Vulnerabilidades em microsoft
10.810 resultadosAnálise Vexday
Microsoft apresenta 41 vulnerabilidades registradas, com 29 publicadas nos últimos 90 dias, indicando ritmo elevado de descobertas recentes. Oito vulnerabilidades críticas foram identificadas, predominantemente relacionadas a traversal de diretório (CWE-22), mas nenhuma está sob exploração ativa conhecida no momento. O volume recente de falhas requer atenção contínua em patching, especialmente considerando a superfície de ataque do ecossistema Microsoft.
CVE-2019-0645—A remote code execution vulnerability exists when Microsoft Edge improperly accesses objects in memory, aka 'Microsoft Edge Memory CorruptioEPSS 9.9%CVE-2019-0634—A remote code execution vulnerability exists when Microsoft Edge improperly accesses objects in memory, aka 'Microsoft Edge Memory CorruptioEPSS 9.9%CVE-2018-8609—A remote code execution vulnerability exists in Microsoft Dynamics 365 (on-premises) version 8 when the server fails to properly sanitize weEPSS 9.9%CVE-2019-1335—A remote code execution vulnerability exists in the way that the Chakra scripting engine handles objects in memory in Microsoft Edge, aka 'CEPSS 9.9%CVE-2019-1366—A remote code execution vulnerability exists in the way that the Chakra scripting engine handles objects in memory in Microsoft Edge, aka 'CEPSS 9.9%CVE-2023-35359HIGHWindows Kernel Elevation of Privilege VulnerabilityEPSS 9.9%CVE-2025-33070HIGHWindows Netlogon Elevation of Privilege VulnerabilityEPSS 9.9%CVE-2020-0673—A remote code execution vulnerability exists in the way that the scripting engine handles objects in memory in Internet Explorer, aka 'ScripEPSS 9.9%CVE-2019-0609—A remote code execution vulnerability exists in the way the scripting engine handles objects in memory in Microsoft browsers, aka 'ScriptingEPSS 9.8%CVE-2019-1428—A remote code execution vulnerability exists in the way that the scripting engine handles objects in memory in Microsoft Edge (HTML-based), EPSS 9.8%CVE-2020-16915HIGHMedia Foundation Memory Corruption VulnerabilityEPSS 9.8%CVE-2022-35755HIGHWindows Print Spooler Elevation of Privilege VulnerabilityEPSS 9.8%CVE-2019-0879—A remote code execution vulnerability exists when the Windows Jet Database Engine improperly handles objects in memory, aka 'Jet Database EnEPSS 9.8%CVE-2019-1132HIGHAn elevation of privilege vulnerability exists in Windows when the Win32k component fails to properly handle objects in memory, aka 'Win32k EPSS 9.8%KEVCVE-2022-37970HIGHWindows DWM Core Library Elevation of Privilege VulnerabilityEPSS 9.8%CVE-2018-0598—Untrusted search path vulnerability in Self-extracting archive files created by IExpress bundled with Microsoft Windows allows an attacker tEPSS 9.8%CVE-2019-1426—A remote code execution vulnerability exists in the way that the scripting engine handles objects in memory in Microsoft Edge (HTML-based), EPSS 9.8%CVE-2019-1427—A remote code execution vulnerability exists in the way that the scripting engine handles objects in memory in Microsoft Edge (HTML-based), EPSS 9.8%CVE-2019-1456—A remote code execution vulnerability exists in Microsoft Windows when the Windows Adobe Type Manager Library improperly handles specially cEPSS 9.7%CVE-2019-0703MEDIUMAn information disclosure vulnerability exists in the way that the Windows SMB Server handles certain requests, aka 'Windows SMB InformationEPSS 9.6%KEV