Vulnerabilidades em microsoft

10.810 resultados
Análise Vexday

Microsoft apresenta 41 vulnerabilidades registradas, com 29 publicadas nos últimos 90 dias, indicando ritmo elevado de descobertas recentes. Oito vulnerabilidades críticas foram identificadas, predominantemente relacionadas a traversal de diretório (CWE-22), mas nenhuma está sob exploração ativa conhecida no momento. O volume recente de falhas requer atenção contínua em patching, especialmente considerando a superfície de ataque do ecossistema Microsoft.

CVE-2024-49138HIGHWindows Common Log File System Driver Elevation of Privilege VulnerabilityEPSS 26.2%KEVCVE-2021-24074CRITICALWindows TCP/IP Remote Code Execution VulnerabilityEPSS 26.2%CVE-2020-0668—An elevation of privilege vulnerability exists in the way that the Windows Kernel handles objects in memory, aka 'Windows Kernel Elevation oEPSS 25.9%CVE-2025-53772HIGHWeb Deploy Remote Code Execution VulnerabilityEPSS 25.8%CVE-2019-1350—A remote code execution vulnerability exists when Git for Visual Studio improperly sanitizes input, aka 'Git for Visual Studio Remote Code EEPSS 25.7%CVE-2022-23285HIGHRemote Desktop Client Remote Code Execution VulnerabilityEPSS 25.6%CVE-2018-8302—A remote code execution vulnerability exists in Microsoft Exchange software when the software fails to properly handle objects in memory, akEPSS 25.5%CVE-2023-36017HIGHWindows Scripting Engine Memory Corruption VulnerabilityEPSS 25.3%CVE-2018-8210—A remote code execution vulnerability exists when Windows improperly handles objects in memory, aka "Windows Remote Code Execution VulnerabiEPSS 25.2%CVE-2019-0572—An elevation of privilege vulnerability exists when the Windows Data Sharing Service improperly handles file operations, aka "Windows Data SEPSS 25.1%CVE-2024-35250HIGHWindows Kernel-Mode Driver Elevation of Privilege VulnerabilityEPSS 25.0%KEVCVE-2023-28310HIGHMicrosoft Exchange Server Remote Code Execution VulnerabilityEPSS 25.0%CVE-2018-8372—A remote code execution vulnerability exists in the way the scripting engine handles objects in memory in Microsoft browsers, aka "ScriptingEPSS 24.8%CVE-2021-26854MEDIUMMicrosoft Exchange Server Remote Code Execution VulnerabilityEPSS 24.7%CVE-2018-8162—A remote code execution vulnerability exists in Microsoft Excel software when the software fails to properly handle objects in memory, aka "EPSS 24.7%CVE-2018-8147—A remote code execution vulnerability exists in Microsoft Excel software when the software fails to properly handle objects in memory, aka "EPSS 24.7%CVE-2018-8148—A remote code execution vulnerability exists in Microsoft Excel software when the software fails to properly handle objects in memory, aka "EPSS 24.7%CVE-2018-8157—A remote code execution vulnerability exists in Microsoft Office software when the software fails to properly handle objects in memory, aka EPSS 24.7%CVE-2022-41128HIGHWindows Scripting Languages Remote Code Execution VulnerabilityEPSS 24.6%KEVCVE-2023-24949HIGHWindows Kernel Elevation of Privilege VulnerabilityEPSS 24.6%