Vulnerabilidades em microsoft

10.811 resultados
Análise Vexday

Microsoft apresenta 41 vulnerabilidades registradas, com 29 publicadas nos últimos 90 dias, indicando ritmo elevado de descobertas recentes. Oito vulnerabilidades críticas foram identificadas, predominantemente relacionadas a traversal de diretório (CWE-22), mas nenhuma está sob exploração ativa conhecida no momento. O volume recente de falhas requer atenção contínua em patching, especialmente considerando a superfície de ataque do ecossistema Microsoft.

CVE-2022-33638HIGHMicrosoft Edge (Chromium-based) Elevation of Privilege VulnerabilityEPSS 2.5%CVE-2022-29137HIGHWindows Lightweight Directory Access Protocol (LDAP) Remote Code Execution VulnerabilityEPSS 2.5%CVE-2019-0991MEDIUMChakra Scripting Engine Memory Corruption VulnerabilityEPSS 2.5%CVE-2019-0993MEDIUMChakra Scripting Engine Memory Corruption VulnerabilityEPSS 2.5%CVE-2026-20816HIGHWindows Installer Elevation of Privilege VulnerabilityEPSS 2.5%CVE-2021-28449HIGHMicrosoft Office Remote Code Execution VulnerabilityEPSS 2.5%CVE-2018-8299—An elevation of privilege vulnerability exists when Microsoft SharePoint Server does not properly sanitize a specially crafted web request tEPSS 2.5%CVE-2023-35368HIGHMicrosoft Exchange Remote Code Execution VulnerabilityEPSS 2.5%CVE-2018-8323—An elevation of privilege vulnerability exists when Microsoft SharePoint Server does not properly sanitize a specially crafted web request tEPSS 2.5%CVE-2021-42276HIGHMicrosoft Windows Media Foundation Remote Code Execution VulnerabilityEPSS 2.5%CVE-2021-40465HIGHWindows Text Shaping Remote Code Execution VulnerabilityEPSS 2.5%CVE-2022-30161HIGHWindows Lightweight Directory Access Protocol (LDAP) Remote Code Execution VulnerabilityEPSS 2.5%CVE-2023-35385CRITICALMicrosoft Message Queuing (MSMQ) Remote Code Execution VulnerabilityEPSS 2.5%CVE-2022-30153HIGHWindows Lightweight Directory Access Protocol (LDAP) Remote Code Execution VulnerabilityEPSS 2.5%CVE-2023-38157MEDIUMMicrosoft Edge (Chromium-based) Security Feature Bypass VulnerabilityEPSS 2.5%CVE-2026-21519HIGHDesktop Window Manager Elevation of Privilege VulnerabilityEPSS 2.5%KEVCVE-2019-0950—A spoofing vulnerability exists when Microsoft SharePoint Server does not properly sanitize a specially crafted web request to an affected SEPSS 2.5%CVE-2020-1173—Microsoft Power BI Report Server Spoofing VulnerabilityEPSS 2.5%CVE-2019-0949—A spoofing vulnerability exists when Microsoft SharePoint Server does not properly sanitize a specially crafted web request to an affected SEPSS 2.5%CVE-2019-0670—A spoofing vulnerability exists in Microsoft SharePoint when the application does not properly parse HTTP content, aka 'Microsoft SharePointEPSS 2.5%