Vulnerabilidades em microsoft
10.810 resultadosAnálise Vexday
Microsoft apresenta 41 vulnerabilidades registradas, com 29 publicadas nos últimos 90 dias, indicando ritmo elevado de descobertas recentes. Oito vulnerabilidades críticas foram identificadas, predominantemente relacionadas a traversal de diretório (CWE-22), mas nenhuma está sob exploração ativa conhecida no momento. O volume recente de falhas requer atenção contínua em patching, especialmente considerando a superfície de ataque do ecossistema Microsoft.
CVE-2019-1441—A remote code execution vulnerability exists when the Windows font library improperly handles specially crafted embedded fonts, aka 'Win32k EPSS 12.8%CVE-2019-0655—A remote code execution vulnerability exists in the way that the scripting engine handles objects in memory in Microsoft Edge, aka 'ScriptinEPSS 12.7%CVE-2019-0948MEDIUMWindows Event Viewer Information Disclosure VulnerabilityEPSS 12.7%CVE-2019-1246—A remote code execution vulnerability exists when the Windows Jet Database Engine improperly handles objects in memory, aka 'Jet Database EnEPSS 12.6%CVE-2020-1240—A remote code execution vulnerability exists in Microsoft Excel software when the software fails to properly handle objects in memory, aka 'EPSS 12.6%CVE-2020-16896HIGHWindows Remote Desktop Protocol (RDP) Information Disclosure VulnerabilityEPSS 12.6%CVE-2019-1208—A remote code execution vulnerability exists in the way that the VBScript engine handles objects in memory, aka 'VBScript Remote Code ExecutEPSS 12.6%CVE-2018-8304—A denial of service vulnerability exists in Windows Domain Name System (DNS) DNSAPI.dll when it fails to properly handle DNS responses, aka EPSS 12.6%CVE-2024-21410CRITICALMicrosoft Exchange Server Elevation of Privilege VulnerabilityEPSS 12.6%KEVCVE-2018-8403—A remote code execution vulnerability exists in the way that Microsoft browsers access objects in memory, aka "Microsoft Browser Memory CorrEPSS 12.6%CVE-2025-27480HIGHWindows Remote Desktop Services Remote Code Execution VulnerabilityEPSS 12.5%CVE-2023-36049HIGH.NET, .NET Framework, and Visual Studio Elevation of Privilege VulnerabilityEPSS 12.5%CVE-2019-0756—A remote code execution vulnerability exists when the Microsoft XML Core Services MSXML parser processes user input, aka 'MS XML Remote CodeEPSS 12.5%CVE-2019-1291—A remote code execution vulnerability exists in the Windows Remote Desktop Client when a user connects to a malicious server, aka 'Remote DeEPSS 12.5%CVE-2019-1290—A remote code execution vulnerability exists in the Windows Remote Desktop Client when a user connects to a malicious server, aka 'Remote DeEPSS 12.5%CVE-2019-0787—A remote code execution vulnerability exists in the Windows Remote Desktop Client when a user connects to a malicious server, aka 'Remote DeEPSS 12.5%CVE-2019-0788—A remote code execution vulnerability exists in the Windows Remote Desktop Client when a user connects to a malicious server, aka 'Remote DeEPSS 12.5%CVE-2026-20841HIGHWindows Notepad App Remote Code Execution VulnerabilityEPSS 12.5%CVE-2019-1072—A remote code execution vulnerability exists when Azure DevOps Server and Team Foundation Server (TFS) improperly handle user input, aka 'AzEPSS 12.4%CVE-2020-1457—A remote code execution vulnerability exists in the way that Microsoft Windows Codecs Library handles objects in memory, aka 'Microsoft WindEPSS 12.4%