Vulnerabilidades em microsoft

10.811 resultados
Análise Vexday

Microsoft apresenta 41 vulnerabilidades registradas, com 29 publicadas nos últimos 90 dias, indicando ritmo elevado de descobertas recentes. Oito vulnerabilidades críticas foram identificadas, predominantemente relacionadas a traversal de diretório (CWE-22), mas nenhuma está sob exploração ativa conhecida no momento. O volume recente de falhas requer atenção contínua em patching, especialmente considerando a superfície de ataque do ecossistema Microsoft.

CVE-2021-34452HIGHMicrosoft Word Remote Code Execution VulnerabilityEPSS 2.2%CVE-2023-32057CRITICALMicrosoft Message Queuing (MSMQ) Remote Code Execution VulnerabilityEPSS 2.2%CVE-2022-24545HIGHWindows Kerberos Remote Code Execution VulnerabilityEPSS 2.2%CVE-2021-34506MEDIUMMicrosoft Edge (Chromium-based) Security Feature Bypass VulnerabilityEPSS 2.2%CVE-2022-33659MEDIUMAzure Site Recovery Elevation of Privilege VulnerabilityEPSS 2.2%CVE-2022-33664MEDIUMAzure Site Recovery Elevation of Privilege VulnerabilityEPSS 2.2%CVE-2022-33660MEDIUMAzure Site Recovery Elevation of Privilege VulnerabilityEPSS 2.2%CVE-2022-33642MEDIUMAzure Site Recovery Elevation of Privilege VulnerabilityEPSS 2.2%CVE-2022-33651MEDIUMAzure Site Recovery Elevation of Privilege VulnerabilityEPSS 2.2%CVE-2022-33653MEDIUMAzure Site Recovery Elevation of Privilege VulnerabilityEPSS 2.2%CVE-2022-33669MEDIUMAzure Site Recovery Elevation of Privilege VulnerabilityEPSS 2.2%CVE-2022-33671MEDIUMAzure Site Recovery Elevation of Privilege VulnerabilityEPSS 2.2%CVE-2022-33668MEDIUMAzure Site Recovery Elevation of Privilege VulnerabilityEPSS 2.2%CVE-2023-38174MEDIUMMicrosoft Edge (Chromium-based) Information Disclosure VulnerabilityEPSS 2.2%CVE-2025-62472HIGHWindows Remote Access Connection Manager Elevation of Privilege VulnerabilityEPSS 2.2%CVE-2022-23273HIGHMicrosoft Dynamics GP Elevation Of Privilege VulnerabilityEPSS 2.2%CVE-2019-0839—An information disclosure vulnerability exists when the Terminal Services component improperly discloses the contents of its memory, aka 'WiEPSS 2.2%CVE-2019-1337—An information disclosure vulnerability exists when Windows Update Client fails to properly handle objects in memory, aka 'Windows Update ClEPSS 2.2%CVE-2020-1164HIGHWindows Runtime Elevation of Privilege VulnerabilityEPSS 2.2%CVE-2020-1125HIGHWindows Runtime Elevation of Privilege VulnerabilityEPSS 2.2%