Vulnerabilidades em microsoft
10.811 resultadosAnálise Vexday
Microsoft apresenta 41 vulnerabilidades registradas, com 29 publicadas nos últimos 90 dias, indicando ritmo elevado de descobertas recentes. Oito vulnerabilidades críticas foram identificadas, predominantemente relacionadas a traversal de diretório (CWE-22), mas nenhuma está sob exploração ativa conhecida no momento. O volume recente de falhas requer atenção contínua em patching, especialmente considerando a superfície de ataque do ecossistema Microsoft.
CVE-2024-30009HIGHWindows Routing and Remote Access Service (RRAS) Remote Code Execution VulnerabilityEPSS 1.7%CVE-2024-30006HIGHMicrosoft WDAC OLE DB provider for SQL Server Remote Code Execution VulnerabilityEPSS 1.7%CVE-2019-1399—A denial of service vulnerability exists when Microsoft Hyper-V on a host server fails to properly validate input from a privileged user on EPSS 1.7%CVE-2020-1099MEDIUMMicrosoft Office SharePoint XSS VulnerabilityEPSS 1.7%CVE-2020-1101MEDIUMMicrosoft Office SharePoint XSS VulnerabilityEPSS 1.7%CVE-2020-1100MEDIUMMicrosoft Office SharePoint XSS VulnerabilityEPSS 1.7%CVE-2018-8205—A denial of service vulnerability exists when Windows improperly handles objects in memory, aka "Windows Denial of Service Vulnerability." TEPSS 1.7%CVE-2022-34692MEDIUMMicrosoft Exchange Server Information Disclosure VulnerabilityEPSS 1.7%CVE-2018-8309—A denial of service vulnerability exists when Windows improperly handles objects in memory, aka "Windows Denial of Service Vulnerability." TEPSS 1.7%CVE-2024-30076MEDIUMWindows Container Manager Service Elevation of Privilege VulnerabilityEPSS 1.7%CVE-2019-0600—An information disclosure vulnerability exists when the Human Interface Devices (HID) component improperly handles objects in memory, aka 'HEPSS 1.7%CVE-2025-47172HIGHMicrosoft SharePoint Server Remote Code Execution VulnerabilityEPSS 1.7%CVE-2025-24999HIGHMicrosoft SQL Server Elevation of Privilege VulnerabilityEPSS 1.7%CVE-2018-8602—A Cross-site Scripting (XSS) vulnerability exists when Team Foundation Server does not properly sanitize user provided input, aka "Team FounEPSS 1.7%CVE-2019-1130HIGHAn elevation of privilege vulnerability exists when Windows AppX Deployment Service (AppXSVC) improperly handles hard links, aka 'Windows ElEPSS 1.7%KEVCVE-2023-36911CRITICALMicrosoft Message Queuing (MSMQ) Remote Code Execution VulnerabilityEPSS 1.7%CVE-2019-1412—An information disclosure vulnerability exists in Windows Adobe Type Manager Font Driver (ATMFD.dll) when it fails to properly handle objectEPSS 1.7%CVE-2024-37965HIGHMicrosoft SQL Server Elevation of Privilege VulnerabilityEPSS 1.7%CVE-2020-16991HIGHAzure Sphere Unsigned Code Execution VulnerabilityEPSS 1.7%CVE-2024-49091HIGHWindows Domain Name Service Remote Code Execution VulnerabilityEPSS 1.7%