Vulnerabilidades em microsoft
9.312 resultadosAnálise Vexday
Microsoft apresenta 41 vulnerabilidades registradas, com 29 publicadas nos últimos 90 dias, indicando ritmo elevado de descobertas recentes. Oito vulnerabilidades críticas foram identificadas, predominantemente relacionadas a traversal de diretório (CWE-22), mas nenhuma está sob exploração ativa conhecida no momento. O volume recente de falhas requer atenção contínua em patching, especialmente considerando a superfície de ataque do ecossistema Microsoft.
CVE-2024-38048MEDIUMWindows Network Driver Interface Specification (NDIS) Denial of Service VulnerabilityEPSS 1.0%CVE-2022-34719HIGHWindows Distributed File System (DFS) Elevation of Privilege VulnerabilityEPSS 1.0%CVE-2020-0984—An elevation of privilege vulnerability exists when the Microsoft AutoUpdate (MAU) application for Mac improperly validates updates before eEPSS 1.0%CVE-2020-1530HIGHWindows Remote Access Elevation of Privilege VulnerabilityEPSS 1.0%CVE-2020-0803—An elevation of privilege vulnerability exists in the way that the Windows Network Connections Service handles objects in memory, aka 'WindoEPSS 1.0%CVE-2020-0802—An elevation of privilege vulnerability exists in the way that the Windows Network Connections Service handles objects in memory, aka 'WindoEPSS 1.0%CVE-2020-16905MEDIUMWindows Error Reporting Elevation of Privilege VulnerabilityEPSS 1.0%CVE-2024-30095HIGHWindows Routing and Remote Access Service (RRAS) Remote Code Execution VulnerabilityEPSS 1.0%CVE-2024-30062HIGHWindows Standards-Based Storage Management Service Remote Code Execution VulnerabilityEPSS 1.0%CVE-2019-1477—An elevation of privilege vulnerability exists when the Windows Printer Service improperly validates file paths while loading printer driverEPSS 1.0%CVE-2023-36881MEDIUMAzure Apache Ambari Spoofing VulnerabilityEPSS 1.0%CVE-2019-1045HIGHWindows Network File System Elevation of Privilege VulnerabilityEPSS 1.0%CVE-2020-1522HIGHWindows Speech Runtime Elevation of Privilege VulnerabilityEPSS 1.0%CVE-2023-36877MEDIUMAzure Apache Oozie Spoofing VulnerabilityEPSS 1.0%CVE-2020-16935HIGHWindows COM Server Elevation of Privilege VulnerabilityEPSS 1.0%CVE-2019-1256—An elevation of privilege vulnerability exists in Windows when the Win32k component fails to properly handle objects in memory, aka 'Win32k EPSS 1.0%CVE-2023-24869HIGHRemote Procedure Call Runtime Remote Code Execution VulnerabilityEPSS 1.0%CVE-2020-0810—An elevation of privilege vulnerability exists when the Diagnostics Hub Standard Collector or the Visual Studio Standard Collector allows fiEPSS 1.0%CVE-2023-24908HIGHRemote Procedure Call Runtime Remote Code Execution VulnerabilityEPSS 1.0%CVE-2024-29057MEDIUMMicrosoft Edge (Chromium-based) Spoofing VulnerabilityEPSS 1.0%