Vulnerabilidades en microsoft

9312 resultados
Análisis Vexday

Microsoft apresenta 41 vulnerabilidades registradas, com 29 publicadas nos últimos 90 dias, indicando ritmo elevado de descobertas recentes. Oito vulnerabilidades críticas foram identificadas, predominantemente relacionadas a traversal de diretório (CWE-22), mas nenhuma está sob exploração ativa conhecida no momento. O volume recente de falhas requer atenção contínua em patching, especialmente considerando a superfície de ataque do ecossistema Microsoft.

CVE-2024-38260HIGHWindows Remote Desktop Licensing Service Remote Code Execution VulnerabilityEPSS 1.6%CVE-2024-26191HIGHMicrosoft SQL Server Native Scoring Remote Code Execution VulnerabilityEPSS 1.6%CVE-2024-37340HIGHMicrosoft SQL Server Native Scoring Remote Code Execution VulnerabilityEPSS 1.6%CVE-2019-1074An elevation of privilege vulnerability exists in Microsoft Windows where certain folders, with local service privilege, are vulnerable to sEPSS 1.6%CVE-2021-24073MEDIUMSkype for Business and Lync Spoofing VulnerabilityEPSS 1.6%CVE-2020-16944HIGHMicrosoft SharePoint Reflective XSS VulnerabilityEPSS 1.6%CVE-2018-8547A cross-site-scripting (XSS) vulnerability exists when an open source customization for Microsoft Active Directory Federation Services (AD FEPSS 1.6%CVE-2018-8572An elevation of privilege vulnerability exists when Microsoft SharePoint Server does not properly sanitize a specially crafted web request tEPSS 1.6%CVE-2020-1141An information disclosure vulnerability exists in the way that the Windows Graphics Device Interface (GDI) handles objects in memory, allowiEPSS 1.6%CVE-2020-1145An information disclosure vulnerability exists in the way that the Windows Graphics Device Interface (GDI) handles objects in memory, allowiEPSS 1.6%CVE-2019-1283An information disclosure vulnerability exists in the way that Microsoft Graphics Components handle objects in memory, aka 'Microsoft GraphiEPSS 1.6%CVE-2024-38127HIGHWindows Hyper-V Elevation of Privilege VulnerabilityEPSS 1.6%CVE-2019-0702An information disclosure vulnerability exists when the Windows kernel improperly handles objects in memory, aka 'Windows Kernel InformationEPSS 1.6%CVE-2019-0782An information disclosure vulnerability exists when the Windows kernel fails to properly initialize a memory address, aka 'Windows Kernel InEPSS 1.6%CVE-2023-36897HIGHVisual Studio Tools for Office Runtime Spoofing VulnerabilityEPSS 1.6%CVE-2023-36880MEDIUMMicrosoft Edge (Chromium-based) Information Disclosure VulnerabilityEPSS 1.6%CVE-2019-0754A denial of service vulnerability exists when Windows improperly handles objects in memory, aka 'Windows Denial of Service Vulnerability'.EPSS 1.6%CVE-2019-0776An information disclosure vulnerability exists when the win32k component improperly provides kernel information, aka 'Win32k Information DisEPSS 1.6%CVE-2020-0677An information disclosure vulnerability exists in the Cryptography Next Generation (CNG) service when it fails to properly handle objects inEPSS 1.6%CVE-2020-0756An information disclosure vulnerability exists in the Cryptography Next Generation (CNG) service when it fails to properly handle objects inEPSS 1.6%