Vulnerabilidades em microsoft

9.329 resultados
Análise Vexday

Microsoft apresenta 41 vulnerabilidades registradas, com 29 publicadas nos últimos 90 dias, indicando ritmo elevado de descobertas recentes. Oito vulnerabilidades críticas foram identificadas, predominantemente relacionadas a traversal de diretório (CWE-22), mas nenhuma está sob exploração ativa conhecida no momento. O volume recente de falhas requer atenção contínua em patching, especialmente considerando a superfície de ataque do ecossistema Microsoft.

CVE-2024-43616HIGHMicrosoft Office Remote Code Execution VulnerabilityEPSS 0.8%CVE-2022-22022HIGHWindows Print Spooler Elevation of Privilege VulnerabilityEPSS 0.8%CVE-2025-21397HIGHMicrosoft Office Remote Code Execution VulnerabilityEPSS 0.8%CVE-2026-57102HIGHVisual Studio Code Security Feature Bypass VulnerabilityEPSS 0.8%CVE-2025-27741HIGHNTFS Elevation of Privilege VulnerabilityEPSS 0.8%CVE-2024-38161MEDIUMWindows Mobile Broadband Driver Remote Code Execution VulnerabilityEPSS 0.8%CVE-2025-47997MEDIUMMicrosoft SQL Server Information Disclosure VulnerabilityEPSS 0.8%CVE-2025-59244MEDIUMNTLM Hash Disclosure Spoofing VulnerabilityEPSS 0.8%CVE-2023-21822HIGHWindows Graphics Component Elevation of Privilege VulnerabilityEPSS 0.8%CVE-2025-55238HIGHDynamics 365 FastTrack Implementation Assets Information Disclosure VulnerabilityEPSS 0.8%CVE-2025-58739MEDIUMMicrosoft Windows File Explorer Spoofing VulnerabilityEPSS 0.8%CVE-2026-48561CRITICALMicrosoft Edge Copilot Remote Code Execution VulnerabilityEPSS 0.8%CVE-2022-24493MEDIUMMicrosoft Local Security Authority (LSA) Server Information Disclosure VulnerabilityEPSS 0.8%CVE-2025-30398HIGHNuance PowerScribe 360 Information Disclosure VulnerabilityEPSS 0.8%CVE-2025-21296HIGHBranchCache Remote Code Execution VulnerabilityEPSS 0.8%CVE-2026-48564HIGHDHCP Server Service Remote Code Execution VulnerabilityEPSS 0.8%CVE-2026-48560MEDIUMMicrosoft SharePoint Server Spoofing VulnerabilityEPSS 0.8%CVE-2020-1390An elevation of privilege vulnerability exists in the way that the Windows Network Connections Service handles objects in memory, aka 'WindoEPSS 0.8%CVE-2020-1438An elevation of privilege vulnerability exists in the way that the Windows Network Connections Service handles objects in memory, aka 'WindoEPSS 0.8%CVE-2020-1387An elevation of privilege vulnerability exists in the way the Windows Push Notification Service handles objects in memory, aka 'Windows PushEPSS 0.8%