Vulnerabilidades em microsoft

10.810 resultados
Análise Vexday

Microsoft apresenta 41 vulnerabilidades registradas, com 29 publicadas nos últimos 90 dias, indicando ritmo elevado de descobertas recentes. Oito vulnerabilidades críticas foram identificadas, predominantemente relacionadas a traversal de diretório (CWE-22), mas nenhuma está sob exploração ativa conhecida no momento. O volume recente de falhas requer atenção contínua em patching, especialmente considerando a superfície de ataque do ecossistema Microsoft.

CVE-2023-24932MEDIUMSecure Boot Security Feature Bypass VulnerabilityEPSS 10.6%CVE-2019-0809—A remote code execution vulnerability exists when the Visual Studio C++ Redistributable Installer improperly validates input before loading EPSS 10.6%CVE-2022-34729HIGHWindows GDI Elevation of Privilege VulnerabilityEPSS 10.5%CVE-2019-1225HIGHRemote Desktop Protocol Server Information Disclosure VulnerabilityEPSS 10.5%CVE-2019-0612—A security feature bypass vulnerability exists when Click2Play protection in Microsoft Edge improperly handles flash objects. By itself, thiEPSS 10.5%CVE-2019-0826—A remote code execution vulnerability exists when the Microsoft Office Access Connectivity Engine improperly handles objects in memory, aka EPSS 10.5%CVE-2019-0825—A remote code execution vulnerability exists when the Microsoft Office Access Connectivity Engine improperly handles objects in memory, aka EPSS 10.5%CVE-2019-0824—A remote code execution vulnerability exists when the Microsoft Office Access Connectivity Engine improperly handles objects in memory, aka EPSS 10.5%CVE-2019-0823—A remote code execution vulnerability exists when the Microsoft Office Access Connectivity Engine improperly handles objects in memory, aka EPSS 10.5%CVE-2019-0827—A remote code execution vulnerability exists when the Microsoft Office Access Connectivity Engine improperly handles objects in memory, aka EPSS 10.5%CVE-2018-8171—A Security Feature Bypass vulnerability exists in ASP.NET when the number of incorrect login attempts is not validated, aka "ASP.NET SecuritEPSS 10.5%CVE-2020-1206—An information disclosure vulnerability exists in the way that the Microsoft Server Message Block 3.1.1 (SMBv3) protocol handles certain reqEPSS 10.5%CVE-2020-1403—A remote code execution vulnerability exists in the way that the VBScript engine handles objects in memory, aka 'VBScript Remote Code ExecutEPSS 10.5%CVE-2024-38054HIGHKernel Streaming WOW Thunk Service Driver Elevation of Privilege VulnerabilityEPSS 10.4%CVE-2020-0920—A remote code execution vulnerability exists in Microsoft SharePoint when the software fails to check the source markup of an application paEPSS 10.4%CVE-2019-0771—A remote code execution vulnerability exists in the way that the scripting engine handles objects in memory in Microsoft Edge, aka 'ScriptinEPSS 10.3%CVE-2019-0773—A remote code execution vulnerability exists in the way that the scripting engine handles objects in memory in Microsoft Edge, aka 'ScriptinEPSS 10.3%CVE-2019-0769—A remote code execution vulnerability exists in the way that the scripting engine handles objects in memory in Microsoft Edge, aka 'ScriptinEPSS 10.3%CVE-2021-43890HIGHWindows AppX Installer Spoofing VulnerabilityEPSS 10.3%KEVCVE-2025-50165CRITICALWindows Graphics Component Remote Code Execution VulnerabilityEPSS 10.3%