Vulnerabilidades em microsoft
10.810 resultadosAnálise Vexday
Microsoft apresenta 41 vulnerabilidades registradas, com 29 publicadas nos últimos 90 dias, indicando ritmo elevado de descobertas recentes. Oito vulnerabilidades críticas foram identificadas, predominantemente relacionadas a traversal de diretório (CWE-22), mas nenhuma está sob exploração ativa conhecida no momento. O volume recente de falhas requer atenção contínua em patching, especialmente considerando a superfície de ataque do ecossistema Microsoft.
CVE-2024-38196HIGHWindows Common Log File System Driver Elevation of Privilege VulnerabilityEPSS 6.0%CVE-2020-1032—A remote code execution vulnerability exists when Hyper-V RemoteFX vGPU on a host server fails to properly validate input from an authenticaEPSS 5.9%CVE-2020-1043—A remote code execution vulnerability exists when Hyper-V RemoteFX vGPU on a host server fails to properly validate input from an authenticaEPSS 5.9%CVE-2020-1041—A remote code execution vulnerability exists when Hyper-V RemoteFX vGPU on a host server fails to properly validate input from an authenticaEPSS 5.9%CVE-2020-0876—An information disclosure vulnerability exists when the win32k component improperly provides kernel information, aka 'Win32k Information DisEPSS 5.9%CVE-2024-38125HIGHKernel Streaming WOW Thunk Service Driver Elevation of Privilege VulnerabilityEPSS 5.9%CVE-2019-0623—An elevation of privilege vulnerability exists in Windows when the Win32k component fails to properly handle objects in memory, aka 'Win32k EPSS 5.9%CVE-2020-1239—A memory corruption vulnerability exists when Windows Media Foundation improperly handles objects in memory, aka 'Media Foundation Memory CoEPSS 5.9%CVE-2020-0607—An information disclosure vulnerability exists in the way that Microsoft Graphics Components handle objects in memory, aka 'Microsoft GraphiEPSS 5.9%CVE-2020-1045HIGHMicrosoft ASP.NET Core Security Feature Bypass VulnerabilityEPSS 5.9%CVE-2020-16927HIGHWindows Remote Desktop Protocol (RDP) Denial of Service VulnerabilityEPSS 5.9%CVE-2023-38182HIGHMicrosoft Exchange Server Remote Code Execution VulnerabilityEPSS 5.9%CVE-2021-28468HIGHRaw Image Extension Remote Code Execution VulnerabilityEPSS 5.9%CVE-2024-30084HIGHWindows Kernel-Mode Driver Elevation of Privilege VulnerabilityEPSS 5.9%CVE-2020-0952—An information disclosure vulnerability exists when the Windows GDI component improperly discloses the contents of its memory, aka 'Windows EPSS 5.9%CVE-2025-60724CRITICALGDI+ Remote Code Execution VulnerabilityEPSS 5.9%CVE-2020-1232—An information disclosure vulnerability exists when Media Foundation improperly handles objects in memory, aka 'Media Foundation InformationEPSS 5.9%CVE-2018-8545—An information disclosure vulnerability exists in the way that Microsoft Edge handles cross-origin requests, aka "Microsoft Edge InformationEPSS 5.9%CVE-2019-1238—A remote code execution vulnerability exists in the way that the VBScript engine handles objects in memory, aka 'VBScript Remote Code ExecutEPSS 5.9%CVE-2020-1416—An elevation of privilege vulnerability exists in Visual Studio and Visual Studio Code when they load software dependencies, aka 'Visual StuEPSS 5.9%