Vulnerabilidades em microsoft

10.829 resultados
Análise Vexday

Microsoft apresenta 41 vulnerabilidades registradas, com 29 publicadas nos últimos 90 dias, indicando ritmo elevado de descobertas recentes. Oito vulnerabilidades críticas foram identificadas, predominantemente relacionadas a traversal de diretório (CWE-22), mas nenhuma está sob exploração ativa conhecida no momento. O volume recente de falhas requer atenção contínua em patching, especialmente considerando a superfície de ataque do ecossistema Microsoft.

CVE-2025-21253MEDIUMMicrosoft Edge for IOS and Android Spoofing VulnerabilityEPSS 1.2%CVE-2026-49451HIGHMicrosoft.OpenAPI: Circular schema references may terminate OpenAPI parsingEPSS 1.2%CVE-2020-16982MEDIUMAzure Sphere Unsigned Code Execution VulnerabilityEPSS 1.2%CVE-2019-0775—An information disclosure vulnerability exists when the Windows kernel improperly handles objects in memory, aka 'Windows Kernel InformationEPSS 1.2%CVE-2021-26862HIGHWindows Installer Elevation of Privilege VulnerabilityEPSS 1.2%CVE-2021-38641MEDIUMMicrosoft Edge for Android Spoofing VulnerabilityEPSS 1.2%CVE-2023-32038HIGHMicrosoft ODBC Driver Remote Code Execution VulnerabilityEPSS 1.2%CVE-2021-38642MEDIUMMicrosoft Edge for iOS Spoofing VulnerabilityEPSS 1.2%CVE-2020-0886HIGHWindows Storage Services Elevation of Privilege VulnerabilityEPSS 1.2%CVE-2021-33768HIGHMicrosoft Exchange Server Elevation of Privilege VulnerabilityEPSS 1.2%CVE-2024-43600HIGHMicrosoft Office Elevation of Privilege VulnerabilityEPSS 1.2%CVE-2020-0904MEDIUMWindows Hyper-V Denial of Service VulnerabilityEPSS 1.2%CVE-2024-21326CRITICALMicrosoft Edge (Chromium-based) Elevation of Privilege VulnerabilityEPSS 1.2%CVE-2024-49050HIGHVisual Studio Code Python Extension Remote Code Execution VulnerabilityEPSS 1.2%CVE-2024-26196MEDIUMMicrosoft Edge for Android (Chromium-based) Information Disclosure VulnerabilityEPSS 1.2%CVE-2019-1382—An elevation of privilege vulnerability exists when ActiveX Installer service may allow access to files without proper authentication, aka 'EPSS 1.2%CVE-2026-26154HIGHWindows Server Update Service (WSUS) Tampering VulnerabilityEPSS 1.2%CVE-2023-24900MEDIUMWindows NTLM Security Support Provider Information Disclosure VulnerabilityEPSS 1.2%CVE-2020-0634—An elevation of privilege vulnerability exists when the Windows Common Log File System (CLFS) driver improperly handles objects in memory, aEPSS 1.2%CVE-2019-0733—A security feature bypass vulnerability exists in Windows Defender Application Control (WDAC) which could allow an attacker to bypass WDAC eEPSS 1.2%