Vulnerabilidades en microsoft
9312 resultadosAnálisis Vexday
Microsoft apresenta 41 vulnerabilidades registradas, com 29 publicadas nos últimos 90 dias, indicando ritmo elevado de descobertas recentes. Oito vulnerabilidades críticas foram identificadas, predominantemente relacionadas a traversal de diretório (CWE-22), mas nenhuma está sob exploração ativa conhecida no momento. O volume recente de falhas requer atenção contínua em patching, especialmente considerando a superfície de ataque do ecossistema Microsoft.
CVE-2023-35316MEDIUMRemote Procedure Call Runtime Information Disclosure VulnerabilityEPSS 1.4%CVE-2022-24767HIGHGitHub: Git for Windows' uninstaller vulnerable to DLL hijacking when run under the SYSTEM user account.EPSS 1.4%CVE-2018-8121—An information disclosure vulnerability exists when the Windows kernel improperly initializes objects in memory, aka "Windows Kernel InformaEPSS 1.4%CVE-2018-8165—An elevation of privilege vulnerability exists when the DirectX Graphics Kernel (DXGKRNL) driver improperly handles objects in memory, aka "EPSS 1.4%CVE-2019-0816—A security feature bypass exists in Azure SSH Keypairs, due to a change in the provisioning logic for some Linux images that use cloud-init,EPSS 1.4%CVE-2022-38001MEDIUMMicrosoft Office Spoofing VulnerabilityEPSS 1.4%CVE-2026-21520HIGHCopilot Studio Information Disclosure VulnerabilityEPSS 1.4%CVE-2020-1148—A spoofing vulnerability exists when Microsoft SharePoint Server does not properly sanitize a specially crafted web request to an affected SEPSS 1.4%CVE-2023-24876HIGHMicrosoft PostScript and PCL6 Class Printer Driver Remote Code Execution VulnerabilityEPSS 1.4%CVE-2024-43519HIGHMicrosoft WDAC OLE DB provider for SQL Server Remote Code Execution VulnerabilityEPSS 1.4%CVE-2023-36043MEDIUMOpen Management Infrastructure Information Disclosure VulnerabilityEPSS 1.4%CVE-2020-17035HIGHWindows Kernel Elevation of Privilege VulnerabilityEPSS 1.4%CVE-2023-29354MEDIUMMicrosoft Edge (Chromium-based) Security Feature Bypass VulnerabilityEPSS 1.4%CVE-2021-31204HIGH.NET and Visual Studio Elevation of Privilege VulnerabilityEPSS 1.4%CVE-2025-53716MEDIUMWindows Local Security Authority Subsystem Service (LSASS) Denial of Service VulnerabilityEPSS 1.4%CVE-2025-50172MEDIUMDirectX Graphics Kernel Denial of Service VulnerabilityEPSS 1.4%CVE-2024-49124HIGHLightweight Directory Access Protocol (LDAP) Client Remote Code Execution VulnerabilityEPSS 1.4%CVE-2020-16992HIGHAzure Sphere Elevation of Privilege VulnerabilityEPSS 1.4%CVE-2024-26251MEDIUMMicrosoft SharePoint Server Spoofing VulnerabilityEPSS 1.4%CVE-2020-0751—A denial of service vulnerability exists when Microsoft Hyper-V on a host server fails to properly validate specific malicious data from a uEPSS 1.4%