Vulnerabilidades en microsoft

9322 resultados
Análisis Vexday

Microsoft apresenta 41 vulnerabilidades registradas, com 29 publicadas nos últimos 90 dias, indicando ritmo elevado de descobertas recentes. Oito vulnerabilidades críticas foram identificadas, predominantemente relacionadas a traversal de diretório (CWE-22), mas nenhuma está sob exploração ativa conhecida no momento. O volume recente de falhas requer atenção contínua em patching, especialmente considerando a superfície de ataque do ecossistema Microsoft.

CVE-2019-1294A security feature bypass exists when Windows Secure Boot improperly restricts access to debugging functionality, aka 'Windows Secure Boot SEPSS 1.3%CVE-2020-0859An information vulnerability exists when Windows Modules Installer Service improperly discloses file information, aka 'Windows Modules InstaEPSS 1.3%CVE-2020-0643An information disclosure vulnerability exists in the way that the Windows Graphics Device Interface Plus (GDI+) handles objects in memory, EPSS 1.3%CVE-2020-0639An information disclosure vulnerability exists in the Windows Common Log File System (CLFS) driver when it fails to properly handle objects EPSS 1.3%CVE-2021-31982HIGHMicrosoft Edge (Chromium-based) Security Feature Bypass VulnerabilityEPSS 1.3%CVE-2020-0608An information disclosure vulnerability exists when the win32k component improperly provides kernel information, aka 'Win32k Information DisEPSS 1.3%CVE-2019-1409An information disclosure vulnerability exists when the Windows Remote Procedure Call (RPC) runtime improperly initializes objects in memoryEPSS 1.3%CVE-2020-1194A denial of service vulnerability exists when Windows Registry improperly handles filesystem operations, aka 'Windows Registry Denial of SerEPSS 1.3%CVE-2021-40484HIGHMicrosoft SharePoint Server Spoofing VulnerabilityEPSS 1.3%CVE-2021-40483HIGHMicrosoft SharePoint Server Spoofing VulnerabilityEPSS 1.3%CVE-2024-30020HIGHWindows Cryptographic Services Remote Code Execution VulnerabilityEPSS 1.3%CVE-2019-0936An elevation of privilege vulnerability exists in Microsoft Windows when Windows fails to properly handle certain symbolic links, aka 'WindoEPSS 1.3%CVE-2025-54106HIGHWindows Routing and Remote Access Service (RRAS) Remote Code Execution VulnerabilityEPSS 1.3%CVE-2026-20847MEDIUMMicrosoft Windows File Explorer Spoofing VulnerabilityEPSS 1.3%CVE-2023-33159HIGHMicrosoft SharePoint Server Spoofing VulnerabilityEPSS 1.3%CVE-2020-1419An information disclosure vulnerability exists when the Windows kernel fails to properly initialize a memory address, aka 'Windows Kernel InEPSS 1.3%CVE-2021-1676MEDIUMWindows NT Lan Manager Datagram Receiver Driver Information Disclosure VulnerabilityEPSS 1.3%CVE-2024-38264MEDIUMMicrosoft Virtual Hard Disk (VHDX) Denial of Service VulnerabilityEPSS 1.3%CVE-2020-0894MEDIUMA cross-site-scripting (XSS) vulnerability exists when Microsoft SharePoint Server does not properly sanitize a specially crafted web requesEPSS 1.3%CVE-2020-0893MEDIUMA cross-site-scripting (XSS) vulnerability exists when Microsoft SharePoint Server does not properly sanitize a specially crafted web requesEPSS 1.3%