Vulnerabilidades em microsoft

10.810 resultados
Análise Vexday

Microsoft apresenta 41 vulnerabilidades registradas, com 29 publicadas nos últimos 90 dias, indicando ritmo elevado de descobertas recentes. Oito vulnerabilidades críticas foram identificadas, predominantemente relacionadas a traversal de diretório (CWE-22), mas nenhuma está sob exploração ativa conhecida no momento. O volume recente de falhas requer atenção contínua em patching, especialmente considerando a superfície de ataque do ecossistema Microsoft.

CVE-2024-26182HIGHWindows Kernel Elevation of Privilege VulnerabilityEPSS 5.6%CVE-2022-30184MEDIUM.NET and Visual Studio Information Disclosure VulnerabilityEPSS 5.6%CVE-2023-21823HIGHWindows Graphics Component Remote Code Execution VulnerabilityEPSS 5.6%KEVCVE-2018-0998—An information disclosure vulnerability exists when Microsoft Edge PDF Reader improperly handles objects in memory, aka "Microsoft Edge InfoEPSS 5.6%CVE-2019-0712—A denial of service vulnerability exists when Microsoft Hyper-V Network Switch on a host server fails to properly validate input from a privEPSS 5.6%CVE-2023-35386HIGHWindows Kernel Elevation of Privilege VulnerabilityEPSS 5.5%CVE-2024-20685MEDIUMAzure Private 5G Core Denial of Service VulnerabilityEPSS 5.5%CVE-2019-0920MEDIUMScripting Engine Memory Corruption VulnerabilityEPSS 5.5%CVE-2023-36435HIGHMicrosoft QUIC Denial of Service VulnerabilityEPSS 5.5%CVE-2019-1309—A denial of service vulnerability exists when Microsoft Hyper-V Network Switch on a host server fails to properly validate input from a privEPSS 5.5%CVE-2019-1310—A denial of service vulnerability exists when Microsoft Hyper-V Network Switch on a host server fails to properly validate input from a privEPSS 5.5%CVE-2026-20817HIGHWindows Error Reporting Service Elevation of Privilege VulnerabilityEPSS 5.5%CVE-2021-26902HIGHHEVC Video Extensions Remote Code Execution VulnerabilityEPSS 5.5%CVE-2020-1322—An information disclosure vulnerability exists when Microsoft Project reads out of bound memory due to an uninitialized variable, aka 'MicroEPSS 5.5%CVE-2018-0592—Untrusted search path vulnerability in Microsoft OneDrive allows an attacker to gain privileges via a Trojan horse DLL in an unspecified dirEPSS 5.5%CVE-2018-0595—Untrusted search path vulnerability in the installer of Skype for Windows allows an attacker to gain privileges via a Trojan horse DLL in anEPSS 5.5%CVE-2018-0597—Untrusted search path vulnerability in the installer of Visual Studio Code allows an attacker to gain privileges via a Trojan horse DLL in aEPSS 5.5%CVE-2018-0593—Untrusted search path vulnerability in the installer of Microsoft OneDrive allows an attacker to gain privileges via a Trojan horse DLL in aEPSS 5.5%CVE-2018-0596—Untrusted search path vulnerability in the installer of Visual Studio Community allows an attacker to gain privileges via a Trojan horse DLLEPSS 5.5%CVE-2018-0594—Untrusted search path vulnerability in Skype for Windows allows an attacker to gain privileges via a Trojan horse DLL in an unspecified direEPSS 5.5%