Vulnerabilidades em microsoft
10.810 resultadosAnálise Vexday
Microsoft apresenta 41 vulnerabilidades registradas, com 29 publicadas nos últimos 90 dias, indicando ritmo elevado de descobertas recentes. Oito vulnerabilidades críticas foram identificadas, predominantemente relacionadas a traversal de diretório (CWE-22), mas nenhuma está sob exploração ativa conhecida no momento. O volume recente de falhas requer atenção contínua em patching, especialmente considerando a superfície de ataque do ecossistema Microsoft.
CVE-2018-8574—A remote code execution vulnerability exists in Microsoft Excel software when the software fails to properly handle objects in memory, aka "EPSS 19.1%CVE-2018-8553—A remote code execution vulnerability exists in the way that Microsoft Graphics Components handle objects in memory, aka "Microsoft GraphicsEPSS 19.1%CVE-2018-8522—A remote code execution vulnerability exists in Microsoft Outlook software when it fails to properly handle objects in memory, aka "MicrosofEPSS 19.1%CVE-2018-8524—A remote code execution vulnerability exists in Microsoft Outlook software when it fails to properly handle objects in memory, aka "MicrosofEPSS 19.1%CVE-2018-8539—A remote code execution vulnerability exists in Microsoft Word software when it fails to properly handle objects in memory, aka "Microsoft WEPSS 19.1%CVE-2020-1219—A remote code execution vulnerability exists in the way that Microsoft browsers access objects in memory, aka 'Microsoft Browser Memory CorrEPSS 19.1%CVE-2018-1027—A remote code execution vulnerability exists in Microsoft Excel software when the software fails to properly handle objects in memory, aka "EPSS 19.0%CVE-2019-1280—A remote code execution vulnerability exists in Microsoft Windows that could allow remote code execution if a .LNK file is processed.An attaEPSS 19.0%CVE-2025-21293HIGHActive Directory Domain Services Elevation of Privilege VulnerabilityEPSS 19.0%CVE-2018-1028—A remote code execution vulnerability exists when the Office graphics component improperly handles specially crafted embedded fonts, aka "MiEPSS 18.9%CVE-2018-8472—An information disclosure vulnerability exists in the way that the Windows Graphics Device Interface (GDI) handles objects in memory, allowiEPSS 18.9%CVE-2026-20947HIGHMicrosoft SharePoint Server Remote Code Execution VulnerabilityEPSS 18.8%CVE-2022-21990HIGHRemote Desktop Client Remote Code Execution VulnerabilityEPSS 18.8%CVE-2018-8346—A remote code execution vulnerability exists in Microsoft Windows that could allow remote code execution if a .LNK file is processed, aka "LEPSS 18.8%CVE-2022-22047HIGHWindows Client Server Run-time Subsystem (CSRSS) Elevation of Privilege VulnerabilityEPSS 18.8%KEVCVE-2018-1004—A remote code execution vulnerability exists in the way that the VBScript engine handles objects in memory, aka "Windows VBScript Engine RemEPSS 18.7%CVE-2019-0812—A remote code execution vulnerability exists in the way that the Chakra scripting engine handles objects in memory in Microsoft Edge, aka 'CEPSS 18.7%CVE-2018-8242—A remote code execution vulnerability exists in the way that the scripting engine handles objects in memory in Internet Explorer, aka "ScripEPSS 18.6%CVE-2019-0566—An elevation of privilege vulnerability exists in Microsoft Edge Browser Broker COM object, aka "Microsoft Edge Elevation of Privilege VulneEPSS 18.6%CVE-2018-8350—A remote code execution vulnerability exists when Microsoft Windows PDF Library improperly handles objects in memory, aka "Windows PDF RemotEPSS 18.6%