Vulnerabilidades en microsoft
9312 resultadosAnálisis Vexday
Microsoft apresenta 41 vulnerabilidades registradas, com 29 publicadas nos últimos 90 dias, indicando ritmo elevado de descobertas recentes. Oito vulnerabilidades críticas foram identificadas, predominantemente relacionadas a traversal de diretório (CWE-22), mas nenhuma está sob exploração ativa conhecida no momento. O volume recente de falhas requer atenção contínua em patching, especialmente considerando a superfície de ataque do ecossistema Microsoft.
CVE-2020-0656—A cross site scripting vulnerability exists when Microsoft Dynamics 365 (on-premises) does not properly sanitize a specially crafted web reqEPSS 1.5%CVE-2025-33056HIGHWindows Local Security Authority (LSA) Denial of Service VulnerabilityEPSS 1.5%CVE-2024-21316MEDIUMWindows Server Key Distribution Service Security Feature BypassEPSS 1.5%CVE-2025-21380HIGHAzure Marketplace SaaS Resources Information Disclosure VulnerabilityEPSS 1.5%CVE-2020-0754—An elevation of privilege vulnerability exists in Windows Error Reporting (WER) when WER handles and executes files, aka 'Windows Error RepoEPSS 1.5%CVE-2022-35770MEDIUMWindows NTLM Spoofing VulnerabilityEPSS 1.5%CVE-2021-33753MEDIUMMicrosoft Bing Search Spoofing VulnerabilityEPSS 1.5%CVE-2026-59861HIGHKiota: Code Generation Literal Injection in Kiota Ruby GeneratorEPSS 1.5%CVE-2018-8337—A security feature bypass vulnerability exists when Windows Subsystem for Linux improperly handles case sensitivity, aka "Windows Subsystem EPSS 1.5%CVE-2020-1560HIGHMicrosoft Windows Codecs Library Remote Code Execution VulnerabilityEPSS 1.5%CVE-2025-27491HIGHWindows Hyper-V Remote Code Execution VulnerabilityEPSS 1.5%CVE-2026-58644CRITICALMicrosoft SharePoint Remote Code Execution VulnerabilityEPSS 1.5%KEVCVE-2019-1259—A spoofing vulnerability exists in Microsoft SharePoint when it improperly handles requests to authorize applications, resulting in cross-siEPSS 1.5%CVE-2023-21556HIGHWindows Layer 2 Tunneling Protocol (L2TP) Remote Code Execution VulnerabilityEPSS 1.5%CVE-2018-8651—A cross site scripting vulnerability exists when Microsoft Dynamics NAV does not properly sanitize a specially crafted web request to an affEPSS 1.5%CVE-2024-21401CRITICALMicrosoft Entra Jira Single-Sign-On Plugin Elevation of Privilege VulnerabilityEPSS 1.5%CVE-2022-34712MEDIUMWindows Defender Credential Guard Information Disclosure VulnerabilityEPSS 1.5%CVE-2023-28275HIGHMicrosoft WDAC OLE DB provider for SQL Server Remote Code Execution VulnerabilityEPSS 1.5%CVE-2022-41122MEDIUMMicrosoft SharePoint Server Spoofing VulnerabilityEPSS 1.5%CVE-2023-21703MEDIUMAzure Data Box Gateway Remote Code Execution VulnerabilityEPSS 1.5%