Vulnerabilidades em microsoft

10.822 resultados
Análise Vexday

Microsoft apresenta 41 vulnerabilidades registradas, com 29 publicadas nos últimos 90 dias, indicando ritmo elevado de descobertas recentes. Oito vulnerabilidades críticas foram identificadas, predominantemente relacionadas a traversal de diretório (CWE-22), mas nenhuma está sob exploração ativa conhecida no momento. O volume recente de falhas requer atenção contínua em patching, especialmente considerando a superfície de ataque do ecossistema Microsoft.

CVE-2023-35303HIGHUSB Audio Class System Driver Remote Code Execution VulnerabilityEPSS 1.5%CVE-2020-0736—An information disclosure vulnerability exists when the Windows kernel improperly handles objects in memory, aka 'Windows Kernel InformationEPSS 1.5%CVE-2020-0698—An information disclosure vulnerability exists when the Telephony Service improperly discloses the contents of its memory, aka 'Windows InfoEPSS 1.5%CVE-2020-0658—An information disclosure vulnerability exists in the Windows Common Log File System (CLFS) driver when it fails to properly handle objects EPSS 1.5%CVE-2020-0716—An information disclosure vulnerability exists when the win32k component improperly provides kernel information, aka 'Win32k Information DisEPSS 1.5%CVE-2020-0717—An information disclosure vulnerability exists when the win32k component improperly provides kernel information, aka 'Win32k Information DisEPSS 1.5%CVE-2022-35743HIGHMicrosoft Windows Support Diagnostic Tool (MSDT) Remote Code Execution VulnerabilityEPSS 1.5%CVE-2024-26180HIGHSecure Boot Security Feature Bypass VulnerabilityEPSS 1.5%CVE-2022-21929LOWMicrosoft Edge (Chromium-based) Remote Code Execution VulnerabilityEPSS 1.5%CVE-2024-43447HIGHWindows SMBv3 Server Remote Code Execution VulnerabilityEPSS 1.5%CVE-2021-42323LOWAzure RTOS Information Disclosure VulnerabilityEPSS 1.4%CVE-2024-49118HIGHMicrosoft Message Queuing (MSMQ) Remote Code Execution VulnerabilityEPSS 1.4%CVE-2019-1460—A spoofing vulnerability exists in the way Microsoft Outlook for Android software parses specifically crafted email messages, aka 'Outlook fEPSS 1.4%CVE-2024-37341HIGHMicrosoft SQL Server Elevation of Privilege VulnerabilityEPSS 1.4%CVE-2024-43599HIGHRemote Desktop Client Remote Code Execution VulnerabilityEPSS 1.4%CVE-2019-1325—An elevation of privilege vulnerability exists in the Windows redirected drive buffering system (rdbss.sys) when the operating system impropEPSS 1.4%CVE-2025-25199HIGHBCryptGenerateSymmetricKey memory leakEPSS 1.4%CVE-2019-0620HIGHWindows Hyper-V Remote Code Execution VulnerabilityEPSS 1.4%CVE-2021-27077HIGHWindows Win32k Elevation of Privilege VulnerabilityEPSS 1.4%CVE-2026-21518HIGHGitHub Copilot and Visual Studio Code Security Feature Bypass VulnerabilityEPSS 1.4%