service (AppXSVC) improperly handles hard links, aka 'Windows ElEPSS 41.4%KEVCVE-2024-38178HIGHScripting Engine Memory Corruption VulnerabilityEPSS 41.4%KEVCVE-2022-44666HIGHWindows Contacts Remote Code Execution VulnerabilityEPSS 41.4%CVE-2022-30129HIGHVisual Studio Code Remote Code Execution VulnerabilityEPSS 41.3%CVE-2020-1464HIGHWindows Spoofing VulnerabilityEPSS 41.1%KEVCVE-2023-29336HIGHWin32k Elevation of Privilege VulnerabilityEPSS 40.9%KEV