Vulnerabilidades em microsoft

10.829 resultados
Análise Vexday

Microsoft apresenta 41 vulnerabilidades registradas, com 29 publicadas nos últimos 90 dias, indicando ritmo elevado de descobertas recentes. Oito vulnerabilidades críticas foram identificadas, predominantemente relacionadas a traversal de diretório (CWE-22), mas nenhuma está sob exploração ativa conhecida no momento. O volume recente de falhas requer atenção contínua em patching, especialmente considerando a superfície de ataque do ecossistema Microsoft.

CVE-2026-40411CRITICALAzure Virtual Network Gateway Remote Code Execution VulnerabilityEPSS 1.0%CVE-2026-58281HIGHMicrosoft Edge (Chromium-based) Remote Code Execution VulnerabilityEPSS 1.0%CVE-2026-63520HIGHMicrosoft SharePoint Server Remote Code Execution VulnerabilityEPSS 1.0%CVE-2026-57206HIGHSimpleChat plugin validation endpoints missing authentication and authorizationEPSS 1.0%CVE-2024-30033HIGHWindows Search Service Elevation of Privilege VulnerabilityEPSS 1.0%CVE-2020-1122MEDIUMWindows Language Pack Installer Elevation of Privilege VulnerabilityEPSS 1.0%CVE-2020-16908HIGHWindows Setup Elevation of Privilege VulnerabilityEPSS 1.0%CVE-2023-36702HIGHMicrosoft DirectMusic Remote Code Execution VulnerabilityEPSS 1.0%CVE-2024-30096MEDIUMWindows Cryptographic Services Information Disclosure VulnerabilityEPSS 1.0%CVE-2023-36029MEDIUMMicrosoft Edge (Chromium-based) Spoofing VulnerabilityEPSS 1.0%CVE-2021-1657HIGHWindows Fax Compose Form Remote Code Execution VulnerabilityEPSS 1.0%CVE-2023-35634HIGHWindows Bluetooth Driver Remote Code Execution VulnerabilityEPSS 1.0%CVE-2026-70575MEDIUMWindows Schannel Denial of Service VulnerabilityEPSS 1.0%CVE-2023-36886HIGHMicrosoft Dynamics 365 (on-premises) Cross-site Scripting VulnerabilityEPSS 1.0%CVE-2026-50432MEDIUMWindow Virtual Filtering Platform (VFP) Denial of Service VulnerabilityEPSS 1.0%CVE-2024-30053MEDIUMAzure Migrate Cross-Site Scripting VulnerabilityEPSS 1.0%CVE-2023-24948HIGHWindows Bluetooth Driver Elevation of Privilege VulnerabilityEPSS 1.0%CVE-2020-0897—An elevation of privilege vulnerability exists when the Windows Work Folder Service improperly handles file operations, aka 'Windows Work FoEPSS 1.0%CVE-2020-1369—An elevation of privilege vulnerability exists in the way that the Windows WalletService handles objects in memory, aka 'Windows WalletServiEPSS 1.0%CVE-2024-35248HIGHMicrosoft Dynamics 365 Business Central Elevation of Privilege VulnerabilityEPSS 1.0%