Vulnerabilidades em microsoft
10.810 resultadosAnálise Vexday
Microsoft apresenta 41 vulnerabilidades registradas, com 29 publicadas nos últimos 90 dias, indicando ritmo elevado de descobertas recentes. Oito vulnerabilidades críticas foram identificadas, predominantemente relacionadas a traversal de diretório (CWE-22), mas nenhuma está sob exploração ativa conhecida no momento. O volume recente de falhas requer atenção contínua em patching, especialmente considerando a superfície de ataque do ecossistema Microsoft.
CVE-2021-31181HIGHMicrosoft SharePoint Remote Code Execution VulnerabilityEPSS 28.8%CVE-2018-8587—A remote code execution vulnerability exists in Microsoft Outlook software when it fails to properly handle objects in memory, aka "MicrosofEPSS 28.8%CVE-2018-8389—A remote code execution vulnerability exists in the way that the scripting engine handles objects in memory in Internet Explorer, aka "ScripEPSS 28.6%CVE-2024-38193HIGHWindows Ancillary Function Driver for WinSock Elevation of Privilege VulnerabilityEPSS 28.5%KEVCVE-2024-43452HIGHWindows Registry Elevation of Privilege VulnerabilityEPSS 28.4%CVE-2022-37969HIGHWindows Common Log File System Driver Elevation of Privilege VulnerabilityEPSS 28.3%KEVCVE-2019-0725—A memory corruption vulnerability exists in the Windows Server DHCP service when processing specially crafted packets, aka 'Windows DHCP SerEPSS 28.2%CVE-2023-36802HIGHMicrosoft Streaming Service Proxy Elevation of Privilege VulnerabilityEPSS 27.9%KEVCVE-2024-21351HIGHWindows SmartScreen Security Feature Bypass VulnerabilityEPSS 27.8%KEVCVE-2019-0728—A remote code execution vulnerability exists in Visual Studio Code when it process environment variables after opening a project, aka 'VisuaEPSS 27.7%CVE-2023-21690CRITICALMicrosoft Protected Extensible Authentication Protocol (PEAP) Remote Code Execution VulnerabilityEPSS 27.5%CVE-2018-8581HIGHAn elevation of privilege vulnerability exists in Microsoft Exchange Server, aka "Microsoft Exchange Server Elevation of Privilege VulnerabiEPSS 27.4%KEVCVE-2020-17047HIGHWindows Network File System Denial of Service VulnerabilityEPSS 27.1%CVE-2018-8266—A remote code execution vulnerability exists in the way that the Chakra scripting engine handles objects in memory in Microsoft Edge, aka "CEPSS 27.1%CVE-2024-21357HIGHWindows Pragmatic General Multicast (PGM) Remote Code Execution VulnerabilityEPSS 26.9%CVE-2025-30397HIGHScripting Engine Memory Corruption VulnerabilityEPSS 26.8%KEVCVE-2018-8269—A denial of service vulnerability exists when OData Library improperly handles web requests, aka "OData Denial of Service Vulnerability." ThEPSS 26.8%CVE-2020-17103HIGHWindows Cloud Files Mini Filter Driver Elevation of Privilege VulnerabilityEPSS 26.5%CVE-2023-21689CRITICALMicrosoft Protected Extensible Authentication Protocol (PEAP) Remote Code Execution VulnerabilityEPSS 26.5%CVE-2019-1150HIGHMicrosoft Graphics Remote Code Execution VulnerabilityEPSS 26.2%