Vulnerabilidades em microsoft
9.312 resultadosAnálise Vexday
Microsoft apresenta 41 vulnerabilidades registradas, com 29 publicadas nos últimos 90 dias, indicando ritmo elevado de descobertas recentes. Oito vulnerabilidades críticas foram identificadas, predominantemente relacionadas a traversal de diretório (CWE-22), mas nenhuma está sob exploração ativa conhecida no momento. O volume recente de falhas requer atenção contínua em patching, especialmente considerando a superfície de ataque do ecossistema Microsoft.
CVE-2020-0704—An elevation of privilege vulnerability exists when the Windows Wireless Network Manager improperly handles memory.To exploit this vulnerabiEPSS 1.0%CVE-2021-36946MEDIUMMicrosoft Dynamics Business Central Cross-site Scripting VulnerabilityEPSS 0.9%CVE-2024-38249HIGHWindows Graphics Component Elevation of Privilege VulnerabilityEPSS 0.9%CVE-2021-36950MEDIUMMicrosoft Dynamics 365 (on-premises) Cross-site Scripting VulnerabilityEPSS 0.9%CVE-2025-49677HIGHMicrosoft Brokering File System Elevation of Privilege VulnerabilityEPSS 0.9%CVE-2024-26168MEDIUMSecure Boot Security Feature Bypass VulnerabilityEPSS 0.9%CVE-2020-0776—An elevation of privilege vulnerability exists when the Windows AppX Deployment Server improperly handles file operations.To exploit this vuEPSS 0.9%CVE-2020-0769—An elevation of privilege vulnerability exists when the Windows CSC Service improperly handles memory.To exploit this vulnerability, an attaEPSS 0.9%CVE-2020-1527HIGHWindows Custom Protocol Engine Elevation of Privilege VulnerabilityEPSS 0.9%CVE-2020-1578—Windows Kernel Information Disclosure VulnerabilityEPSS 0.9%CVE-2026-58529HIGHWindows Active Directory Federation Services (ADFS) Information Disclosure VulnerabilityEPSS 0.9%CVE-2024-49079HIGHInput Method Editor (IME) Remote Code Execution VulnerabilityEPSS 0.9%CVE-2024-30096MEDIUMWindows Cryptographic Services Information Disclosure VulnerabilityEPSS 0.9%CVE-2019-0707—An elevation of privilege vulnerability exists in the Network Driver Interface Specification (NDIS) when ndis.sys fails to check the length EPSS 0.9%CVE-2020-17077HIGHWindows Update Stack Elevation of Privilege VulnerabilityEPSS 0.9%CVE-2022-38038HIGHWindows Kernel Elevation of Privilege VulnerabilityEPSS 0.9%CVE-2020-1269—An elevation of privilege vulnerability exists when the Windows kernel fails to properly handle objects in memory, aka 'Windows Kernel ElevaEPSS 0.9%CVE-2024-35248HIGHMicrosoft Dynamics 365 Business Central Elevation of Privilege VulnerabilityEPSS 0.9%CVE-2023-36727MEDIUMMicrosoft Edge (Chromium-based) Spoofing VulnerabilityEPSS 0.9%CVE-2025-64670MEDIUMWindows DirectX Information Disclosure VulnerabilityEPSS 0.9%