Vulnerabilidades em microsoft

10.822 resultados
Análise Vexday

Microsoft apresenta 41 vulnerabilidades registradas, com 29 publicadas nos últimos 90 dias, indicando ritmo elevado de descobertas recentes. Oito vulnerabilidades críticas foram identificadas, predominantemente relacionadas a traversal de diretório (CWE-22), mas nenhuma está sob exploração ativa conhecida no momento. O volume recente de falhas requer atenção contínua em patching, especialmente considerando a superfície de ataque do ecossistema Microsoft.

CVE-2025-21279MEDIUMMicrosoft Edge (Chromium-based) Remote Code Execution VulnerabilityEPSS 1.6%CVE-2024-38127HIGHWindows Hyper-V Elevation of Privilege VulnerabilityEPSS 1.6%CVE-2019-1283—An information disclosure vulnerability exists in the way that Microsoft Graphics Components handle objects in memory, aka 'Microsoft GraphiEPSS 1.6%CVE-2024-49068HIGHMicrosoft SharePoint Elevation of Privilege VulnerabilityEPSS 1.6%CVE-2023-36880MEDIUMMicrosoft Edge (Chromium-based) Information Disclosure VulnerabilityEPSS 1.6%CVE-2019-0776—An information disclosure vulnerability exists when the win32k component improperly provides kernel information, aka 'Win32k Information DisEPSS 1.6%CVE-2019-0782—An information disclosure vulnerability exists when the Windows kernel fails to properly initialize a memory address, aka 'Windows Kernel InEPSS 1.6%CVE-2019-0754—A denial of service vulnerability exists when Windows improperly handles objects in memory, aka 'Windows Denial of Service Vulnerability'.EPSS 1.6%CVE-2019-0702—An information disclosure vulnerability exists when the Windows kernel improperly handles objects in memory, aka 'Windows Kernel InformationEPSS 1.6%CVE-2023-36903HIGHWindows System Assessment Tool Elevation of Privilege VulnerabilityEPSS 1.6%CVE-2024-43627HIGHWindows Telephony Service Remote Code Execution VulnerabilityEPSS 1.6%CVE-2024-43628HIGHWindows Telephony Service Remote Code Execution VulnerabilityEPSS 1.6%CVE-2020-0755—An information disclosure vulnerability exists in the Cryptography Next Generation (CNG) service when it fails to properly handle objects inEPSS 1.6%CVE-2020-0748—An information disclosure vulnerability exists in the Cryptography Next Generation (CNG) service when it fails to properly handle objects inEPSS 1.6%CVE-2020-0677—An information disclosure vulnerability exists in the Cryptography Next Generation (CNG) service when it fails to properly handle objects inEPSS 1.6%CVE-2020-0675—An information disclosure vulnerability exists in the Cryptography Next Generation (CNG) service when it fails to properly handle objects inEPSS 1.6%CVE-2020-0676—An information disclosure vulnerability exists in the Cryptography Next Generation (CNG) service when it fails to properly handle objects inEPSS 1.6%CVE-2020-0756—An information disclosure vulnerability exists in the Cryptography Next Generation (CNG) service when it fails to properly handle objects inEPSS 1.6%CVE-2024-48993HIGHSQL Server Native Client Remote Code Execution VulnerabilityEPSS 1.6%CVE-2024-48995HIGHSQL Server Native Client Remote Code Execution VulnerabilityEPSS 1.6%