Vulnerabilidades en microsoft

9312 resultados
Análisis Vexday

Microsoft apresenta 41 vulnerabilidades registradas, com 29 publicadas nos últimos 90 dias, indicando ritmo elevado de descobertas recentes. Oito vulnerabilidades críticas foram identificadas, predominantemente relacionadas a traversal de diretório (CWE-22), mas nenhuma está sob exploração ativa conhecida no momento. O volume recente de falhas requer atenção contínua em patching, especialmente considerando a superfície de ataque do ecossistema Microsoft.

CVE-2023-36905MEDIUMWindows Wireless Wide Area Network Service (WwanSvc) Information Disclosure VulnerabilityEPSS 1.6%CVE-2023-36907MEDIUMWindows Cryptographic Services Information Disclosure VulnerabilityEPSS 1.6%CVE-2020-1227MEDIUMMicrosoft Office SharePoint XSS VulnerabilityEPSS 1.6%CVE-2019-1076A Cross-site Scripting (XSS) vulnerability exists when Team Foundation Server does not properly sanitize user provided input, aka 'Team FounEPSS 1.6%CVE-2020-0972A spoofing vulnerability exists when Microsoft SharePoint Server does not properly sanitize a specially crafted web request to an affected SEPSS 1.6%CVE-2020-0977A spoofing vulnerability exists when Microsoft SharePoint Server does not properly sanitize a specially crafted web request to an affected SEPSS 1.6%CVE-2022-34717HIGHMicrosoft Office Remote Code Execution VulnerabilityEPSS 1.6%CVE-2020-1101MEDIUMA cross-site-scripting (XSS) vulnerability exists when Microsoft SharePoint Server does not properly sanitize a specially crafted web requesEPSS 1.6%CVE-2020-1100MEDIUMA cross-site-scripting (XSS) vulnerability exists when Microsoft SharePoint Server does not properly sanitize a specially crafted web requesEPSS 1.6%CVE-2020-1099MEDIUMA cross-site-scripting (XSS) vulnerability exists when Microsoft SharePoint Server does not properly sanitize a specially crafted web requesEPSS 1.6%CVE-2020-0975A spoofing vulnerability exists when Microsoft SharePoint Server does not properly sanitize a specially crafted web request to an affected SEPSS 1.6%CVE-2024-38092HIGHAzure CycleCloud Elevation of Privilege VulnerabilityEPSS 1.6%CVE-2025-24999HIGHMicrosoft SQL Server Elevation of Privilege VulnerabilityEPSS 1.6%CVE-2025-32724HIGHWindows Local Security Authority Subsystem Service (LSASS) Denial of Service VulnerabilityEPSS 1.6%CVE-2024-21308HIGHSQL Server Native Client OLE DB Provider Remote Code Execution VulnerabilityEPSS 1.6%CVE-2025-29968MEDIUMActive Directory Certificate Services (AD CS) Denial of Service VulnerabilityEPSS 1.6%CVE-2024-37335HIGHMicrosoft SQL Server Native Scoring Remote Code Execution VulnerabilityEPSS 1.6%CVE-2024-37339HIGHMicrosoft SQL Server Native Scoring Remote Code Execution VulnerabilityEPSS 1.6%CVE-2024-37340HIGHMicrosoft SQL Server Native Scoring Remote Code Execution VulnerabilityEPSS 1.6%CVE-2024-37338HIGHMicrosoft SQL Server Native Scoring Remote Code Execution VulnerabilityEPSS 1.6%