Vulnerabilidades em microsoft

10.810 resultados
Análise Vexday

Microsoft apresenta 41 vulnerabilidades registradas, com 29 publicadas nos últimos 90 dias, indicando ritmo elevado de descobertas recentes. Oito vulnerabilidades críticas foram identificadas, predominantemente relacionadas a traversal de diretório (CWE-22), mas nenhuma está sob exploração ativa conhecida no momento. O volume recente de falhas requer atenção contínua em patching, especialmente considerando a superfície de ataque do ecossistema Microsoft.

CVE-2019-0545—An information disclosure vulnerability exists in .NET Framework and .NET Core which allows bypassing Cross-origin Resource Sharing (CORS) cEPSS 9.6%CVE-2020-0848—A remote code execution vulnerability exists in the way that the ChakraCore scripting engine handles objects in memory, aka 'Scripting EnginEPSS 9.6%CVE-2019-0952—A remote code execution vulnerability exists in Microsoft SharePoint Server when it fails to properly identify and filter unsafe ASP.Net webEPSS 9.6%CVE-2018-8377—A remote code execution vulnerability exists when Microsoft Edge improperly accesses objects in memory, aka "Microsoft Edge Memory CorruptioEPSS 9.5%CVE-2018-8387—A remote code execution vulnerability exists when Microsoft Edge improperly accesses objects in memory, aka "Microsoft Edge Memory CorruptioEPSS 9.5%CVE-2019-0565—A remote code execution vulnerability exists when Microsoft Edge improperly accesses objects in memory, aka "Microsoft Edge Memory CorruptioEPSS 9.5%CVE-2019-0849—An information disclosure vulnerability exists when the Windows GDI component improperly discloses the contents of its memory, aka 'Windows EPSS 9.5%CVE-2019-0802—An information disclosure vulnerability exists when the Windows GDI component improperly discloses the contents of its memory, aka 'Windows EPSS 9.5%CVE-2024-30087HIGHWin32k Elevation of Privilege VulnerabilityEPSS 9.5%CVE-2018-8118—A remote code execution vulnerability exists when Internet Explorer improperly accesses objects in memory, aka "Internet Explorer Memory CorEPSS 9.5%CVE-2025-21376HIGHWindows Lightweight Directory Access Protocol (LDAP) Remote Code Execution VulnerabilityEPSS 9.4%CVE-2024-26229HIGHWindows CSC Service Elevation of Privilege VulnerabilityEPSS 9.4%CVE-2021-28319HIGHWindows TCP/IP Driver Denial of Service VulnerabilityEPSS 9.4%CVE-2022-37989HIGHWindows Client Server Run-time Subsystem (CSRSS) Elevation of Privilege VulnerabilityEPSS 9.3%CVE-2019-1107—A remote code execution vulnerability exists in the way that the Chakra scripting engine handles objects in memory in Microsoft Edge, aka 'CEPSS 9.3%CVE-2021-1678HIGHWindows Print Spooler Spoofing VulnerabilityEPSS 9.3%CVE-2020-1425—A remoted code execution vulnerability exists in the way that Microsoft Windows Codecs Library handles objects in memory, aka 'Microsoft WinEPSS 9.3%CVE-2021-34486HIGHWindows Event Tracing Elevation of Privilege VulnerabilityEPSS 9.3%KEVCVE-2020-0910—A remote code execution vulnerability exists when Windows Hyper-V on a host server fails to properly validate input from an authenticated usEPSS 9.2%CVE-2021-31959MEDIUMScripting Engine Memory Corruption VulnerabilityEPSS 9.2%