Vulnerabilidades em microsoft
10.810 resultadosAnálise Vexday
Microsoft apresenta 41 vulnerabilidades registradas, com 29 publicadas nos últimos 90 dias, indicando ritmo elevado de descobertas recentes. Oito vulnerabilidades críticas foram identificadas, predominantemente relacionadas a traversal de diretório (CWE-22), mas nenhuma está sob exploração ativa conhecida no momento. O volume recente de falhas requer atenção contínua em patching, especialmente considerando a superfície de ataque do ecossistema Microsoft.
CVE-2021-27084HIGHVisual Studio Code Java Extension Pack Remote Code Execution VulnerabilityEPSS 62.1%CVE-2018-8384—A remote code execution vulnerability exists in the way that the Chakra scripting engine handles objects in memory in Microsoft Edge, aka "CEPSS 62.1%CVE-2021-28325MEDIUMWindows SMB Information Disclosure VulnerabilityEPSS 62.1%CVE-2018-8373HIGHA remote code execution vulnerability exists in the way that the scripting engine handles objects in memory in Internet Explorer, aka "ScripEPSS 61.9%KEVCVE-2021-27083HIGHRemote Development Extension for Visual Studio Code Remote Code Execution VulnerabilityEPSS 61.9%CVE-2021-28472HIGHVisual Studio Code Maven for Java Extension Remote Code Execution VulnerabilityEPSS 61.8%CVE-2021-26424CRITICALWindows TCP/IP Remote Code Execution VulnerabilityEPSS 61.1%CVE-2022-41076HIGHPowerShell Remote Code Execution VulnerabilityEPSS 60.5%CVE-2019-1252—An information disclosure vulnerability exists when the Windows GDI component improperly discloses the contents of its memory, aka 'Windows EPSS 60.4%CVE-2024-21338HIGHWindows Kernel Elevation of Privilege VulnerabilityEPSS 59.8%KEVCVE-2021-33742HIGHWindows MSHTML Platform Remote Code Execution VulnerabilityEPSS 59.4%KEVCVE-2020-1300—A remote code execution vulnerability exists when Microsoft Windows fails to properly handle cabinet files.To exploit the vulnerability, an EPSS 59.4%CVE-2023-21529HIGHMicrosoft Exchange Server Remote Code Execution VulnerabilityEPSS 59.3%KEVCVE-2022-21882HIGHWin32k Elevation of Privilege VulnerabilityEPSS 59.2%KEVCVE-2021-24086HIGHWindows TCP/IP Denial of Service VulnerabilityEPSS 59.0%CVE-2025-24054MEDIUMNTLM Hash Disclosure Spoofing VulnerabilityEPSS 58.9%KEVCVE-2018-8239—An information disclosure vulnerability exists when the Windows GDI component improperly discloses the contents of its memory, aka "Windows EPSS 58.1%CVE-2019-1068HIGHA remote code execution vulnerability exists in Microsoft SQL Server when it incorrectly handles processing of internal functions, aka 'MicrEPSS 57.9%KEVCVE-2023-36744HIGHMicrosoft Exchange Server Remote Code Execution VulnerabilityEPSS 57.1%CVE-2023-36041HIGHMicrosoft Excel Remote Code Execution VulnerabilityEPSS 56.7%