Vulnerabilidades em microsoft

9.312 resultados
Análise Vexday

Microsoft apresenta 41 vulnerabilidades registradas, com 29 publicadas nos últimos 90 dias, indicando ritmo elevado de descobertas recentes. Oito vulnerabilidades críticas foram identificadas, predominantemente relacionadas a traversal de diretório (CWE-22), mas nenhuma está sob exploração ativa conhecida no momento. O volume recente de falhas requer atenção contínua em patching, especialmente considerando a superfície de ataque do ecossistema Microsoft.

CVE-2022-21847MEDIUMWindows Hyper-V Denial of Service VulnerabilityEPSS 1.0%CVE-2022-29146HIGHMicrosoft Edge (Chromium-based) Elevation of Privilege VulnerabilityEPSS 1.0%CVE-2025-21395HIGHMicrosoft Access Remote Code Execution VulnerabilityEPSS 1.0%CVE-2026-23664HIGHAzure IoT Explorer Information Disclosure VulnerabilityEPSS 1.0%CVE-2020-0838HIGHNTFS Elevation of Privilege VulnerabilityEPSS 1.0%CVE-2020-0998HIGHWindows Graphics Component Elevation of Privilege VulnerabilityEPSS 1.0%CVE-2023-35635MEDIUMWindows Kernel Denial of Service VulnerabilityEPSS 1.0%CVE-2020-0782HIGHWindows Cryptographic Catalog Services Elevation of Privilege VulnerabilityEPSS 1.0%CVE-2020-0870HIGHShell infrastructure component Elevation of Privilege VulnerabilityEPSS 1.0%CVE-2020-1029An elevation of privilege vulnerability exists when Connected User Experiences and Telemetry Service improperly handles file operations, akaEPSS 1.0%CVE-2025-21383HIGHMicrosoft Excel Information Disclosure VulnerabilityEPSS 1.0%CVE-2023-36020HIGHMicrosoft Dynamics 365 (on-premises) Cross-site Scripting VulnerabilityEPSS 1.0%CVE-2022-30138HIGHWindows Print Spooler Elevation of Privilege VulnerabilityEPSS 1.0%CVE-2023-36393HIGHWindows User Interface Application Core Remote Code Execution VulnerabilityEPSS 1.0%CVE-2023-21712HIGHWindows Point-to-Point Tunneling Protocol Remote Code Execution VulnerabilityEPSS 1.0%CVE-2024-26257HIGHMicrosoft Excel Remote Code Execution VulnerabilityEPSS 1.0%CVE-2019-1090An elevation of privilege vulnerability exists in the way that the dnsrslvr.dll handles objects in memory, aka 'Windows dnsrlvr.dll ElevatioEPSS 1.0%CVE-2019-0999An elevation of privilege vulnerability exists when DirectX improperly handles objects in memory, aka 'DirectX Elevation of Privilege VulnerEPSS 1.0%CVE-2025-32722MEDIUMWindows Storage Port Driver Information Disclosure VulnerabilityEPSS 1.0%CVE-2025-59502HIGHRemote Procedure Call Denial of Service VulnerabilityEPSS 1.0%