Vulnerabilidades em microsoft
10.811 resultadosAnálise Vexday
Microsoft apresenta 41 vulnerabilidades registradas, com 29 publicadas nos últimos 90 dias, indicando ritmo elevado de descobertas recentes. Oito vulnerabilidades críticas foram identificadas, predominantemente relacionadas a traversal de diretório (CWE-22), mas nenhuma está sob exploração ativa conhecida no momento. O volume recente de falhas requer atenção contínua em patching, especialmente considerando a superfície de ataque do ecossistema Microsoft.
CVE-2023-21527HIGHWindows iSCSI Service Denial of Service VulnerabilityEPSS 2.0%CVE-2025-47978MEDIUMWindows Kerberos Denial of Service VulnerabilityEPSS 2.0%CVE-2023-33170HIGHASP.NET and Visual Studio Security Feature Bypass VulnerabilityEPSS 2.0%CVE-2023-21728HIGHWindows Netlogon Denial of Service VulnerabilityEPSS 2.0%CVE-2023-21677HIGHWindows Internet Key Exchange (IKE) Extension Denial of Service VulnerabilityEPSS 2.0%CVE-2023-21683HIGHWindows Internet Key Exchange (IKE) Extension Denial of Service VulnerabilityEPSS 2.0%CVE-2023-36787HIGHMicrosoft Edge (Chromium-based) Elevation of Privilege VulnerabilityEPSS 2.0%CVE-2026-62912MEDIUMMicrosoft Exchange Server Denial of Service VulnerabilityEPSS 2.0%CVE-2023-36906MEDIUMWindows Cryptographic Services Information Disclosure VulnerabilityEPSS 2.0%CVE-2025-48004HIGHMicrosoft Brokering File System Elevation of Privilege VulnerabilityEPSS 2.0%CVE-2023-38172HIGHMicrosoft Message Queuing (MSMQ) Denial of Service VulnerabilityEPSS 2.0%CVE-2025-26680HIGHWindows Standards-Based Storage Management Service Denial of Service VulnerabilityEPSS 2.0%CVE-2019-0622—An elevation of privilege vulnerability exists when Skype for Andriod fails to properly handle specific authentication requests, aka "Skype EPSS 2.0%CVE-2024-21307HIGHRemote Desktop Client Remote Code Execution VulnerabilityEPSS 2.0%CVE-2024-26244HIGHMicrosoft WDAC OLE DB provider for SQL Server Remote Code Execution VulnerabilityEPSS 2.0%CVE-2024-26210HIGHMicrosoft WDAC OLE DB provider for SQL Server Remote Code Execution VulnerabilityEPSS 2.0%CVE-2025-21330HIGHWindows Remote Desktop Services Denial of Service VulnerabilityEPSS 2.0%CVE-2023-35338HIGHWindows Peer Name Resolution Protocol Denial of Service VulnerabilityEPSS 2.0%CVE-2021-28458HIGHAzure ms-rest-nodeauth Library Elevation of Privilege VulnerabilityEPSS 2.0%CVE-2019-0869—A spoofing vulnerability exists in Microsoft Azure DevOps Server when it fails to properly handle web requests, aka 'Azure DevOps Server HTMEPSS 2.0%