Vulnerabilidades en microsoft
9312 resultadosAnálisis Vexday
Microsoft apresenta 41 vulnerabilidades registradas, com 29 publicadas nos últimos 90 dias, indicando ritmo elevado de descobertas recentes. Oito vulnerabilidades críticas foram identificadas, predominantemente relacionadas a traversal de diretório (CWE-22), mas nenhuma está sob exploração ativa conhecida no momento. O volume recente de falhas requer atenção contínua em patching, especialmente considerando a superfície de ataque do ecossistema Microsoft.
CVE-2024-37971HIGHSecure Boot Security Feature Bypass VulnerabilityEPSS 1.4%CVE-2026-59866CRITICALKiota: Arbitrary file write + code-injection via x-ms-kiota-info clientClassName and clientNamespaceNameEPSS 1.4%CVE-2023-36758HIGHVisual Studio Elevation of Privilege VulnerabilityEPSS 1.4%CVE-2024-30052MEDIUMVisual Studio Remote Code Execution VulnerabilityEPSS 1.4%CVE-2023-36887HIGHMicrosoft Edge (Chromium-based) Remote Code Execution VulnerabilityEPSS 1.4%CVE-2020-1351—An information disclosure vulnerability exists when the Windows Graphics component improperly handles objects in memory, aka 'Microsoft GrapEPSS 1.4%CVE-2025-24045HIGHWindows Remote Desktop Services Remote Code Execution VulnerabilityEPSS 1.4%CVE-2019-1039MEDIUMWindows Kernel Information Disclosure VulnerabilityEPSS 1.4%CVE-2023-36014HIGHMicrosoft Edge (Chromium-based) Remote Code Execution VulnerabilityEPSS 1.4%CVE-2024-43599HIGHRemote Desktop Client Remote Code Execution VulnerabilityEPSS 1.4%CVE-2019-0864—A denial of service vulnerability exists when .NET Framework improperly handles objects in heap memory, aka '.NET Framework Denial of ServicEPSS 1.4%CVE-2019-0627—A security feature bypass vulnerability exists in Windows which could allow an attacker to bypass Device Guard, aka 'Windows Security FeaturEPSS 1.3%CVE-2023-21729MEDIUMRemote Procedure Call Runtime Information Disclosure VulnerabilityEPSS 1.3%CVE-2018-1039—A security feature bypass vulnerability exists in .Net Framework which could allow an attacker to bypass Device Guard, aka ".NET Framework DEPSS 1.3%CVE-2018-8562—An elevation of privilege vulnerability exists in Windows when the Win32k component fails to properly handle objects in memory, aka "Win32k EPSS 1.3%CVE-2023-29373HIGHMicrosoft ODBC Driver Remote Code Execution VulnerabilityEPSS 1.3%CVE-2019-1325—An elevation of privilege vulnerability exists in the Windows redirected drive buffering system (rdbss.sys) when the operating system impropEPSS 1.3%CVE-2023-29362HIGHRemote Desktop Client Remote Code Execution VulnerabilityEPSS 1.3%CVE-2023-29372HIGHMicrosoft WDAC OLE DB provider for SQL Server Remote Code Execution VulnerabilityEPSS 1.3%CVE-2024-49009HIGHSQL Server Native Client Remote Code Execution VulnerabilityEPSS 1.3%