Vulnerabilidades em microsoft

10.810 resultados
Análise Vexday

Microsoft apresenta 41 vulnerabilidades registradas, com 29 publicadas nos últimos 90 dias, indicando ritmo elevado de descobertas recentes. Oito vulnerabilidades críticas foram identificadas, predominantemente relacionadas a traversal de diretório (CWE-22), mas nenhuma está sob exploração ativa conhecida no momento. O volume recente de falhas requer atenção contínua em patching, especialmente considerando a superfície de ataque do ecossistema Microsoft.

CVE-2018-8625—A remote code execution vulnerability exists in the way that the VBScript engine handles objects in memory, aka "Windows VBScript Engine RemEPSS 43.8%CVE-2022-21993HIGHWindows Services for NFS ONCRPC XDR Driver Information Disclosure VulnerabilityEPSS 43.6%CVE-2023-36874HIGHWindows Error Reporting Service Elevation of Privilege VulnerabilityEPSS 43.4%KEVCVE-2023-21818HIGHWindows Secure Channel Denial of Service VulnerabilityEPSS 43.2%CVE-2024-30080CRITICALMicrosoft Message Queuing (MSMQ) Remote Code Execution VulnerabilityEPSS 43.1%CVE-2021-42292HIGHMicrosoft Excel Security Feature Bypass VulnerabilityEPSS 43.0%KEVCVE-2018-8464—An remote code execution vulnerability exists when Microsoft Edge PDF Reader improperly handles objects in memory, aka "Microsoft Edge PDF REPSS 42.6%CVE-2020-0787HIGHAn elevation of privilege vulnerability exists when the Windows Background Intelligent Transfer Service (BITS) improperly handles symbolic lEPSS 42.5%KEVCVE-2018-8284—A remote code execution vulnerability exists when the Microsoft .NET Framework fails to validate input properly, aka ".NET Framework Remote EPSS 41.5%CVE-2019-0841HIGHAn elevation of privilege vulnerability exists when Windows AppX Deployment Service (AppXSVC) improperly handles hard links, aka 'Windows ElEPSS 41.4%KEVCVE-2024-38178HIGHScripting Engine Memory Corruption VulnerabilityEPSS 41.4%KEVCVE-2022-44666HIGHWindows Contacts Remote Code Execution VulnerabilityEPSS 41.4%CVE-2022-30129HIGHVisual Studio Code Remote Code Execution VulnerabilityEPSS 41.3%CVE-2022-23277HIGHMicrosoft Exchange Server Remote Code Execution VulnerabilityEPSS 41.1%CVE-2022-21999HIGHWindows Print Spooler Elevation of Privilege VulnerabilityEPSS 41.0%KEVCVE-2023-21674HIGHWindows Advanced Local Procedure Call (ALPC) Elevation of Privilege VulnerabilityEPSS 41.0%KEVCVE-2018-1026—A remote code execution vulnerability exists in Microsoft Office software when the software fails to properly handle objects in memory, aka EPSS 41.0%CVE-2023-29336HIGHWin32k Elevation of Privilege VulnerabilityEPSS 40.9%KEVCVE-2021-34448MEDIUMScripting Engine Memory Corruption VulnerabilityEPSS 40.1%KEVCVE-2025-21377MEDIUMNTLM Hash Disclosure Spoofing VulnerabilityEPSS 39.9%