Vulnerabilidades em microsoft

10.822 resultados
Análise Vexday

Microsoft apresenta 41 vulnerabilidades registradas, com 29 publicadas nos últimos 90 dias, indicando ritmo elevado de descobertas recentes. Oito vulnerabilidades críticas foram identificadas, predominantemente relacionadas a traversal de diretório (CWE-22), mas nenhuma está sob exploração ativa conhecida no momento. O volume recente de falhas requer atenção contínua em patching, especialmente considerando a superfície de ataque do ecossistema Microsoft.

CVE-2022-38001MEDIUMMicrosoft Office Spoofing VulnerabilityEPSS 1.6%CVE-2020-0663—An elevation of privilege vulnerability exists when Microsoft Edge does not properly enforce cross-domain policies, which could allow an attEPSS 1.6%CVE-2024-21302MEDIUMWindows Secure Kernel Mode Elevation of Privilege VulnerabilityEPSS 1.6%CVE-2022-26929HIGH.NET Framework Remote Code Execution VulnerabilityEPSS 1.6%CVE-2022-37975HIGHWindows Group Policy Elevation of Privilege VulnerabilityEPSS 1.6%CVE-2019-1134MEDIUMA cross-site-scripting (XSS) vulnerability exists when Microsoft SharePoint Server does not properly sanitize a specially crafted web requesEPSS 1.6%CVE-2019-0830MEDIUMA cross-site-scripting (XSS) vulnerability exists when Microsoft SharePoint Server does not properly sanitize a specially crafted web requesEPSS 1.6%CVE-2019-0831MEDIUMA cross-site-scripting (XSS) vulnerability exists when Microsoft SharePoint Server does not properly sanitize a specially crafted web requesEPSS 1.6%CVE-2019-0996—Azure DevOps Server Spoofing VulnerabilityEPSS 1.6%CVE-2021-28478HIGHMicrosoft SharePoint Server Spoofing VulnerabilityEPSS 1.6%CVE-2024-38214MEDIUMWindows Routing and Remote Access Service (RRAS) Information Disclosure VulnerabilityEPSS 1.6%CVE-2025-21418HIGHWindows Ancillary Function Driver for WinSock Elevation of Privilege VulnerabilityEPSS 1.6%KEVCVE-2023-23388HIGHWindows Bluetooth Driver Elevation of Privilege VulnerabilityEPSS 1.6%CVE-2020-1326—A Cross-site Scripting (XSS) vulnerability exists when Azure DevOps Server does not properly sanitize user provided input, aka 'Azure DevOpsEPSS 1.6%CVE-2025-47962HIGHWindows SDK Elevation of Privilege VulnerabilityEPSS 1.6%CVE-2020-1454MEDIUMThis vulnerability is caused when SharePoint Server does not properly sanitize a specially crafted request to an affected SharePoint server.EPSS 1.6%CVE-2022-41047HIGHMicrosoft ODBC Driver Remote Code Execution VulnerabilityEPSS 1.6%CVE-2022-41048HIGHMicrosoft ODBC Driver Remote Code Execution VulnerabilityEPSS 1.6%CVE-2025-21301MEDIUMWindows Geolocation Service Information Disclosure VulnerabilityEPSS 1.6%CVE-2023-35622HIGHWindows DNS Spoofing VulnerabilityEPSS 1.6%