Vulnerabilidades em microsoft

10.810 resultados
Análise Vexday

Microsoft apresenta 41 vulnerabilidades registradas, com 29 publicadas nos últimos 90 dias, indicando ritmo elevado de descobertas recentes. Oito vulnerabilidades críticas foram identificadas, predominantemente relacionadas a traversal de diretório (CWE-22), mas nenhuma está sob exploração ativa conhecida no momento. O volume recente de falhas requer atenção contínua em patching, especialmente considerando a superfície de ataque do ecossistema Microsoft.

CVE-2021-40469HIGHWindows DNS Server Remote Code Execution VulnerabilityEPSS 7.6%CVE-2026-20959MEDIUMMicrosoft SharePoint Server Spoofing VulnerabilityEPSS 7.6%CVE-2019-1236—A remote code execution vulnerability exists in the way that the VBScript engine handles objects in memory, aka 'VBScript Remote Code ExecutEPSS 7.5%CVE-2019-1239—A remote code execution vulnerability exists in the way that the VBScript engine handles objects in memory, aka 'VBScript Remote Code ExecutEPSS 7.5%CVE-2022-32230HIGHSMBv3 FileNormalizedNameInformation NULL Pointer DereferenceEPSS 7.5%CVE-2019-0884—A remote code execution vulnerability exists in the way the scripting engine handles objects in memory in Microsoft browsers, aka 'ScriptingEPSS 7.5%CVE-2018-8319—A Security Feature Bypass vulnerability exists in MSR JavaScript Cryptography Library that is caused by incorrect arithmetic computations, aEPSS 7.5%CVE-2021-36947HIGHWindows Print Spooler Remote Code Execution VulnerabilityEPSS 7.5%CVE-2018-1000—An information disclosure vulnerability exists in the way that the scripting engine handles objects in memory in Internet Explorer, aka "ScrEPSS 7.5%CVE-2021-36936HIGHWindows Print Spooler Remote Code Execution VulnerabilityEPSS 7.4%CVE-2019-1371—A remote code execution vulnerability exists when Internet Explorer improperly accesses objects in memory, aka 'Internet Explorer Memory CorEPSS 7.4%CVE-2020-1040CRITICALA remote code execution vulnerability exists when Hyper-V RemoteFX vGPU on a host server fails to properly validate input from an authenticaEPSS 7.4%KEVCVE-2021-26896HIGHWindows DNS Server Denial of Service VulnerabilityEPSS 7.4%CVE-2019-0741—An information disclosure vulnerability exists in the way Azure IoT Java SDK logs sensitive information, aka 'Azure IoT Java SDK InformationEPSS 7.4%CVE-2022-38050HIGHWin32k Elevation of Privilege VulnerabilityEPSS 7.3%CVE-2022-38051HIGHWindows Graphics Component Elevation of Privilege VulnerabilityEPSS 7.3%CVE-2018-1040—A denial of service vulnerability exists in the way that the Windows Code Integrity Module performs hashing, aka "Windows Code Integrity ModEPSS 7.3%CVE-2018-8175—An denial of service vulnerability exists when Windows NT WEBDAV Minirdr attempts to query a WEBDAV directory, aka "WEBDAV Denial of ServiceEPSS 7.3%CVE-2020-1493MEDIUMMicrosoft Outlook Information Disclosure VulnerabilityEPSS 7.3%CVE-2021-1645MEDIUMWindows Docker Information Disclosure VulnerabilityEPSS 7.3%