Vulnerabilidades em microsoft

10.810 resultados
Análise Vexday

Microsoft apresenta 41 vulnerabilidades registradas, com 29 publicadas nos últimos 90 dias, indicando ritmo elevado de descobertas recentes. Oito vulnerabilidades críticas foram identificadas, predominantemente relacionadas a traversal de diretório (CWE-22), mas nenhuma está sob exploração ativa conhecida no momento. O volume recente de falhas requer atenção contínua em patching, especialmente considerando a superfície de ataque do ecossistema Microsoft.

CVE-2020-1193HIGHMicrosoft Excel Remote Code Execution VulnerabilityEPSS 3.8%CVE-2020-1218HIGHMicrosoft Word Remote Code Execution VulnerabilityEPSS 3.8%CVE-2022-29110HIGHMicrosoft Excel Remote Code Execution VulnerabilityEPSS 3.8%CVE-2020-17017MEDIUMMicrosoft SharePoint Information Disclosure VulnerabilityEPSS 3.8%CVE-2020-16923HIGHMicrosoft Graphics Components Remote Code Execution VulnerabilityEPSS 3.8%CVE-2018-8308—An elevation of privilege vulnerability exists when the Windows kernel fails to properly handle objects in memory, aka "Windows Kernel ElevaEPSS 3.8%CVE-2023-23396MEDIUMMicrosoft Excel Denial of Service VulnerabilityEPSS 3.8%CVE-2020-1229—A security feature bypass vulnerability exists in Microsoft Outlook when Office fails to enforce security settings configured on a system, aEPSS 3.8%CVE-2021-42313CRITICALMicrosoft Defender for IoT Remote Code Execution VulnerabilityEPSS 3.8%CVE-2019-1140HIGHChakra Scripting Engine Memory Corruption VulnerabilityEPSS 3.8%CVE-2021-31183HIGHWindows TCP/IP Driver Denial of Service VulnerabilityEPSS 3.8%CVE-2019-1220—A security feature bypass vulnerability exists when Microsoft Browsers fail to validate the correct Security Zone of requests for specific UEPSS 3.8%CVE-2021-1734HIGHWindows Remote Procedure Call Information Disclosure VulnerabilityEPSS 3.8%CVE-2024-38140CRITICALWindows Reliable Multicast Transport Driver (RMCAST) Remote Code Execution VulnerabilityEPSS 3.8%CVE-2021-31962CRITICALKerberos AppContainer Security Feature Bypass VulnerabilityEPSS 3.8%CVE-2019-1264—A security feature bypass vulnerability exists when Microsoft Office improperly handles input, aka 'Microsoft Office Security Feature BypassEPSS 3.8%CVE-2019-1258—Azure Active Directory Authentication Library Elevation of Privilege VulnerabilityEPSS 3.8%CVE-2020-17118HIGHMicrosoft SharePoint Remote Code Execution VulnerabilityEPSS 3.8%CVE-2021-43907CRITICALVisual Studio Code WSL Extension Remote Code Execution VulnerabilityEPSS 3.8%CVE-2024-43630HIGHWindows Kernel Elevation of Privilege VulnerabilityEPSS 3.8%