Vulnerabilidades em microsoft
10.810 resultadosAnálise Vexday
Microsoft apresenta 41 vulnerabilidades registradas, com 29 publicadas nos últimos 90 dias, indicando ritmo elevado de descobertas recentes. Oito vulnerabilidades críticas foram identificadas, predominantemente relacionadas a traversal de diretório (CWE-22), mas nenhuma está sob exploração ativa conhecida no momento. O volume recente de falhas requer atenção contínua em patching, especialmente considerando a superfície de ataque do ecossistema Microsoft.
CVE-2019-1354—A remote code execution vulnerability exists when Git for Visual Studio improperly sanitizes input, aka 'Git for Visual Studio Remote Code EEPSS 22.6%CVE-2018-8327—A remote code execution vulnerability exists in PowerShell Editor Services, aka "PowerShell Editor Services Remote Code Execution VulnerabilEPSS 22.5%CVE-2018-8393—A buffer overflow vulnerability exists in the Microsoft JET Database Engine that could allow remote code execution on an affected system, akEPSS 22.5%CVE-2020-1349—A remote code execution vulnerability exists in Microsoft Outlook software when it fails to properly handle objects in memory, aka 'MicrosofEPSS 22.4%CVE-2025-53722HIGHWindows Remote Desktop Services Denial of Service VulnerabilityEPSS 22.3%CVE-2021-31956HIGHWindows NTFS Elevation of Privilege VulnerabilityEPSS 22.3%KEVCVE-2022-35742HIGHMicrosoft Outlook Denial of Service VulnerabilityEPSS 22.3%CVE-2018-8639HIGHAn elevation of privilege vulnerability exists in Windows when the Win32k component fails to properly handle objects in memory, aka "Win32k EPSS 22.2%KEVCVE-2021-24094CRITICALWindows TCP/IP Remote Code Execution VulnerabilityEPSS 22.1%CVE-2018-8494—A remote code execution vulnerability exists when the Microsoft XML Core Services MSXML parser processes user input, aka "MS XML Remote CodeEPSS 22.1%CVE-2020-0883—A remote code execution vulnerability exists in the way that the Windows Graphics Device Interface (GDI) handles objects in the memory, aka EPSS 22.0%CVE-2019-0585—A remote code execution vulnerability exists in Microsoft Word software when it fails to properly handle objects in memory, aka "Microsoft WEPSS 22.0%CVE-2018-8248—A remote code execution vulnerability exists in Microsoft Excel software when the software fails to properly handle objects in memory, aka "EPSS 21.9%CVE-2024-43454HIGHWindows Remote Desktop Licensing Service Remote Code Execution VulnerabilityEPSS 21.9%CVE-2021-34484HIGHWindows User Profile Service Elevation of Privilege VulnerabilityEPSS 21.8%KEVCVE-2018-8344—A remote code execution vulnerability exists when the Windows font library improperly handles specially crafted embedded fonts, aka "MicrosoEPSS 21.8%CVE-2019-1297HIGHA remote code execution vulnerability exists in Microsoft Excel software when the software fails to properly handle objects in memory, aka 'EPSS 21.8%KEVCVE-2019-0903HIGHA remote code execution vulnerability exists in the way that the Windows Graphics Device Interface (GDI) handles objects in the memory, aka EPSS 21.7%KEVCVE-2018-8161—A remote code execution vulnerability exists in Microsoft Office software when the software fails to properly handle objects in memory, aka EPSS 21.7%CVE-2021-34535HIGHRemote Desktop Client Remote Code Execution VulnerabilityEPSS 21.7%