Vulnerabilidades em microsoft

10.810 resultados
Análise Vexday

Microsoft apresenta 41 vulnerabilidades registradas, com 29 publicadas nos últimos 90 dias, indicando ritmo elevado de descobertas recentes. Oito vulnerabilidades críticas foram identificadas, predominantemente relacionadas a traversal de diretório (CWE-22), mas nenhuma está sob exploração ativa conhecida no momento. O volume recente de falhas requer atenção contínua em patching, especialmente considerando a superfície de ataque do ecossistema Microsoft.

CVE-2022-26904HIGHWindows User Profile Service Elevation of Privilege VulnerabilityEPSS 16.9%KEVCVE-2019-1122—A remote code execution vulnerability exists in the way that DirectWrite handles objects in memory, aka 'DirectWrite Remote Code Execution VEPSS 16.9%CVE-2019-1120—A remote code execution vulnerability exists in the way that DirectWrite handles objects in memory, aka 'DirectWrite Remote Code Execution VEPSS 16.9%CVE-2019-1121—A remote code execution vulnerability exists in the way that DirectWrite handles objects in memory, aka 'DirectWrite Remote Code Execution VEPSS 16.9%CVE-2019-1123—A remote code execution vulnerability exists in the way that DirectWrite handles objects in memory, aka 'DirectWrite Remote Code Execution VEPSS 16.9%CVE-2019-1128—A remote code execution vulnerability exists in the way that DirectWrite handles objects in memory, aka 'DirectWrite Remote Code Execution VEPSS 16.9%CVE-2019-1182CRITICALRemote Desktop Services Remote Code Execution VulnerabilityEPSS 16.9%CVE-2018-8245—A remote code execution vulnerability exists when Microsoft Publisher fails to utilize features that lock down the Local Machine zone when iEPSS 16.9%CVE-2020-0881—A remote code execution vulnerability exists in the way that the Windows Graphics Device Interface (GDI) handles objects in the memory, aka EPSS 16.8%CVE-2023-36036HIGHWindows Cloud Files Mini Filter Driver Elevation of Privilege VulnerabilityEPSS 16.7%KEVCVE-2022-24481HIGHWindows Common Log File System Driver Elevation of Privilege VulnerabilityEPSS 16.6%CVE-2018-8110—A remote code execution vulnerability exists when Microsoft Edge improperly accesses objects in memory, aka "Microsoft Edge Memory CorruptioEPSS 16.6%CVE-2018-8111—A remote code execution vulnerability exists when Microsoft Edge improperly accesses objects in memory, aka "Microsoft Edge Memory CorruptioEPSS 16.6%CVE-2018-8227—A remote code execution vulnerability exists in the way that the Chakra scripting engine handles objects in memory in Microsoft Edge, aka "CEPSS 16.6%CVE-2019-1468—A remote code execution vulnerability exists when the Windows font library improperly handles specially crafted embedded fonts, aka 'Win32k EPSS 16.6%CVE-2018-1020—A remote code execution vulnerability exists when Internet Explorer improperly accesses objects in memory, aka "Internet Explorer Memory CorEPSS 16.6%CVE-2021-26877CRITICALWindows DNS Server Remote Code Execution VulnerabilityEPSS 16.5%CVE-2020-0734—A remote code execution vulnerability exists in the Windows Remote Desktop Client when a user connects to a malicious server, aka 'Remote DeEPSS 16.5%CVE-2018-8296—A remote code execution vulnerability exists in the way that the scripting engine handles objects in memory in Internet Explorer, aka "ScripEPSS 16.5%CVE-2025-53760HIGHMicrosoft SharePoint Elevation of Privilege VulnerabilityEPSS 16.5%