Vulnerabilidades en microsoft

9312 resultados
Análisis Vexday

Microsoft apresenta 41 vulnerabilidades registradas, com 29 publicadas nos últimos 90 dias, indicando ritmo elevado de descobertas recentes. Oito vulnerabilidades críticas foram identificadas, predominantemente relacionadas a traversal de diretório (CWE-22), mas nenhuma está sob exploração ativa conhecida no momento. O volume recente de falhas requer atenção contínua em patching, especialmente considerando a superfície de ataque do ecossistema Microsoft.

CVE-2020-0656A cross site scripting vulnerability exists when Microsoft Dynamics 365 (on-premises) does not properly sanitize a specially crafted web reqEPSS 1.5%CVE-2025-33056HIGHWindows Local Security Authority (LSA) Denial of Service VulnerabilityEPSS 1.5%CVE-2024-21316MEDIUMWindows Server Key Distribution Service Security Feature BypassEPSS 1.5%CVE-2025-21380HIGHAzure Marketplace SaaS Resources Information Disclosure VulnerabilityEPSS 1.5%CVE-2020-0754An elevation of privilege vulnerability exists in Windows Error Reporting (WER) when WER handles and executes files, aka 'Windows Error RepoEPSS 1.5%CVE-2022-35770MEDIUMWindows NTLM Spoofing VulnerabilityEPSS 1.5%CVE-2021-33753MEDIUMMicrosoft Bing Search Spoofing VulnerabilityEPSS 1.5%CVE-2026-59861HIGHKiota: Code Generation Literal Injection in Kiota Ruby GeneratorEPSS 1.5%CVE-2018-8337A security feature bypass vulnerability exists when Windows Subsystem for Linux improperly handles case sensitivity, aka "Windows Subsystem EPSS 1.5%CVE-2020-1560HIGHMicrosoft Windows Codecs Library Remote Code Execution VulnerabilityEPSS 1.5%CVE-2025-27491HIGHWindows Hyper-V Remote Code Execution VulnerabilityEPSS 1.5%CVE-2026-58644CRITICALMicrosoft SharePoint Remote Code Execution VulnerabilityEPSS 1.5%KEVCVE-2019-1259A spoofing vulnerability exists in Microsoft SharePoint when it improperly handles requests to authorize applications, resulting in cross-siEPSS 1.5%CVE-2023-21556HIGHWindows Layer 2 Tunneling Protocol (L2TP) Remote Code Execution VulnerabilityEPSS 1.5%CVE-2018-8651A cross site scripting vulnerability exists when Microsoft Dynamics NAV does not properly sanitize a specially crafted web request to an affEPSS 1.5%CVE-2024-21401CRITICALMicrosoft Entra Jira Single-Sign-On Plugin Elevation of Privilege VulnerabilityEPSS 1.5%CVE-2022-34712MEDIUMWindows Defender Credential Guard Information Disclosure VulnerabilityEPSS 1.5%CVE-2023-28275HIGHMicrosoft WDAC OLE DB provider for SQL Server Remote Code Execution VulnerabilityEPSS 1.5%CVE-2022-41122MEDIUMMicrosoft SharePoint Server Spoofing VulnerabilityEPSS 1.5%CVE-2023-21703MEDIUMAzure Data Box Gateway Remote Code Execution VulnerabilityEPSS 1.5%