Vulnerabilidades em microsoft

9.329 resultados
Análise Vexday

Microsoft apresenta 41 vulnerabilidades registradas, com 29 publicadas nos últimos 90 dias, indicando ritmo elevado de descobertas recentes. Oito vulnerabilidades críticas foram identificadas, predominantemente relacionadas a traversal de diretório (CWE-22), mas nenhuma está sob exploração ativa conhecida no momento. O volume recente de falhas requer atenção contínua em patching, especialmente considerando a superfície de ataque do ecossistema Microsoft.

CVE-2023-21750HIGHWindows Kernel Elevation of Privilege VulnerabilityEPSS 0.7%CVE-2023-38170HIGHHEVC Video Extensions Remote Code Execution VulnerabilityEPSS 0.7%CVE-2026-20834MEDIUMWindows Spoofing VulnerabilityEPSS 0.7%CVE-2020-16900HIGHWindows Event System Elevation of Privilege VulnerabilityEPSS 0.7%CVE-2020-1002An elevation of privilege vulnerability exists when the MpSigStub.exe for Defender allows file deletion in arbitrary locations.To exploit thEPSS 0.7%CVE-2026-33109CRITICALAzure Managed Instance for Apache Cassandra Remote Code Execution VulnerabilityEPSS 0.7%CVE-2024-29992MEDIUMAzure Identity Library for .NET Information Disclosure VulnerabilityEPSS 0.7%CVE-2026-32175MEDIUM.NET Core Tampering VulnerabilityEPSS 0.7%CVE-2022-33675HIGHAzure Site Recovery Elevation of Privilege VulnerabilityEPSS 0.7%CVE-2024-30028HIGHWin32k Elevation of Privilege VulnerabilityEPSS 0.7%CVE-2024-30030HIGHWin32k Elevation of Privilege VulnerabilityEPSS 0.7%CVE-2021-26413MEDIUMWindows Installer Spoofing VulnerabilityEPSS 0.7%CVE-2025-49744HIGHWindows Graphics Component Elevation of Privilege VulnerabilityEPSS 0.7%CVE-2020-0785An elevation of privilege vulnerability exists when the Windows User Profile Service (ProfSvc) improperly handles symlinks, aka 'Windows UseEPSS 0.7%CVE-2024-38070HIGHWindows LockDown Policy (WLDP) Security Feature Bypass VulnerabilityEPSS 0.7%CVE-2024-38079HIGHWindows Graphics Component Elevation of Privilege VulnerabilityEPSS 0.7%CVE-2020-1185An elevation of privilege vulnerability exists when the Windows State Repository Service improperly handles objects in memory, aka 'Windows EPSS 0.7%CVE-2020-1372An elevation of privilege vulnerability exists when Windows Mobile Device Management (MDM) Diagnostics improperly handles objects in memory,EPSS 0.7%CVE-2020-1186An elevation of privilege vulnerability exists when the Windows State Repository Service improperly handles objects in memory, aka 'Windows EPSS 0.7%CVE-2020-1190An elevation of privilege vulnerability exists when the Windows State Repository Service improperly handles objects in memory, aka 'Windows EPSS 0.7%