Vulnerabilidades em microsoft
10.810 resultadosAnálise Vexday
Microsoft apresenta 41 vulnerabilidades registradas, com 29 publicadas nos últimos 90 dias, indicando ritmo elevado de descobertas recentes. Oito vulnerabilidades críticas foram identificadas, predominantemente relacionadas a traversal de diretório (CWE-22), mas nenhuma está sob exploração ativa conhecida no momento. O volume recente de falhas requer atenção contínua em patching, especialmente considerando a superfície de ataque do ecossistema Microsoft.
CVE-2022-24463MEDIUMMicrosoft Exchange Server Spoofing VulnerabilityEPSS 31.8%CVE-2019-0667—A remote code execution vulnerability exists in the way that the VBScript engine handles objects in memory, aka 'Windows VBScript Engine RemEPSS 31.3%CVE-2020-0729—A remote code execution vulnerability exists in Microsoft Windows that could allow remote code execution if a .LNK file is processed.An attaEPSS 30.9%CVE-2023-21819HIGHWindows Secure Channel Denial of Service VulnerabilityEPSS 30.8%CVE-2024-21318HIGHMicrosoft SharePoint Server Remote Code Execution VulnerabilityEPSS 30.8%CVE-2020-0968HIGHA remote code execution vulnerability exists in the way that the scripting engine handles objects in memory in Internet Explorer, aka 'ScripEPSS 30.7%KEVCVE-2021-36958HIGHWindows Print Spooler Remote Code Execution VulnerabilityEPSS 30.6%CVE-2025-30394MEDIUMWindows Remote Desktop Gateway (RD Gateway) Denial of Service VulnerabilityEPSS 30.5%CVE-2025-26633HIGHMicrosoft Management Console Security Feature Bypass VulnerabilityEPSS 30.4%KEVCVE-2024-26185MEDIUMWindows Compressed Folder Tampering VulnerabilityEPSS 30.3%CVE-2025-50154MEDIUMMicrosoft Windows File Explorer Spoofing VulnerabilityEPSS 30.2%CVE-2021-26701HIGH.NET Core Remote Code Execution VulnerabilityEPSS 30.1%CVE-2019-0853—A remote code execution vulnerability exists in the way that the Windows Graphics Device Interface (GDI) handles objects in the memory, aka EPSS 30.1%CVE-2023-36413MEDIUMMicrosoft Office Security Feature Bypass VulnerabilityEPSS 30.0%CVE-2019-1405HIGHAn elevation of privilege vulnerability exists when the Windows Universal Plug and Play (UPnP) service improperly allows COM object creationEPSS 29.9%KEVCVE-2019-1448—A remote code execution vulnerability exists in Microsoft Excel software when the software fails to properly handle objects in memory, aka 'EPSS 29.8%CVE-2018-8653HIGHA remote code execution vulnerability exists in the way that the scripting engine handles objects in memory in Internet Explorer, aka "ScripEPSS 29.6%KEVCVE-2026-20963CRITICALMicrosoft SharePoint Remote Code Execution VulnerabilityEPSS 29.6%KEVCVE-2018-8273—A buffer overflow vulnerability exists in the Microsoft SQL Server that could allow remote code execution on an affected system, aka "MicrosEPSS 29.2%CVE-2018-8421—A remote code execution vulnerability exists when Microsoft .NET Framework processes untrusted input, aka ".NET Framework Remote Code ExecutEPSS 29.1%