Vulnerabilidades em microsoft

10.810 resultados
Análise Vexday

Microsoft apresenta 41 vulnerabilidades registradas, com 29 publicadas nos últimos 90 dias, indicando ritmo elevado de descobertas recentes. Oito vulnerabilidades críticas foram identificadas, predominantemente relacionadas a traversal de diretório (CWE-22), mas nenhuma está sob exploração ativa conhecida no momento. O volume recente de falhas requer atenção contínua em patching, especialmente considerando a superfície de ataque do ecossistema Microsoft.

CVE-2024-38071HIGHWindows Remote Desktop Licensing Service Denial of Service VulnerabilityEPSS 35.9%CVE-2020-0932—A remote code execution vulnerability exists in Microsoft SharePoint when the software fails to check the source markup of an application paEPSS 35.3%CVE-2018-8115—A remote code execution vulnerability exists when the Windows Host Compute Service Shim (hcsshim) library fails to properly validate input wEPSS 34.6%CVE-2022-24497CRITICALWindows Network File System Remote Code Execution VulnerabilityEPSS 34.6%CVE-2025-21400HIGHMicrosoft SharePoint Server Remote Code Execution VulnerabilityEPSS 34.5%CVE-2019-0603—A remote code execution vulnerability exists in the way that Windows Deployment Services TFTP Server handles objects in memory. An attacker EPSS 34.2%CVE-2019-1349—A remote code execution vulnerability exists when Git for Visual Studio improperly sanitizes input, aka 'Git for Visual Studio Remote Code EEPSS 34.0%CVE-2021-34480MEDIUMScripting Engine Memory Corruption VulnerabilityEPSS 33.9%CVE-2020-16947HIGHMicrosoft Outlook Remote Code Execution VulnerabilityEPSS 33.8%CVE-2021-26412CRITICALMicrosoft Exchange Server Remote Code Execution VulnerabilityEPSS 33.8%CVE-2022-24491CRITICALWindows Network File System Remote Code Execution VulnerabilityEPSS 33.5%CVE-2022-24502MEDIUMWindows HTML Platforms Security Feature Bypass VulnerabilityEPSS 33.1%CVE-2019-0697—A memory corruption vulnerability exists in the Windows DHCP client when an attacker sends specially crafted DHCP responses to a client, akaEPSS 32.9%CVE-2018-8172—A remote code execution vulnerability exists in Visual Studio software when the software does not check the source markup of a file for an uEPSS 32.8%CVE-2025-47981CRITICALSPNEGO Extended Negotiation (NEGOEX) Security Mechanism Remote Code Execution VulnerabilityEPSS 32.6%CVE-2024-38144HIGHKernel Streaming WOW Thunk Service Driver Elevation of Privilege VulnerabilityEPSS 32.3%CVE-2018-8423—A remote code execution vulnerability exists in the Microsoft JET Database Engine, aka "Microsoft JET Database Engine Remote Code Execution EPSS 32.2%CVE-2024-21388MEDIUMMicrosoft Edge (Chromium-based) Elevation of Privilege VulnerabilityEPSS 32.0%CVE-2022-22025HIGHWindows Internet Information Services Cachuri Module Denial of Service VulnerabilityEPSS 31.9%CVE-2024-38148HIGHWindows Secure Channel Denial of Service VulnerabilityEPSS 31.8%