Vulnerabilidades em microsoft

10.810 resultados
Análise Vexday

Microsoft apresenta 41 vulnerabilidades registradas, com 29 publicadas nos últimos 90 dias, indicando ritmo elevado de descobertas recentes. Oito vulnerabilidades críticas foram identificadas, predominantemente relacionadas a traversal de diretório (CWE-22), mas nenhuma está sob exploração ativa conhecida no momento. O volume recente de falhas requer atenção contínua em patching, especialmente considerando a superfície de ataque do ecossistema Microsoft.

CVE-2019-1069HIGHTask Scheduler Elevation of Privilege VulnerabilityEPSS 6.1%KEVCVE-2018-8325—An information disclosure vulnerability exists when Microsoft Edge improperly handles objects in memory, aka "Microsoft Edge Information DisEPSS 6.1%CVE-2021-28439HIGHWindows TCP/IP Driver Denial of Service VulnerabilityEPSS 6.1%CVE-2020-1113MEDIUMWindows Task Scheduler Security Feature Bypass VulnerabilityEPSS 6.1%CVE-2018-0987—An information disclosure vulnerability exists when the scripting engine does not properly handle objects in memory in Internet Explorer, akEPSS 6.1%CVE-2018-8123—An information disclosure vulnerability exists when Microsoft Edge improperly handles objects in memory, aka "Microsoft Edge Information DisEPSS 6.1%CVE-2019-0678—An elevation of privilege vulnerability exists when Microsoft Edge does not properly enforce cross-domain policies, which could allow an attEPSS 6.1%CVE-2021-34519MEDIUMMicrosoft SharePoint Server Information Disclosure VulnerabilityEPSS 6.1%CVE-2019-1480—An information disclosure vulnerability exists in Windows Media Player when it fails to properly handle objects in memory, aka 'Windows MediEPSS 6.1%CVE-2021-27059HIGHMicrosoft Office Remote Code Execution VulnerabilityEPSS 6.1%KEVCVE-2019-1030MEDIUMMicrosoft Edge based on Edge HTML Information Disclosure VulnerabilityEPSS 6.1%CVE-2022-24547HIGHWindows Digital Media Receiver Elevation of Privilege VulnerabilityEPSS 6.0%CVE-2019-1006—An authentication bypass vulnerability exists in Windows Communication Foundation (WCF) and Windows Identity Foundation (WIF), allowing signEPSS 6.0%CVE-2024-38241HIGHKernel Streaming Service Driver Elevation of Privilege VulnerabilityEPSS 6.0%CVE-2020-1042—A remote code execution vulnerability exists when Hyper-V RemoteFX vGPU on a host server fails to properly validate input from an authenticaEPSS 6.0%CVE-2023-38142HIGHWindows Kernel Elevation of Privilege VulnerabilityEPSS 6.0%CVE-2021-26700HIGHVisual Studio Code npm-script Extension Remote Code Execution VulnerabilityEPSS 6.0%CVE-2020-26233HIGHRemote Code Execution in Git Credential Manager CoreEPSS 6.0%CVE-2021-40486HIGHMicrosoft Word Remote Code Execution VulnerabilityEPSS 6.0%CVE-2025-62215HIGHWindows Kernel Elevation of Privilege VulnerabilityEPSS 6.0%KEV