Vulnerabilidades em microsoft
10.810 resultadosAnálise Vexday
Microsoft apresenta 41 vulnerabilidades registradas, com 29 publicadas nos últimos 90 dias, indicando ritmo elevado de descobertas recentes. Oito vulnerabilidades críticas foram identificadas, predominantemente relacionadas a traversal de diretório (CWE-22), mas nenhuma está sob exploração ativa conhecida no momento. O volume recente de falhas requer atenção contínua em patching, especialmente considerando a superfície de ataque do ecossistema Microsoft.
CVE-2020-1062HIGHInternet Explorer Memory Corruption VulnerabilityEPSS 6.2%CVE-2022-21849CRITICALWindows Internet Key Exchange (IKE) Protocol Extensions Remote Code Execution VulnerabilityEPSS 6.2%CVE-2018-1021—An information disclosure vulnerability exists when Microsoft Edge improperly handles objects in memory, aka "Microsoft Edge Information DisEPSS 6.2%CVE-2019-1356—An information disclosure vulnerability exists when Microsoft Edge based on Edge HTML improperly handles objects in memory, aka 'Microsoft EEPSS 6.2%CVE-2023-28288HIGHMicrosoft SharePoint Server Spoofing VulnerabilityEPSS 6.2%CVE-2018-0952—An Elevation of Privilege vulnerability exists when Diagnostics Hub Standard Collector allows file creation in arbitrary locations, aka "DiaEPSS 6.2%CVE-2021-28324HIGHWindows SMB Information Disclosure VulnerabilityEPSS 6.2%CVE-2019-0821—An information disclosure vulnerability exists in the way that the Windows SMB Server handles certain requests, aka 'Windows SMB InformationEPSS 6.2%CVE-2018-8598—An information disclosure vulnerability exists when Microsoft Excel improperly discloses the contents of its memory, aka "Microsoft Excel InEPSS 6.2%CVE-2019-1209—An information disclosure vulnerability exists in Lync 2013, aka 'Lync 2013 Information Disclosure Vulnerability'.EPSS 6.2%CVE-2024-38244HIGHKernel Streaming Service Driver Elevation of Privilege VulnerabilityEPSS 6.2%CVE-2018-1025—An information disclosure vulnerability exists when affected Microsoft browsers improperly handle objects in memory, aka "Microsoft Browser EPSS 6.2%CVE-2020-1036—A remote code execution vulnerability exists when Hyper-V RemoteFX vGPU on a host server fails to properly validate input from an authenticaEPSS 6.2%CVE-2019-1233—A denial of service vulnerability exists in Microsoft Exchange Server software when the software fails to properly handle objects in memory,EPSS 6.2%CVE-2021-1636HIGHMicrosoft SQL Elevation of Privilege VulnerabilityEPSS 6.2%CVE-2020-0738—A memory corruption vulnerability exists when Windows Media Foundation improperly handles objects in memory, aka 'Media Foundation Memory CoEPSS 6.1%CVE-2023-35630HIGHInternet Connection Sharing (ICS) Remote Code Execution VulnerabilityEPSS 6.1%CVE-2018-8635—An elevation of privilege vulnerability exists when Microsoft SharePoint Server does not properly sanitize a specially crafted authenticatioEPSS 6.1%CVE-2019-1079—An information disclosure vulnerability exists when Visual Studio improperly parses XML input in certain settings files, aka 'Visual Studio EPSS 6.1%CVE-2020-1445—An information disclosure vulnerability exists when Microsoft Office improperly discloses the contents of its memory, aka 'Microsoft Office EPSS 6.1%