Vulnerabilidades em microsoft
10.822 resultadosAnálise Vexday
Microsoft apresenta 41 vulnerabilidades registradas, com 29 publicadas nos últimos 90 dias, indicando ritmo elevado de descobertas recentes. Oito vulnerabilidades críticas foram identificadas, predominantemente relacionadas a traversal de diretório (CWE-22), mas nenhuma está sob exploração ativa conhecida no momento. O volume recente de falhas requer atenção contínua em patching, especialmente considerando a superfície de ataque do ecossistema Microsoft.
CVE-2025-21222HIGHWindows Telephony Service Remote Code Execution VulnerabilityEPSS 1.3%CVE-2025-21221HIGHWindows Telephony Service Remote Code Execution VulnerabilityEPSS 1.3%CVE-2019-1274—An information disclosure vulnerability exists when the Windows kernel fails to properly initialize a memory address, aka 'Windows Kernel InEPSS 1.3%CVE-2025-21205HIGHWindows Telephony Service Remote Code Execution VulnerabilityEPSS 1.3%CVE-2019-1282—An information disclosure exists in the Windows Common Log File System (CLFS) driver when it fails to properly handle sandbox checks, aka 'WEPSS 1.3%CVE-2024-21403CRITICALMicrosoft Azure Kubernetes Service Confidential Container Elevation of Privilege VulnerabilityEPSS 1.3%CVE-2020-1194—A denial of service vulnerability exists when Windows Registry improperly handles filesystem operations, aka 'Windows Registry Denial of SerEPSS 1.3%CVE-2016-9485—On Windows endpoints, the SecureConnector agent is vulnerable to privilege escalation whereby an authenticated unprivileged user can obtain administrator privileges on the endpoint because it fails to set any permissions on downloaded file objectsEPSS 1.3%CVE-2016-9486—On Windows endpoints, the SecureConnector agent is vulnerable to privilege escalation whereby an authenticated unprivileged user can obtain administrator privileges on the endpoint because files are created in a folder with incorrect privilegesEPSS 1.3%CVE-2022-24495HIGHWindows Direct Show Remote Code Execution VulnerabilityEPSS 1.3%CVE-2019-0632—A security feature bypass vulnerability exists in Windows which could allow an attacker to bypass Device Guard, aka 'Windows Security FeaturEPSS 1.3%CVE-2024-20679MEDIUMAzure Stack Hub Spoofing VulnerabilityEPSS 1.3%CVE-2021-38652HIGHMicrosoft SharePoint Server Spoofing VulnerabilityEPSS 1.3%CVE-2022-34707HIGHWindows Kernel Elevation of Privilege VulnerabilityEPSS 1.3%CVE-2021-38651HIGHMicrosoft SharePoint Server Spoofing VulnerabilityEPSS 1.3%CVE-2019-0631—A security feature bypass vulnerability exists in Windows which could allow an attacker to bypass Device Guard, aka 'Windows Security FeaturEPSS 1.3%CVE-2025-24045HIGHWindows Remote Desktop Services Remote Code Execution VulnerabilityEPSS 1.3%CVE-2020-17135MEDIUMAzure DevOps Server Spoofing VulnerabilityEPSS 1.3%CVE-2025-21408HIGHMicrosoft Edge (Chromium-based) Remote Code Execution VulnerabilityEPSS 1.3%CVE-2025-29958MEDIUMWindows Routing and Remote Access Service (RRAS) Information Disclosure VulnerabilityEPSS 1.3%