Vulnerabilidades em microsoft
9.312 resultadosAnálise Vexday
Microsoft apresenta 41 vulnerabilidades registradas, com 29 publicadas nos últimos 90 dias, indicando ritmo elevado de descobertas recentes. Oito vulnerabilidades críticas foram identificadas, predominantemente relacionadas a traversal de diretório (CWE-22), mas nenhuma está sob exploração ativa conhecida no momento. O volume recente de falhas requer atenção contínua em patching, especialmente considerando a superfície de ataque do ecossistema Microsoft.
CVE-2025-58729MEDIUMWindows Local Session Manager (LSM) Denial of Service VulnerabilityEPSS 1.0%CVE-2026-34401MEDIUMXML Notepad: XML External Entity (XXE) Injection via Unsafe XmlTextReader in XML Diff and Schema LoadingEPSS 1.0%CVE-2025-33066HIGHWindows Routing and Remote Access Service (RRAS) Remote Code Execution VulnerabilityEPSS 1.0%CVE-2025-32710HIGHWindows Remote Desktop Services Remote Code Execution VulnerabilityEPSS 1.0%CVE-2022-37964HIGHWindows Kernel Elevation of Privilege VulnerabilityEPSS 1.0%CVE-2024-37988HIGHSecure Boot Security Feature Bypass VulnerabilityEPSS 1.0%CVE-2024-37974HIGHSecure Boot Security Feature Bypass VulnerabilityEPSS 1.0%CVE-2024-37989HIGHSecure Boot Security Feature Bypass VulnerabilityEPSS 1.0%CVE-2023-38188MEDIUMAzure Apache Hadoop Spoofing VulnerabilityEPSS 1.0%CVE-2020-16995HIGHNetwork Watcher Agent Virtual Machine Extension for Linux Elevation of Privilege VulnerabilityEPSS 1.0%CVE-2024-38010HIGHSecure Boot Security Feature Bypass VulnerabilityEPSS 1.0%CVE-2020-0934—An elevation of privilege vulnerability exists when the Windows WpcDesktopMonSvc improperly manages memory.To exploit this vulnerability, anEPSS 1.0%CVE-2024-37986HIGHSecure Boot Security Feature Bypass VulnerabilityEPSS 1.0%CVE-2021-40440MEDIUMMicrosoft Dynamics Business Central Cross-site Scripting VulnerabilityEPSS 1.0%CVE-2024-37972HIGHSecure Boot Security Feature Bypass VulnerabilityEPSS 1.0%CVE-2022-41044HIGHWindows Point-to-Point Tunneling Protocol Remote Code Execution VulnerabilityEPSS 1.0%CVE-2021-34512HIGHStorage Spaces Controller Elevation of Privilege VulnerabilityEPSS 1.0%CVE-2021-34498HIGHWindows GDI Elevation of Privilege VulnerabilityEPSS 1.0%CVE-2023-36420HIGHMicrosoft ODBC Driver for SQL Server Remote Code Execution VulnerabilityEPSS 1.0%CVE-2021-34513HIGHStorage Spaces Controller Elevation of Privilege VulnerabilityEPSS 1.0%