Vulnerabilidades em microsoft

10.829 resultados
Análise Vexday

Microsoft apresenta 41 vulnerabilidades registradas, com 29 publicadas nos últimos 90 dias, indicando ritmo elevado de descobertas recentes. Oito vulnerabilidades críticas foram identificadas, predominantemente relacionadas a traversal de diretório (CWE-22), mas nenhuma está sob exploração ativa conhecida no momento. O volume recente de falhas requer atenção contínua em patching, especialmente considerando a superfície de ataque do ecossistema Microsoft.

CVE-2019-1336—An elevation of privilege vulnerability exists in the Microsoft Windows Update Client when it does not properly handle privileges, aka 'MicrEPSS 1.0%CVE-2023-36592HIGHMicrosoft Message Queuing (MSMQ) Remote Code Execution VulnerabilityEPSS 1.0%CVE-2023-36570HIGHMicrosoft Message Queuing (MSMQ) Remote Code Execution VulnerabilityEPSS 1.0%CVE-2023-36589HIGHMicrosoft Message Queuing (MSMQ) Remote Code Execution VulnerabilityEPSS 1.0%CVE-2026-70105MEDIUMMicrosoft Word Information Disclosure VulnerabilityEPSS 1.0%CVE-2020-0695—A spoofing vulnerability exists when Office Online Server does not validate origin in cross-origin communications correctly, aka 'Microsoft EPSS 1.0%CVE-2021-34491MEDIUMWin32k Information Disclosure VulnerabilityEPSS 1.0%CVE-2022-21995HIGHWindows Hyper-V Remote Code Execution VulnerabilityEPSS 1.0%CVE-2025-30390CRITICALAzure ML Compute Elevation of Privilege VulnerabilityEPSS 1.0%CVE-2021-26899HIGHWindows UPnP Device Host Elevation of Privilege VulnerabilityEPSS 1.0%CVE-2023-36908MEDIUMWindows Hyper-V Information Disclosure VulnerabilityEPSS 1.0%CVE-2023-24935MEDIUMMicrosoft Edge (Chromium-based) Spoofing VulnerabilityEPSS 1.0%CVE-2020-0648HIGHWindows RSoP Service Application Elevation of Privilege VulnerabilityEPSS 1.0%CVE-2023-36598HIGHMicrosoft WDAC ODBC Driver Remote Code Execution VulnerabilityEPSS 1.0%CVE-2026-21229HIGHPower BI Remote Code Execution VulnerabilityEPSS 1.0%CVE-2024-21385HIGHMicrosoft Edge (Chromium-based) Elevation of Privilege VulnerabilityEPSS 1.0%CVE-2020-17077HIGHWindows Update Stack Elevation of Privilege VulnerabilityEPSS 1.0%CVE-2020-1316—An elevation of privilege vulnerability exists when the Windows kernel fails to properly handle objects in memory, aka 'Windows Kernel ElevaEPSS 1.0%CVE-2020-0788—An elevation of privilege vulnerability exists in Windows when the Win32k component fails to properly handle objects in memory, aka 'Win32k EPSS 1.0%CVE-2020-0722—An elevation of privilege vulnerability exists in Windows when the Win32k component fails to properly handle objects in memory, aka 'Win32k EPSS 1.0%