Vulnerabilidades em microsoft
10.810 resultadosAnálise Vexday
Microsoft apresenta 41 vulnerabilidades registradas, com 29 publicadas nos últimos 90 dias, indicando ritmo elevado de descobertas recentes. Oito vulnerabilidades críticas foram identificadas, predominantemente relacionadas a traversal de diretório (CWE-22), mas nenhuma está sob exploração ativa conhecida no momento. O volume recente de falhas requer atenção contínua em patching, especialmente considerando a superfície de ataque do ecossistema Microsoft.
CVE-2019-0911—A remote code execution vulnerability exists in the way the scripting engine handles objects in memory in Microsoft browsers, aka 'ScriptingEPSS 9.1%CVE-2020-1444—A remote code execution vulnerability exists in the way Microsoft SharePoint software parses specially crafted email messages, aka 'MicrosofEPSS 9.0%CVE-2019-0923—A remote code execution vulnerability exists in the way that the Chakra scripting engine handles objects in memory in Microsoft Edge, aka 'CEPSS 9.0%CVE-2018-8335—A denial of service vulnerability exists in the Microsoft Server Block Message (SMB) when an attacker sends specially crafted requests to thEPSS 9.0%CVE-2018-8360—An information disclosure vulnerability exists in Microsoft .NET Framework that could allow an attacker to access information in multi-tenanEPSS 9.0%CVE-2020-0684—A remote code execution vulnerability exists in Microsoft Windows that could allow remote code execution if a .LNK file is processed.An attaEPSS 9.0%CVE-2019-0829—A remote code execution vulnerability exists in the way that the Chakra scripting engine handles objects in memory in Microsoft Edge, aka 'CEPSS 9.0%CVE-2019-0806—A remote code execution vulnerability exists in the way that the Chakra scripting engine handles objects in memory in Microsoft Edge, aka 'CEPSS 9.0%CVE-2019-1092—A remote code execution vulnerability exists in the way that the Chakra scripting engine handles objects in memory in Microsoft Edge, aka 'CEPSS 8.9%CVE-2019-1062—A remote code execution vulnerability exists in the way that the Chakra scripting engine handles objects in memory in Microsoft Edge, aka 'CEPSS 8.9%CVE-2024-43639CRITICALWindows KDC Proxy Remote Code Execution VulnerabilityEPSS 8.9%CVE-2019-1446—An information disclosure vulnerability exists when Microsoft Excel improperly discloses the contents of its memory, aka 'Microsoft Excel InEPSS 8.9%CVE-2018-0950—An information disclosure vulnerability exists when Office renders Rich Text Format (RTF) email messages containing OLE objects when a messaEPSS 8.9%CVE-2018-8151—An information disclosure vulnerability exists when Microsoft Exchange improperly handles objects in memory, aka "Microsoft Exchange Memory EPSS 8.9%CVE-2019-1484—A remote code execution vulnerability exists when Microsoft Windows OLE fails to properly validate user input, aka 'Windows OLE Remote Code EPSS 8.9%CVE-2020-0826—A remote code execution vulnerability exists in the way that the ChakraCore scripting engine handles objects in memory, aka 'Scripting EnginEPSS 8.9%CVE-2020-0831—A remote code execution vulnerability exists in the way that the ChakraCore scripting engine handles objects in memory, aka 'Scripting EnginEPSS 8.9%CVE-2020-0828—A remote code execution vulnerability exists in the way that the ChakraCore scripting engine handles objects in memory, aka 'Scripting EnginEPSS 8.9%CVE-2020-0829—A remote code execution vulnerability exists in the way that the ChakraCore scripting engine handles objects in memory, aka 'Scripting EnginEPSS 8.9%CVE-2020-0823—A remote code execution vulnerability exists in the way that the ChakraCore scripting engine handles objects in memory, aka 'Scripting EnginEPSS 8.9%