Vulnerabilidades en microsoft
9322 resultadosAnálisis Vexday
Microsoft apresenta 41 vulnerabilidades registradas, com 29 publicadas nos últimos 90 dias, indicando ritmo elevado de descobertas recentes. Oito vulnerabilidades críticas foram identificadas, predominantemente relacionadas a traversal de diretório (CWE-22), mas nenhuma está sob exploração ativa conhecida no momento. O volume recente de falhas requer atenção contínua em patching, especialmente considerando a superfície de ataque do ecossistema Microsoft.
CVE-2019-1294—A security feature bypass exists when Windows Secure Boot improperly restricts access to debugging functionality, aka 'Windows Secure Boot SEPSS 1.3%CVE-2020-0859—An information vulnerability exists when Windows Modules Installer Service improperly discloses file information, aka 'Windows Modules InstaEPSS 1.3%CVE-2020-0643—An information disclosure vulnerability exists in the way that the Windows Graphics Device Interface Plus (GDI+) handles objects in memory, EPSS 1.3%CVE-2020-0639—An information disclosure vulnerability exists in the Windows Common Log File System (CLFS) driver when it fails to properly handle objects EPSS 1.3%CVE-2021-31982HIGHMicrosoft Edge (Chromium-based) Security Feature Bypass VulnerabilityEPSS 1.3%CVE-2020-0608—An information disclosure vulnerability exists when the win32k component improperly provides kernel information, aka 'Win32k Information DisEPSS 1.3%CVE-2019-1409—An information disclosure vulnerability exists when the Windows Remote Procedure Call (RPC) runtime improperly initializes objects in memoryEPSS 1.3%CVE-2020-1194—A denial of service vulnerability exists when Windows Registry improperly handles filesystem operations, aka 'Windows Registry Denial of SerEPSS 1.3%CVE-2021-40484HIGHMicrosoft SharePoint Server Spoofing VulnerabilityEPSS 1.3%CVE-2021-40483HIGHMicrosoft SharePoint Server Spoofing VulnerabilityEPSS 1.3%CVE-2024-30020HIGHWindows Cryptographic Services Remote Code Execution VulnerabilityEPSS 1.3%CVE-2019-0936—An elevation of privilege vulnerability exists in Microsoft Windows when Windows fails to properly handle certain symbolic links, aka 'WindoEPSS 1.3%CVE-2025-54106HIGHWindows Routing and Remote Access Service (RRAS) Remote Code Execution VulnerabilityEPSS 1.3%CVE-2026-20847MEDIUMMicrosoft Windows File Explorer Spoofing VulnerabilityEPSS 1.3%CVE-2023-33159HIGHMicrosoft SharePoint Server Spoofing VulnerabilityEPSS 1.3%CVE-2020-1419—An information disclosure vulnerability exists when the Windows kernel fails to properly initialize a memory address, aka 'Windows Kernel InEPSS 1.3%CVE-2021-1676MEDIUMWindows NT Lan Manager Datagram Receiver Driver Information Disclosure VulnerabilityEPSS 1.3%CVE-2024-38264MEDIUMMicrosoft Virtual Hard Disk (VHDX) Denial of Service VulnerabilityEPSS 1.3%CVE-2020-0894MEDIUMA cross-site-scripting (XSS) vulnerability exists when Microsoft SharePoint Server does not properly sanitize a specially crafted web requesEPSS 1.3%CVE-2020-0893MEDIUMA cross-site-scripting (XSS) vulnerability exists when Microsoft SharePoint Server does not properly sanitize a specially crafted web requesEPSS 1.3%