Vulnerabilidades em microsoft

10.822 resultados
Análise Vexday

Microsoft apresenta 41 vulnerabilidades registradas, com 29 publicadas nos últimos 90 dias, indicando ritmo elevado de descobertas recentes. Oito vulnerabilidades críticas foram identificadas, predominantemente relacionadas a traversal de diretório (CWE-22), mas nenhuma está sob exploração ativa conhecida no momento. O volume recente de falhas requer atenção contínua em patching, especialmente considerando a superfície de ataque do ecossistema Microsoft.

CVE-2025-55241CRITICALAzure Entra ID Elevation of Privilege VulnerabilityEPSS 1.6%CVE-2024-37329HIGHSQL Server Native Client OLE DB Provider Remote Code Execution VulnerabilityEPSS 1.6%CVE-2024-35256HIGHSQL Server Native Client OLE DB Provider Remote Code Execution VulnerabilityEPSS 1.6%CVE-2024-38049MEDIUMWindows Distributed Transaction Coordinator Remote Code Execution VulnerabilityEPSS 1.6%CVE-2024-37328HIGHSQL Server Native Client OLE DB Provider Remote Code Execution VulnerabilityEPSS 1.6%CVE-2024-37321HIGHSQL Server Native Client OLE DB Provider Remote Code Execution VulnerabilityEPSS 1.6%CVE-2024-37330HIGHSQL Server Native Client OLE DB Provider Remote Code Execution VulnerabilityEPSS 1.6%CVE-2024-37320HIGHSQL Server Native Client OLE DB Provider Remote Code Execution VulnerabilityEPSS 1.6%CVE-2024-47083HIGHPower Platform Terraform Provider has Improper Masking of Secrets in LogsEPSS 1.6%CVE-2024-30056HIGHMicrosoft Edge (Chromium-based) Information Disclosure VulnerabilityEPSS 1.6%CVE-2025-21225MEDIUMWindows Remote Desktop Gateway (RD Gateway) Denial of Service VulnerabilityEPSS 1.6%CVE-2020-17145MEDIUMAzure DevOps Server and Team Foundation Services Spoofing VulnerabilityEPSS 1.6%CVE-2019-1261—A spoofing vulnerability exists in Microsoft SharePoint when it improperly handles requests to authorize applications, resulting in cross-siEPSS 1.6%CVE-2020-16940HIGHWindows - User Profile Service Elevation of Privilege VulnerabilityEPSS 1.6%CVE-2020-0694MEDIUMA cross-site-scripting (XSS) vulnerability exists when Microsoft SharePoint Server does not properly sanitize a specially crafted web requesEPSS 1.6%CVE-2021-41378HIGHWindows NTFS Remote Code Execution VulnerabilityEPSS 1.6%CVE-2024-43620HIGHWindows Telephony Service Remote Code Execution VulnerabilityEPSS 1.6%CVE-2024-43622HIGHWindows Telephony Service Remote Code Execution VulnerabilityEPSS 1.6%CVE-2024-43621HIGHWindows Telephony Service Remote Code Execution VulnerabilityEPSS 1.6%CVE-2019-1370—An information disclosure vulnerability exists when affected Open Enclave SDK versions improperly handle objects in memory, aka 'Open EnclavEPSS 1.6%