Vulnerabilidades em microsoft

10.810 resultados
Análise Vexday

Microsoft apresenta 41 vulnerabilidades registradas, com 29 publicadas nos últimos 90 dias, indicando ritmo elevado de descobertas recentes. Oito vulnerabilidades críticas foram identificadas, predominantemente relacionadas a traversal de diretório (CWE-22), mas nenhuma está sob exploração ativa conhecida no momento. O volume recente de falhas requer atenção contínua em patching, especialmente considerando a superfície de ataque do ecossistema Microsoft.

CVE-2018-8469—An elevation of privilege vulnerability exists in Microsoft Edge that could allow an attacker to escape from the AppContainer sandbox in theEPSS 15.4%CVE-2018-8463—An elevation of privilege vulnerability exists in Microsoft Edge that could allow an attacker to escape from the AppContainer sandbox in theEPSS 15.4%CVE-2019-0586—A remote code execution vulnerability exists in Microsoft Exchange software when the software fails to properly handle objects in memory, akEPSS 15.4%CVE-2019-0662—A remote code execution vulnerability exists in the way that the Windows Graphics Device Interface (GDI) handles objects in the memory, aka EPSS 15.4%CVE-2018-8634—A remote code execution vulnerability exists in Windows where Microsoft text-to-speech fails to properly handle objects in the memory, aka "EPSS 15.4%CVE-2021-27076HIGHMicrosoft SharePoint Server Remote Code Execution VulnerabilityEPSS 15.2%CVE-2020-0759—A remote code execution vulnerability exists in Microsoft Excel software when the software fails to properly handle objects in memory, aka 'EPSS 15.2%CVE-2018-8531—A remote code execution vulnerability exists in the way that Azure IoT Hub Device Client SDK using MQTT protocol accesses objects in memory,EPSS 15.1%CVE-2019-1019HIGHMicrosoft Windows Security Feature Bypass VulnerabilityEPSS 15.1%CVE-2021-38666HIGHRemote Desktop Client Remote Code Execution VulnerabilityEPSS 15.1%CVE-2023-28220HIGHLayer 2 Tunneling Protocol Remote Code Execution VulnerabilityEPSS 15.0%CVE-2023-28219HIGHLayer 2 Tunneling Protocol Remote Code Execution VulnerabilityEPSS 15.0%CVE-2018-1001—A remote code execution vulnerability exists in the way that the scripting engine handles objects in memory in Internet Explorer, aka "ScripEPSS 15.0%CVE-2018-0996—A remote code execution vulnerability exists in the way that the scripting engine handles objects in memory in Internet Explorer, aka "ScripEPSS 15.0%CVE-2022-38028HIGHWindows Print Spooler Elevation of Privilege VulnerabilityEPSS 14.9%KEVCVE-2018-8354—A remote code execution vulnerability exists in the way that the scripting engine handles objects in memory in Microsoft Edge, aka "ScriptinEPSS 14.9%CVE-2018-8456—A remote code execution vulnerability exists in the way that the ChakraCore scripting engine handles objects in memory, aka "Scripting EnginEPSS 14.9%CVE-2019-1347—A denial of service vulnerability exists when Windows improperly handles objects in memory, aka 'Windows Denial of Service Vulnerability'. TEPSS 14.9%CVE-2018-8367—A remote code execution vulnerability exists in the way that the Chakra scripting engine handles objects in memory in Microsoft Edge, aka "CEPSS 14.9%CVE-2018-1023—A remote code execution vulnerability exists in the way that Microsoft browsers access objects in memory, aka "Microsoft Browser Memory CorrEPSS 14.9%