Vulnerabilidades em microsoft
10.810 resultadosAnálise Vexday
Microsoft apresenta 41 vulnerabilidades registradas, com 29 publicadas nos últimos 90 dias, indicando ritmo elevado de descobertas recentes. Oito vulnerabilidades críticas foram identificadas, predominantemente relacionadas a traversal de diretório (CWE-22), mas nenhuma está sob exploração ativa conhecida no momento. O volume recente de falhas requer atenção contínua em patching, especialmente considerando a superfície de ataque do ecossistema Microsoft.
CVE-2018-8152—An elevation of privilege vulnerability exists when Microsoft Exchange Outlook Web Access (OWA) fails to properly handle web requests, aka "EPSS 3.6%CVE-2021-1667HIGHRemote Procedure Call Runtime Remote Code Execution VulnerabilityEPSS 3.6%CVE-2021-1701HIGHRemote Procedure Call Runtime Remote Code Execution VulnerabilityEPSS 3.6%CVE-2021-1700HIGHRemote Procedure Call Runtime Remote Code Execution VulnerabilityEPSS 3.6%CVE-2024-21312HIGH.NET Framework Denial of Service VulnerabilityEPSS 3.6%CVE-2022-26811HIGHWindows DNS Server Remote Code Execution VulnerabilityEPSS 3.6%CVE-2022-26825HIGHWindows DNS Server Remote Code Execution VulnerabilityEPSS 3.6%CVE-2024-43560HIGHMicrosoft Windows Storage Port Driver Elevation of Privilege VulnerabilityEPSS 3.6%CVE-2023-24912HIGHWindows Graphics Component Elevation of Privilege VulnerabilityEPSS 3.6%CVE-2021-26415HIGHWindows Installer Elevation of Privilege VulnerabilityEPSS 3.6%CVE-2020-1487HIGHMedia Foundation Information Disclosure VulnerabilityEPSS 3.6%CVE-2020-17133MEDIUMMicrosoft Dynamics Business Central/NAV Information Disclosure VulnerabilityEPSS 3.6%CVE-2022-26915HIGHWindows Secure Channel Denial of Service VulnerabilityEPSS 3.6%CVE-2019-1338—A security feature bypass vulnerability exists in Microsoft Windows when a man-in-the-middle attacker is able to successfully bypass the NTLEPSS 3.6%CVE-2022-24464HIGH.NET and Visual Studio Denial of Service VulnerabilityEPSS 3.6%CVE-2018-0968—An information disclosure vulnerability exists in the Windows kernel that could allow an attacker to retrieve information that could lead toEPSS 3.5%CVE-2020-1467CRITICALWindows Hard Link Elevation of Privilege VulnerabilityEPSS 3.5%CVE-2023-35380HIGHWindows Kernel Elevation of Privilege VulnerabilityEPSS 3.5%CVE-2025-47732HIGHMicrosoft Dataverse Remote Code Execution VulnerabilityEPSS 3.5%CVE-2020-17019HIGHMicrosoft Excel Remote Code Execution VulnerabilityEPSS 3.5%