Vulnerabilidades em microsoft
10.810 resultadosAnálise Vexday
Microsoft apresenta 41 vulnerabilidades registradas, com 29 publicadas nos últimos 90 dias, indicando ritmo elevado de descobertas recentes. Oito vulnerabilidades críticas foram identificadas, predominantemente relacionadas a traversal de diretório (CWE-22), mas nenhuma está sob exploração ativa conhecida no momento. O volume recente de falhas requer atenção contínua em patching, especialmente considerando a superfície de ataque do ecossistema Microsoft.
CVE-2020-1483MEDIUMMicrosoft Outlook Memory Corruption VulnerabilityEPSS 8.8%CVE-2020-1570—Scripting Engine Memory Corruption VulnerabilityEPSS 8.8%CVE-2020-0760—A remote code execution vulnerability exists when Microsoft Office improperly loads arbitrary type libraries, aka 'Microsoft Office Remote CEPSS 8.8%CVE-2020-0850—A remote code execution vulnerability exists in Microsoft Word software when it fails to properly handle objects in memory, aka 'Microsoft WEPSS 8.8%CVE-2020-1283—A denial of service vulnerability exists when Windows improperly handles objects in memory, aka 'Windows Denial of Service Vulnerability'.EPSS 8.8%CVE-2022-41113HIGHWindows Win32 Kernel Subsystem Elevation of Privilege VulnerabilityEPSS 8.8%CVE-2019-1112—An information disclosure vulnerability exists when Microsoft Excel improperly discloses the contents of its memory, aka 'Microsoft Excel InEPSS 8.7%CVE-2020-0830—A remote code execution vulnerability exists in the way the scripting engine handles objects in memory in Microsoft browsers, aka 'ScriptingEPSS 8.7%CVE-2020-0768—A remote code execution vulnerability exists in the way the scripting engine handles objects in memory in Microsoft browsers, aka 'ScriptingEPSS 8.7%CVE-2019-0560—An information disclosure vulnerability exists when Microsoft Office improperly discloses the contents of its memory, aka "Microsoft Office EPSS 8.7%CVE-2019-1351—A tampering vulnerability exists when Git for Visual Studio improperly handles virtual drive paths, aka 'Git for Visual Studio Tampering VulEPSS 8.7%CVE-2025-49724HIGHWindows Connected Devices Platform Service Remote Code Execution VulnerabilityEPSS 8.7%CVE-2023-35633HIGHWindows Kernel Elevation of Privilege VulnerabilityEPSS 8.7%CVE-2019-1332—A cross-site scripting (XSS) vulnerability exists when Microsoft SQL Server Reporting Services (SSRS) does not properly sanitize a speciallyEPSS 8.7%CVE-2020-0833—A remote code execution vulnerability exists in the way that the scripting engine handles objects in memory in Internet Explorer, aka 'ScripEPSS 8.7%CVE-2020-0832—A remote code execution vulnerability exists in the way that the scripting engine handles objects in memory in Internet Explorer, aka 'ScripEPSS 8.7%CVE-2019-1217—A remote code execution vulnerability exists in the way that the Chakra scripting engine handles objects in memory in Microsoft Edge, aka 'CEPSS 8.7%CVE-2019-1138—A remote code execution vulnerability exists in the way that the Chakra scripting engine handles objects in memory in Microsoft Edge, aka 'CEPSS 8.7%CVE-2019-1300—A remote code execution vulnerability exists in the way that the Chakra scripting engine handles objects in memory in Microsoft Edge, aka 'CEPSS 8.7%CVE-2019-1237—A remote code execution vulnerability exists in the way that the Chakra scripting engine handles objects in memory in Microsoft Edge, aka 'CEPSS 8.7%