Vulnerabilidades em microsoft

10.810 resultados
Análise Vexday

Microsoft apresenta 41 vulnerabilidades registradas, com 29 publicadas nos últimos 90 dias, indicando ritmo elevado de descobertas recentes. Oito vulnerabilidades críticas foram identificadas, predominantemente relacionadas a traversal de diretório (CWE-22), mas nenhuma está sob exploração ativa conhecida no momento. O volume recente de falhas requer atenção contínua em patching, especialmente considerando a superfície de ataque do ecossistema Microsoft.

CVE-2020-1236—A remote code execution vulnerability exists when the Windows Jet Database Engine improperly handles objects in memory, aka 'Jet Database EnEPSS 11.5%CVE-2020-1410—A remote code execution vulnerability exists when Windows Address Book (WAB) improperly processes vcard files.To exploit the vulnerability, EPSS 11.5%CVE-2020-0979—A remote code execution vulnerability exists in Microsoft Excel software when the software fails to properly handle objects in memory, aka 'EPSS 11.5%CVE-2020-0906—A remote code execution vulnerability exists in Microsoft Excel software when the software fails to properly handle objects in memory, aka 'EPSS 11.5%CVE-2019-0810—A remote code execution vulnerability exists in the way that the Chakra scripting engine handles objects in memory in Microsoft Edge, aka 'CEPSS 11.5%CVE-2024-21310HIGHWindows Cloud Files Mini Filter Driver Elevation of Privilege VulnerabilityEPSS 11.5%CVE-2018-8206—A denial of service vulnerability exists when Windows improperly handles File Transfer Protocol (FTP) connections, aka "Windows FTP Server DEPSS 11.5%CVE-2024-30050MEDIUMWindows Mark of the Web Security Feature Bypass VulnerabilityEPSS 11.5%CVE-2021-38648HIGHOpen Management Infrastructure Elevation of Privilege VulnerabilityEPSS 11.4%KEVCVE-2019-0719—A remote code execution vulnerability exists when Windows Hyper-V Network Switch on a host server fails to properly validate input from an aEPSS 11.4%CVE-2024-26160MEDIUMWindows Cloud Files Mini Filter Driver Information Disclosure VulnerabilityEPSS 11.4%CVE-2019-1102—A remote code execution vulnerability exists in the way that the Windows Graphics Device Interface (GDI) handles objects in the memory, aka EPSS 11.3%CVE-2021-26432CRITICALWindows Services for NFS ONCRPC XDR Driver Remote Code Execution VulnerabilityEPSS 11.3%CVE-2019-1159HIGHWindows Kernel Elevation of Privilege VulnerabilityEPSS 11.3%CVE-2022-35756HIGHWindows Kerberos Elevation of Privilege VulnerabilityEPSS 11.3%CVE-2020-1446—A remote code execution vulnerability exists in Microsoft Word software when it fails to properly handle objects in memory, aka 'Microsoft WEPSS 11.2%CVE-2025-49719HIGHMicrosoft SQL Server Information Disclosure VulnerabilityEPSS 11.2%CVE-2026-21249LOWWindows NTLM Spoofing VulnerabilityEPSS 11.1%CVE-2022-33679HIGHWindows Kerberos Elevation of Privilege VulnerabilityEPSS 11.1%CVE-2019-0888HIGHActiveX Data Objects (ADO) Remote Code Execution VulnerabilityEPSS 11.1%