Vulnerabilidades em microsoft
10.810 resultadosAnálise Vexday
Microsoft apresenta 41 vulnerabilidades registradas, com 29 publicadas nos últimos 90 dias, indicando ritmo elevado de descobertas recentes. Oito vulnerabilidades críticas foram identificadas, predominantemente relacionadas a traversal de diretório (CWE-22), mas nenhuma está sob exploração ativa conhecida no momento. O volume recente de falhas requer atenção contínua em patching, especialmente considerando a superfície de ataque do ecossistema Microsoft.
CVE-2018-8311—A remote code execution vulnerability exists when Skype for Business and Microsoft Lync clients fail to properly sanitize specially crafted EPSS 16.4%CVE-2018-8231—A remote code execution vulnerability exists when HTTP Protocol Stack (Http.sys) improperly handles objects in memory, aka "HTTP Protocol StEPSS 16.4%CVE-2022-22005HIGHMicrosoft SharePoint Server Remote Code Execution VulnerabilityEPSS 16.4%CVE-2020-1048HIGHWindows Print Spooler Elevation of Privilege VulnerabilityEPSS 16.4%CVE-2024-21407HIGHWindows Hyper-V Remote Code Execution VulnerabilityEPSS 16.3%CVE-2025-47984HIGHWindows GDI Information Disclosure VulnerabilityEPSS 16.2%CVE-2018-8375—A remote code execution vulnerability exists in Microsoft Excel software when the software fails to properly handle objects in memory, aka "EPSS 16.2%CVE-2019-0546—A remote code execution vulnerability exists in Visual Studio when the C++ compiler improperly handles specific combinations of C++ construcEPSS 16.2%CVE-2019-0790—A remote code execution vulnerability exists when the Microsoft XML Core Services MSXML parser processes user input, aka 'MS XML Remote CodeEPSS 16.2%CVE-2019-0597—A remote code execution vulnerability exists when the Windows Jet Database Engine improperly handles objects in memory, aka 'Jet Database EnEPSS 16.1%CVE-2018-8636—A remote code execution vulnerability exists in Microsoft Excel software when the software fails to properly handle objects in memory, aka "EPSS 16.1%CVE-2018-8597—A remote code execution vulnerability exists in Microsoft Excel software when the software fails to properly handle objects in memory, aka "EPSS 16.1%CVE-2019-0596—A remote code execution vulnerability exists when the Windows Jet Database Engine improperly handles objects in memory, aka 'Jet Database EnEPSS 16.1%CVE-2019-0625—A remote code execution vulnerability exists when the Windows Jet Database Engine improperly handles objects in memory, aka 'Jet Database EnEPSS 16.1%CVE-2018-0978—A remote code execution vulnerability exists when Internet Explorer improperly accesses objects in memory, aka "Internet Explorer Memory CorEPSS 16.1%CVE-2018-8267—A remote code execution vulnerability exists in the way that the scripting engine handles objects in memory in Internet Explorer, aka "ScripEPSS 16.1%CVE-2019-0846—A remote code execution vulnerability exists when the Windows Jet Database Engine improperly handles objects in memory, aka 'Jet Database EnEPSS 16.1%CVE-2019-0847—A remote code execution vulnerability exists when the Windows Jet Database Engine improperly handles objects in memory, aka 'Jet Database EnEPSS 16.1%CVE-2019-0851—A remote code execution vulnerability exists when the Windows Jet Database Engine improperly handles objects in memory, aka 'Jet Database EnEPSS 16.1%CVE-2024-38197MEDIUMMicrosoft Teams for iOS Spoofing VulnerabilityEPSS 16.1%