Vulnerabilidades em microsoft
10.810 resultadosAnálise Vexday
Microsoft apresenta 41 vulnerabilidades registradas, com 29 publicadas nos últimos 90 dias, indicando ritmo elevado de descobertas recentes. Oito vulnerabilidades críticas foram identificadas, predominantemente relacionadas a traversal de diretório (CWE-22), mas nenhuma está sob exploração ativa conhecida no momento. O volume recente de falhas requer atenção contínua em patching, especialmente considerando a superfície de ataque do ecossistema Microsoft.
CVE-2019-0772—A remote code execution vulnerability exists in the way that the VBScript engine handles objects in memory, aka 'Windows VBScript Engine RemEPSS 13.2%CVE-2020-1401—A remote code execution vulnerability exists when the Windows Jet Database Engine improperly handles objects in memory, aka 'Jet Database EnEPSS 13.1%CVE-2021-43891HIGHVisual Studio Code Remote Code Execution VulnerabilityEPSS 13.1%CVE-2020-17140HIGHWindows SMB Information Disclosure VulnerabilityEPSS 13.1%CVE-2018-8457—A remote code execution vulnerability exists in the way the scripting engine handles objects in memory in Microsoft browsers, aka "ScriptingEPSS 13.1%CVE-2019-1152HIGHMicrosoft Graphics Remote Code Execution VulnerabilityEPSS 13.1%CVE-2019-1144HIGHMicrosoft Graphics Remote Code Execution VulnerabilityEPSS 13.1%CVE-2019-1145HIGHMicrosoft Graphics Remote Code Execution VulnerabilityEPSS 13.1%CVE-2019-0633—A remote code execution vulnerability exists in the way that the Microsoft Server Message Block 2.0 (SMBv2) server handles certain requests,EPSS 13.0%CVE-2021-31206HIGHMicrosoft Exchange Server Remote Code Execution VulnerabilityEPSS 13.0%CVE-2018-8424—An information disclosure vulnerability exists when the Windows GDI component improperly discloses the contents of its memory, aka "Windows EPSS 13.0%CVE-2019-0953—A remote code execution vulnerability exists in Microsoft Word software when it fails to properly handle objects in memory, aka 'Microsoft WEPSS 12.9%CVE-2024-26218HIGHWindows Kernel Elevation of Privilege VulnerabilityEPSS 12.9%CVE-2024-43491CRITICALMicrosoft Windows Update Remote Code Execution VulnerabilityEPSS 12.9%CVE-2018-8461—A remote code execution vulnerability exists when Internet Explorer improperly accesses objects in memory, aka "Internet Explorer Memory CorEPSS 12.9%CVE-2018-8447—A remote code execution vulnerability exists when Internet Explorer improperly accesses objects in memory, aka "Internet Explorer Memory CorEPSS 12.9%CVE-2019-1245—An information disclosure vulnerability exists when DirectWrite improperly discloses the contents of its memory, aka 'DirectWrite InformatioEPSS 12.9%CVE-2018-8509—A remote code execution vulnerability exists when Microsoft Edge improperly accesses objects in memory, aka "Microsoft Edge Memory CorruptioEPSS 12.8%CVE-2018-8491—A remote code execution vulnerability exists when Internet Explorer improperly accesses objects in memory, aka "Internet Explorer Memory CorEPSS 12.8%CVE-2019-0540—A security feature bypass vulnerability exists when Microsoft Office does not validate URLs.An attacker could send a victim a specially crafEPSS 12.8%