Vulnerabilidades em microsoft

10.822 resultados
Análise Vexday

Microsoft apresenta 41 vulnerabilidades registradas, com 29 publicadas nos últimos 90 dias, indicando ritmo elevado de descobertas recentes. Oito vulnerabilidades críticas foram identificadas, predominantemente relacionadas a traversal de diretório (CWE-22), mas nenhuma está sob exploração ativa conhecida no momento. O volume recente de falhas requer atenção contínua em patching, especialmente considerando a superfície de ataque do ecossistema Microsoft.

CVE-2020-0754—An elevation of privilege vulnerability exists in Windows Error Reporting (WER) when WER handles and executes files, aka 'Windows Error RepoEPSS 1.5%CVE-2020-0656—A cross site scripting vulnerability exists when Microsoft Dynamics 365 (on-premises) does not properly sanitize a specially crafted web reqEPSS 1.5%CVE-2020-1049—A cross site scripting vulnerability exists when Microsoft Dynamics 365 (on-premises) does not properly sanitize a specially crafted web reqEPSS 1.5%CVE-2025-21332MEDIUMMapUrlToZone Security Feature Bypass VulnerabilityEPSS 1.5%CVE-2025-26635MEDIUMWindows Hello Security Feature Bypass VulnerabilityEPSS 1.5%CVE-2018-8337—A security feature bypass vulnerability exists when Windows Subsystem for Linux improperly handles case sensitivity, aka "Windows Subsystem EPSS 1.5%CVE-2025-26669HIGHWindows Routing and Remote Access Service (RRAS) Information Disclosure VulnerabilityEPSS 1.5%CVE-2020-1560HIGHMicrosoft Windows Codecs Library Remote Code Execution VulnerabilityEPSS 1.5%CVE-2021-34485MEDIUM.NET Core and Visual Studio Information Disclosure VulnerabilityEPSS 1.5%CVE-2024-49004HIGHSQL Server Native Client Remote Code Execution VulnerabilityEPSS 1.5%CVE-2024-49000HIGHSQL Server Native Client Remote Code Execution VulnerabilityEPSS 1.5%CVE-2024-49001HIGHSQL Server Native Client Remote Code Execution VulnerabilityEPSS 1.5%CVE-2024-49002HIGHSQL Server Native Client Remote Code Execution VulnerabilityEPSS 1.5%CVE-2024-49005HIGHSQL Server Native Client Remote Code Execution VulnerabilityEPSS 1.5%CVE-2024-49003HIGHSQL Server Native Client Remote Code Execution VulnerabilityEPSS 1.5%CVE-2019-1259—A spoofing vulnerability exists in Microsoft SharePoint when it improperly handles requests to authorize applications, resulting in cross-siEPSS 1.5%CVE-2023-21556HIGHWindows Layer 2 Tunneling Protocol (L2TP) Remote Code Execution VulnerabilityEPSS 1.5%CVE-2025-27487HIGHRemote Desktop Client Remote Code Execution VulnerabilityEPSS 1.5%CVE-2020-16990MEDIUMAzure Sphere Information Disclosure VulnerabilityEPSS 1.5%CVE-2024-21401CRITICALMicrosoft Entra Jira Single-Sign-On Plugin Elevation of Privilege VulnerabilityEPSS 1.5%