Vulnerabilidades em microsoft
10.822 resultadosAnálise Vexday
Microsoft apresenta 41 vulnerabilidades registradas, com 29 publicadas nos últimos 90 dias, indicando ritmo elevado de descobertas recentes. Oito vulnerabilidades críticas foram identificadas, predominantemente relacionadas a traversal de diretório (CWE-22), mas nenhuma está sob exploração ativa conhecida no momento. O volume recente de falhas requer atenção contínua em patching, especialmente considerando a superfície de ataque do ecossistema Microsoft.
CVE-2020-1576HIGHMicrosoft SharePoint Remote Code Execution VulnerabilityEPSS 1.6%CVE-2024-49085HIGHWindows Routing and Remote Access Service (RRAS) Remote Code Execution VulnerabilityEPSS 1.6%CVE-2024-49086HIGHWindows Routing and Remote Access Service (RRAS) Remote Code Execution VulnerabilityEPSS 1.6%CVE-2021-40460MEDIUMWindows Remote Procedure Call Runtime Security Feature Bypass VulnerabilityEPSS 1.6%CVE-2026-84452HIGHWindows ML CLI: CORS misconfig enables localhost RCEEPSS 1.6%CVE-2022-24526MEDIUMVisual Studio Code Spoofing VulnerabilityEPSS 1.6%CVE-2022-24512MEDIUM.NET and Visual Studio Remote Code Execution VulnerabilityEPSS 1.6%CVE-2020-1170—An elevation of privilege vulnerability exists in Windows Defender that leads arbitrary file deletion on the system.To exploit the vulnerabiEPSS 1.6%CVE-2025-62213HIGHWindows Ancillary Function Driver for WinSock Elevation of Privilege VulnerabilityEPSS 1.6%CVE-2021-38650HIGHMicrosoft Office Spoofing VulnerabilityEPSS 1.6%CVE-2018-8608—A cross site scripting vulnerability exists when Microsoft Dynamics 365 (on-premises) version 8 does not properly sanitize a specially craftEPSS 1.6%CVE-2018-8606—A cross site scripting vulnerability exists when Microsoft Dynamics 365 (on-premises) version 8 does not properly sanitize a specially craftEPSS 1.6%CVE-2018-8607—A cross site scripting vulnerability exists when Microsoft Dynamics 365 (on-premises) version 8 does not properly sanitize a specially craftEPSS 1.6%CVE-2020-1451MEDIUMA cross-site-scripting (XSS) vulnerability exists when Microsoft SharePoint Server does not properly sanitize a specially crafted web requesEPSS 1.6%CVE-2020-1450MEDIUMA cross-site-scripting (XSS) vulnerability exists when Microsoft SharePoint Server does not properly sanitize a specially crafted web requesEPSS 1.6%CVE-2019-1054MEDIUMMicrosoft Edge Security Feature Bypass VulnerabilityEPSS 1.6%CVE-2020-0917—An elevation of privilege vulnerability exists when Windows Hyper-V on a host server fails to properly handle objects in memory, aka 'WindowEPSS 1.6%CVE-2021-1684MEDIUMWindows Bluetooth Security Feature Bypass VulnerabilityEPSS 1.6%CVE-2025-26676MEDIUMWindows Routing and Remote Access Service (RRAS) Information Disclosure VulnerabilityEPSS 1.6%CVE-2024-30013HIGHWindows MultiPoint Services Remote Code Execution VulnerabilityEPSS 1.6%