Vulnerabilidades em microsoft

10.829 resultados
Análise Vexday

Microsoft apresenta 41 vulnerabilidades registradas, com 29 publicadas nos últimos 90 dias, indicando ritmo elevado de descobertas recentes. Oito vulnerabilidades críticas foram identificadas, predominantemente relacionadas a traversal de diretório (CWE-22), mas nenhuma está sob exploração ativa conhecida no momento. O volume recente de falhas requer atenção contínua em patching, especialmente considerando a superfície de ataque do ecossistema Microsoft.

CVE-2026-46402HIGHMicrosoft UFO uses untrusted task_name in log paths, allowing authenticated path traversal and log file creation outside the logs directoryEPSS 1.0%CVE-2026-21218HIGH.NET Spoofing VulnerabilityEPSS 1.0%CVE-2023-21776MEDIUMWindows Kernel Information Disclosure VulnerabilityEPSS 1.0%CVE-2024-43596MEDIUMMicrosoft Edge (Chromium-based) Remote Code Execution VulnerabilityEPSS 1.0%CVE-2024-43496MEDIUMMicrosoft Edge (Chromium-based) Remote Code Execution VulnerabilityEPSS 1.0%CVE-2025-64676HIGHMicrosoft Purview eDiscovery Remote Code Execution VulnerabilityEPSS 1.0%CVE-2026-56164MEDIUMMicrosoft SharePoint Server Elevation of Privilege VulnerabilityEPSS 1.0%KEVCVE-2026-20849HIGHWindows Kerberos Elevation of Privilege VulnerabilityEPSS 1.0%CVE-2020-1269—An elevation of privilege vulnerability exists when the Windows kernel fails to properly handle objects in memory, aka 'Windows Kernel ElevaEPSS 1.0%CVE-2026-55005HIGHMicrosoft Exchange Server Remote Code Execution VulnerabilityEPSS 1.0%CVE-2021-31170HIGHWindows Graphics Component Elevation of Privilege VulnerabilityEPSS 1.0%CVE-2026-40370HIGHSQL Server Remote Code Execution VulnerabilityEPSS 1.0%CVE-2026-70306CRITICALMicrosoft Office SharePoint Spoofing VulnerabilityEPSS 1.0%CVE-2025-50171CRITICALRemote Desktop Spoofing VulnerabilityEPSS 1.0%CVE-2026-47299HIGHAzure Monitor Agent Elevation of Privilege VulnerabilityEPSS 1.0%CVE-2026-81349HIGHAzure HDInsight Ambari Elevation of Privilege VulnerabilityEPSS 1.0%CVE-2024-38027MEDIUMWindows Line Printer Daemon Service Denial of Service VulnerabilityEPSS 1.0%CVE-2024-38048MEDIUMWindows Network Driver Interface Specification (NDIS) Denial of Service VulnerabilityEPSS 1.0%CVE-2020-1530HIGHWindows Remote Access Elevation of Privilege VulnerabilityEPSS 1.0%CVE-2020-0803—An elevation of privilege vulnerability exists in the way that the Windows Network Connections Service handles objects in memory, aka 'WindoEPSS 1.0%