Vulnerabilidades em microsoft
9.312 resultadosAnálise Vexday
Microsoft apresenta 41 vulnerabilidades registradas, com 29 publicadas nos últimos 90 dias, indicando ritmo elevado de descobertas recentes. Oito vulnerabilidades críticas foram identificadas, predominantemente relacionadas a traversal de diretório (CWE-22), mas nenhuma está sob exploração ativa conhecida no momento. O volume recente de falhas requer atenção contínua em patching, especialmente considerando a superfície de ataque do ecossistema Microsoft.
CVE-2020-1556—Windows WalletService Elevation of Privilege VulnerabilityEPSS 0.9%CVE-2026-40406HIGHWindows TCP/IP Information Disclosure VulnerabilityEPSS 0.9%CVE-2020-1559HIGHWindows Storage Services Elevation of Privilege VulnerabilityEPSS 0.9%CVE-2020-17101HIGHHEIF Image Extensions Remote Code Execution VulnerabilityEPSS 0.9%CVE-2020-1053HIGHDirectX Elevation of Privilege VulnerabilityEPSS 0.9%CVE-2020-0790HIGHMicrosoft splwow64 Elevation of Privilege VulnerabilityEPSS 0.9%CVE-2020-1052HIGHWindows Elevation of Privilege VulnerabilityEPSS 0.9%CVE-2020-1524HIGHWindows Speech Shell Components Elevation of Privilege VulnerabilityEPSS 0.9%CVE-2024-38065MEDIUMSecure Boot Security Feature Bypass VulnerabilityEPSS 0.9%CVE-2019-1284—An elevation of privilege vulnerability exists when DirectX improperly handles objects in memory, aka 'DirectX Elevation of Privilege VulnerEPSS 0.9%CVE-2020-0766HIGHMicrosoft Store Runtime Elevation of Privilege VulnerabilityEPSS 0.9%CVE-2026-53597HIGHPrompty: Arbitrary code execution via JavaScript frontmatter in TypeScript loaderEPSS 0.9%CVE-2023-32047HIGHPaint 3D Remote Code Execution VulnerabilityEPSS 0.9%CVE-2023-21788HIGH3D Builder Remote Code Execution VulnerabilityEPSS 0.9%CVE-2020-1000—An elevation of privilege vulnerability exists when the Windows kernel fails to properly handle objects in memory, aka 'Windows Kernel ElevaEPSS 0.9%CVE-2020-0985—An elevation of privilege vulnerability exists when the Windows Update Stack fails to properly handle objects in memory, aka 'Windows UpdateEPSS 0.9%CVE-2024-38234MEDIUMWindows Networking Denial of Service VulnerabilityEPSS 0.9%CVE-2023-21786HIGH3D Builder Remote Code Execution VulnerabilityEPSS 0.9%CVE-2023-21791HIGH3D Builder Remote Code Execution VulnerabilityEPSS 0.9%CVE-2024-38171HIGHMicrosoft PowerPoint Remote Code Execution VulnerabilityEPSS 0.9%