Vulnerabilidades em microsoft

9.312 resultados
Análise Vexday

Microsoft apresenta 41 vulnerabilidades registradas, com 29 publicadas nos últimos 90 dias, indicando ritmo elevado de descobertas recentes. Oito vulnerabilidades críticas foram identificadas, predominantemente relacionadas a traversal de diretório (CWE-22), mas nenhuma está sob exploração ativa conhecida no momento. O volume recente de falhas requer atenção contínua em patching, especialmente considerando a superfície de ataque do ecossistema Microsoft.

CVE-2020-1110An elevation of privilege vulnerability exists when the Windows Update Stack fails to properly handle objects in memory, aka 'Windows UpdateEPSS 0.8%CVE-2020-1114An elevation of privilege vulnerability exists when the Windows kernel fails to properly handle objects in memory, aka 'Windows Kernel ElevaEPSS 0.8%CVE-2020-1121An elevation of privilege vulnerability exists when Windows improperly handles calls to Clipboard Service, aka 'Windows Clipboard Service ElEPSS 0.8%CVE-2020-1138An elevation of privilege vulnerability exists when the Storage Service improperly handles file operations, aka 'Windows Storage Service EleEPSS 0.8%CVE-2020-1201An elevation of privilege vulnerability exists in the way the Windows Now Playing Session Manager handles objects in memory, aka 'Windows NoEPSS 0.8%CVE-2020-1140An elevation of privilege vulnerability exists when DirectX improperly handles objects in memory, aka 'DirectX Elevation of Privilege VulnerEPSS 0.8%CVE-2020-1165An elevation of privilege vulnerability exists when Windows improperly handles calls to Clipboard Service, aka 'Windows Clipboard Service ElEPSS 0.8%CVE-2020-1081An elevation of privilege vulnerability exists when the Windows Printer Service improperly validates file paths while loading printer driverEPSS 0.8%CVE-2020-1154An elevation of privilege vulnerability exists when the Windows Common Log File System (CLFS) driver improperly handles objects in memory, aEPSS 0.8%CVE-2020-1166An elevation of privilege vulnerability exists when Windows improperly handles calls to Clipboard Service, aka 'Windows Clipboard Service ElEPSS 0.8%CVE-2020-1142An elevation of privilege vulnerability exists in the way that the Windows Graphics Device Interface (GDI) handles objects in memory, aka 'WEPSS 0.8%CVE-2020-1132An elevation of privilege vulnerability exists when Windows Error Reporting manager improperly handles file and folder links, aka 'Windows EEPSS 0.8%CVE-2020-0916An elevation of privilege vulnerability exists in the way that the Windows Graphics Device Interface (GDI) handles objects in memory, aka 'WEPSS 0.8%CVE-2020-1068An elevation of privilege vulnerability exists in Windows Media Service that allows file creation in arbitrary locations.To exploit the vulnEPSS 0.8%CVE-2020-1137An elevation of privilege vulnerability exists in the way the Windows Push Notification Service handles objects in memory, aka 'Windows PushEPSS 0.8%CVE-2020-0915An elevation of privilege vulnerability exists in the way that the Windows Graphics Device Interface (GDI) handles objects in memory, aka 'WEPSS 0.8%CVE-2020-1254An elevation of privilege vulnerability exists when Windows Modules Installer Service improperly handles class object members.A locally authEPSS 0.8%CVE-2020-1199An elevation of privilege vulnerability exists when the Windows Feedback Hub improperly handles objects in memory, aka 'Windows Feedback HubEPSS 0.8%CVE-2020-1111An elevation of privilege vulnerability exists when Windows improperly handles calls to Clipboard Service, aka 'Windows Clipboard Service ElEPSS 0.8%CVE-2020-1197An elevation of privilege vulnerability exists when Windows Error Reporting manager improperly handles a process crash, aka 'Windows Error REPSS 0.8%