Vulnerabilidades em microsoft
10.810 resultadosAnálise Vexday
Microsoft apresenta 41 vulnerabilidades registradas, com 29 publicadas nos últimos 90 dias, indicando ritmo elevado de descobertas recentes. Oito vulnerabilidades críticas foram identificadas, predominantemente relacionadas a traversal de diretório (CWE-22), mas nenhuma está sob exploração ativa conhecida no momento. O volume recente de falhas requer atenção contínua em patching, especialmente considerando a superfície de ataque do ecossistema Microsoft.
CVE-2020-0711—A remote code execution vulnerability exists in the way that the ChakraCore scripting engine handles objects in memory, aka 'Scripting EnginEPSS 10.2%CVE-2021-33771HIGHWindows Kernel Elevation of Privilege VulnerabilityEPSS 10.2%KEVCVE-2024-49116HIGHWindows Remote Desktop Services Remote Code Execution VulnerabilityEPSS 10.2%CVE-2020-0712—A remote code execution vulnerability exists in the way that the ChakraCore scripting engine handles objects in memory, aka 'Scripting EnginEPSS 10.1%CVE-2020-0713—A remote code execution vulnerability exists in the way that the ChakraCore scripting engine handles objects in memory, aka 'Scripting EnginEPSS 10.1%CVE-2020-0710—A remote code execution vulnerability exists in the way that the ChakraCore scripting engine handles objects in memory, aka 'Scripting EnginEPSS 10.1%CVE-2019-1308—A remote code execution vulnerability exists in the way that the Chakra scripting engine handles objects in memory in Microsoft Edge, aka 'CEPSS 10.1%CVE-2019-1307—A remote code execution vulnerability exists in the way that the Chakra scripting engine handles objects in memory in Microsoft Edge, aka 'CEPSS 10.1%CVE-2020-0872—A remote code execution vulnerability exists in Application Inspector version v1.0.23 or earlier when the tool reflects example code snippetEPSS 10.1%CVE-2023-32046HIGHWindows MSHTML Platform Elevation of Privilege VulnerabilityEPSS 10.0%KEVCVE-2024-38217MEDIUMWindows Mark of the Web Security Feature Bypass VulnerabilityEPSS 10.0%KEVCVE-2019-1113—A remote code execution vulnerability exists in .NET software when the software fails to check the source markup of a file.An attacker who sEPSS 10.0%CVE-2025-21333HIGHWindows Hyper-V NT Kernel Integration VSP Elevation of Privilege VulnerabilityEPSS 10.0%KEVCVE-2018-0959—A remote code execution vulnerability exists when Windows Hyper-V on a host server fails to properly validate input from an authenticated usEPSS 10.0%CVE-2018-8289—An information disclosure vulnerability exists when Microsoft Edge improperly handles objects in memory, aka "Microsoft Edge Information DisEPSS 10.0%CVE-2018-8324—An information disclosure vulnerability exists when Microsoft Edge improperly handles objects in memory, aka "Microsoft Edge Information DisEPSS 10.0%CVE-2018-8297—An information disclosure vulnerability exists when Microsoft Edge improperly handles objects in memory, aka "Microsoft Edge Information DisEPSS 10.0%CVE-2020-1448—A remote code execution vulnerability exists in Microsoft Word software when it fails to properly handle objects in memory, aka 'Microsoft WEPSS 10.0%CVE-2019-1453—A denial of service vulnerability exists in Remote Desktop Protocol (RDP) when an attacker connects to the target system using RDP and sendsEPSS 9.9%CVE-2018-8643—A remote code execution vulnerability exists in the way that the scripting engine handles objects in memory in Internet Explorer, aka "ScripEPSS 9.9%