Vulnerabilidades em microsoft

10.810 resultados
Análise Vexday

Microsoft apresenta 41 vulnerabilidades registradas, com 29 publicadas nos últimos 90 dias, indicando ritmo elevado de descobertas recentes. Oito vulnerabilidades críticas foram identificadas, predominantemente relacionadas a traversal de diretório (CWE-22), mas nenhuma está sob exploração ativa conhecida no momento. O volume recente de falhas requer atenção contínua em patching, especialmente considerando a superfície de ataque do ecossistema Microsoft.

CVE-2019-1295—A remote code execution vulnerability exists in Microsoft SharePoint where APIs aren't properly protected from unsafe data input, aka 'MicroEPSS 8.3%CVE-2019-1296—A remote code execution vulnerability exists in Microsoft SharePoint where APIs aren't properly protected from unsafe data input, aka 'MicroEPSS 8.3%CVE-2019-0784—A remote code execution vulnerability exists in the way that the ActiveX Data objects (ADO) handles objects in memory, aka 'Windows ActiveX EPSS 8.3%CVE-2019-0665—A remote code execution vulnerability exists in the way that the VBScript engine handles objects in memory, aka 'Windows VBScript Engine RemEPSS 8.3%CVE-2018-8378—An information disclosure vulnerability exists when Microsoft Office software reads out of bound memory due to an uninitialized variable, whEPSS 8.2%CVE-2019-0548—A denial of service vulnerability exists when ASP.NET Core improperly handles web requests, aka "ASP.NET Core Denial of Service VulnerabilitEPSS 8.2%CVE-2022-44683HIGHWindows Kernel Elevation of Privilege VulnerabilityEPSS 8.2%CVE-2024-38189HIGHMicrosoft Project Remote Code Execution VulnerabilityEPSS 8.2%KEVCVE-2019-1226CRITICALRemote Desktop Services Remote Code Execution VulnerabilityEPSS 8.2%CVE-2019-1471—A remote code execution vulnerability exists when Windows Hyper-V on a host server fails to properly validate input from an authenticated usEPSS 8.2%CVE-2024-38227HIGHMicrosoft SharePoint Server Remote Code Execution VulnerabilityEPSS 8.2%CVE-2023-36713MEDIUMWindows Common Log File System Driver Information Disclosure VulnerabilityEPSS 8.2%CVE-2026-21527MEDIUMMicrosoft Exchange Server Spoofing VulnerabilityEPSS 8.1%CVE-2019-1464—An information disclosure vulnerability exists when Microsoft Excel improperly discloses the contents of its memory, aka 'Microsoft Excel InEPSS 8.1%CVE-2022-41109HIGHWindows Win32k Elevation of Privilege VulnerabilityEPSS 8.1%CVE-2019-0676MEDIUMAn information disclosure vulnerability exists when Internet Explorer improperly handles objects in memory.An attacker who successfully explEPSS 8.1%KEVCVE-2024-30089HIGHMicrosoft Streaming Service Elevation of Privilege VulnerabilityEPSS 8.1%CVE-2019-0926—A remote code execution vulnerability exists when Microsoft Edge improperly accesses objects in memory, aka 'Microsoft Edge Memory CorruptioEPSS 8.1%CVE-2019-0783—A remote code execution vulnerability exists in the way that the scripting engine handles objects in memory in Internet Explorer, aka 'ScripEPSS 8.1%CVE-2019-0929—A remote code execution vulnerability exists when Internet Explorer improperly accesses objects in memory, aka 'Internet Explorer Memory CorEPSS 8.1%