Vulnerabilidades em microsoft

10.829 resultados
Análise Vexday

Microsoft apresenta 41 vulnerabilidades registradas, com 29 publicadas nos últimos 90 dias, indicando ritmo elevado de descobertas recentes. Oito vulnerabilidades críticas foram identificadas, predominantemente relacionadas a traversal de diretório (CWE-22), mas nenhuma está sob exploração ativa conhecida no momento. O volume recente de falhas requer atenção contínua em patching, especialmente considerando a superfície de ataque do ecossistema Microsoft.

CVE-2026-69845CRITICALWindows DHCP Server Remote Code Execution VulnerabilityEPSS 1.0%CVE-2026-68839CRITICALWindows USB Mass Storage Class Driver Remote Code Execution VulnerabilityEPSS 1.0%CVE-2024-30063MEDIUMWindows Distributed File System (DFS) Remote Code Execution VulnerabilityEPSS 1.0%CVE-2020-0877—An elevation of privilege vulnerability exists in Windows when the Win32k component fails to properly handle objects in memory, aka 'Win32k EPSS 1.0%CVE-2020-16885HIGHWindows Storage VSP Driver Elevation of Privilege VulnerabilityEPSS 1.0%CVE-2020-0957—An elevation of privilege vulnerability exists in Windows when the Windows kernel-mode driver fails to properly handle objects in memory, akEPSS 1.0%CVE-2025-64672HIGHMicrosoft SharePoint Server Spoofing VulnerabilityEPSS 1.0%CVE-2018-8170—An elevation of privilege vulnerability exists in the way that the Windows kernel image handles objects in memory, aka "Windows Image ElevatEPSS 1.0%CVE-2022-21879MEDIUMWindows Kernel Elevation of Privilege VulnerabilityEPSS 1.0%CVE-2025-64666HIGHMicrosoft Exchange Server Elevation of Privilege VulnerabilityEPSS 1.0%CVE-2024-43595MEDIUMMicrosoft Edge (Chromium-based) Remote Code Execution VulnerabilityEPSS 1.0%CVE-2020-0797—An elevation of privilege vulnerability exists when the Windows Work Folder Service improperly handles file operations, aka 'Windows Work FoEPSS 1.0%CVE-2023-33153MEDIUMMicrosoft Outlook Remote Code Execution VulnerabilityEPSS 1.0%CVE-2020-0865—An elevation of privilege vulnerability exists when the Windows Work Folder Service improperly handles file operations, aka 'Windows Work FoEPSS 1.0%CVE-2020-1418—An elevation of privilege vulnerability exists when the Windows Diagnostics Execution Service fails to properly sanitize input, leading to aEPSS 1.0%CVE-2025-33054HIGHRemote Desktop Spoofing VulnerabilityEPSS 1.0%CVE-2025-59248HIGHMicrosoft Exchange Server Spoofing VulnerabilityEPSS 1.0%CVE-2020-1029—An elevation of privilege vulnerability exists when Connected User Experiences and Telemetry Service improperly handles file operations, akaEPSS 1.0%CVE-2025-21331HIGHWindows Installer Elevation of Privilege VulnerabilityEPSS 1.0%CVE-2024-37968HIGHWindows DNS Spoofing VulnerabilityEPSS 1.0%