Vulnerabilidades em microsoft
9.312 resultadosAnálise Vexday
Microsoft apresenta 41 vulnerabilidades registradas, com 29 publicadas nos últimos 90 dias, indicando ritmo elevado de descobertas recentes. Oito vulnerabilidades críticas foram identificadas, predominantemente relacionadas a traversal de diretório (CWE-22), mas nenhuma está sob exploração ativa conhecida no momento. O volume recente de falhas requer atenção contínua em patching, especialmente considerando a superfície de ataque do ecossistema Microsoft.
CVE-2019-1169HIGHWin32k Elevation of Privilege VulnerabilityEPSS 1.0%CVE-2019-1414—An elevation of privilege vulnerability exists in Visual Studio Code when it exposes a debug listener to users of a local computer, aka 'VisEPSS 1.0%CVE-2024-26181MEDIUMWindows Kernel Denial of Service VulnerabilityEPSS 1.0%CVE-2026-20854HIGHWindows Local Security Authority Subsystem Service (LSASS) Remote Code Execution VulnerabilityEPSS 1.0%CVE-2022-23266HIGHMicrosoft Defender for IoT Elevation of Privilege VulnerabilityEPSS 1.0%CVE-2019-0942—An elevation of privilege vulnerability exists in the Unified Write Filter (UWF) feature for Windows 10 when it improperly restricts access EPSS 1.0%CVE-2025-55243HIGHMicrosoft OfficePlus Spoofing VulnerabilityEPSS 1.0%CVE-2020-0798—An elevation of privilege vulnerability exists in the Windows Installer when the Windows Installer fails to properly sanitize input leading EPSS 1.0%CVE-2024-43477HIGHMicrosoft Entra ID Elevation of Privilege VulnerabilityEPSS 1.0%CVE-2025-29835MEDIUMWindows Remote Access Connection Manager Information Disclosure VulnerabilityEPSS 1.0%CVE-2025-62456HIGHWindows Resilient File System (ReFS) Remote Code Execution VulnerabilityEPSS 1.0%CVE-2025-29832MEDIUMWindows Routing and Remote Access Service (RRAS) Information Disclosure VulnerabilityEPSS 1.0%CVE-2025-29830MEDIUMWindows Routing and Remote Access Service (RRAS) Information Disclosure VulnerabilityEPSS 1.0%CVE-2025-64678HIGHWindows Routing and Remote Access Service (RRAS) Remote Code Execution VulnerabilityEPSS 1.0%CVE-2018-8170—An elevation of privilege vulnerability exists in the way that the Windows kernel image handles objects in memory, aka "Windows Image ElevatEPSS 1.0%CVE-2021-42307MEDIUMMicrosoft Edge (Chromium-based) Information Disclosure VulnerabilityEPSS 1.0%CVE-2026-21250HIGHWindows HTTP.sys Elevation of Privilege VulnerabilityEPSS 1.0%CVE-2019-1142—An elevation of privilege vulnerability exists when the .NET Framework common language runtime (CLR) allows file creation in arbitrary locatEPSS 1.0%CVE-2021-28313HIGHDiagnostics Hub Standard Collector Service Elevation of Privilege VulnerabilityEPSS 1.0%CVE-2021-28322HIGHDiagnostics Hub Standard Collector Service Elevation of Privilege VulnerabilityEPSS 1.0%