Vulnerabilidades em microsoft

10.822 resultados
Análise Vexday

Microsoft apresenta 41 vulnerabilidades registradas, com 29 publicadas nos últimos 90 dias, indicando ritmo elevado de descobertas recentes. Oito vulnerabilidades críticas foram identificadas, predominantemente relacionadas a traversal de diretório (CWE-22), mas nenhuma está sob exploração ativa conhecida no momento. O volume recente de falhas requer atenção contínua em patching, especialmente considerando a superfície de ataque do ecossistema Microsoft.

CVE-2020-17056MEDIUMWindows Network File System Information Disclosure VulnerabilityEPSS 1.3%CVE-2020-16999MEDIUMWindows WalletService Information Disclosure VulnerabilityEPSS 1.3%CVE-2020-17004MEDIUMWindows Graphics Component Information Disclosure VulnerabilityEPSS 1.3%CVE-2020-17013MEDIUMWin32k Information Disclosure VulnerabilityEPSS 1.3%CVE-2020-17000MEDIUMRemote Desktop Protocol Client Information Disclosure VulnerabilityEPSS 1.3%CVE-2020-0775—An information disclosure vulnerability exists when Windows Error Reporting improperly handles file operations.To exploit this vulnerabilityEPSS 1.3%CVE-2019-1294—A security feature bypass exists when Windows Secure Boot improperly restricts access to debugging functionality, aka 'Windows Secure Boot SEPSS 1.3%CVE-2020-0643—An information disclosure vulnerability exists in the way that the Windows Graphics Device Interface Plus (GDI+) handles objects in memory, EPSS 1.3%CVE-2018-8202—An elevation of privilege vulnerability exists in .NET Framework which could allow an attacker to elevate their privilege level, aka ".NET FEPSS 1.3%CVE-2020-0639—An information disclosure vulnerability exists in the Windows Common Log File System (CLFS) driver when it fails to properly handle objects EPSS 1.3%CVE-2020-1290—An information disclosure vulnerability exists when the win32k component improperly provides kernel information, aka 'Win32k Information DisEPSS 1.3%CVE-2018-8313—An elevation of privilege vulnerability exists in the way that the Windows Kernel API enforces permissions, aka "Windows Elevation of PrivilEPSS 1.3%CVE-2021-27074MEDIUMAzure Sphere Unsigned Code Execution VulnerabilityEPSS 1.3%CVE-2020-0608—An information disclosure vulnerability exists when the win32k component improperly provides kernel information, aka 'Win32k Information DisEPSS 1.3%CVE-2021-1724MEDIUMMicrosoft Dynamics Business Central Cross-site Scripting VulnerabilityEPSS 1.3%CVE-2021-31982HIGHMicrosoft Edge (Chromium-based) Security Feature Bypass VulnerabilityEPSS 1.3%CVE-2018-8282—An elevation of privilege vulnerability exists in Windows when the Windows kernel-mode driver fails to properly handle objects in memory, akEPSS 1.3%CVE-2020-0859—An information vulnerability exists when Windows Modules Installer Service improperly discloses file information, aka 'Windows Modules InstaEPSS 1.3%CVE-2026-25177HIGHActive Directory Domain Services Elevation of Privilege VulnerabilityEPSS 1.3%CVE-2025-49666HIGHWindows Server Setup and Boot Event Collection Remote Code Execution VulnerabilityEPSS 1.3%