Vulnerabilidades en microsoft
9325 resultadosAnálisis Vexday
Microsoft apresenta 41 vulnerabilidades registradas, com 29 publicadas nos últimos 90 dias, indicando ritmo elevado de descobertas recentes. Oito vulnerabilidades críticas foram identificadas, predominantemente relacionadas a traversal de diretório (CWE-22), mas nenhuma está sob exploração ativa conhecida no momento. O volume recente de falhas requer atenção contínua em patching, especialmente considerando a superfície de ataque do ecossistema Microsoft.
CVE-2024-28925HIGHSecure Boot Security Feature Bypass VulnerabilityEPSS 1.2%CVE-2022-29114MEDIUMWindows Print Spooler Information Disclosure VulnerabilityEPSS 1.2%CVE-2019-1339—An elevation of privilege vulnerability exists when Windows Error Reporting manager improperly handles hard links, aka 'Windows Error ReportEPSS 1.2%CVE-2022-30148MEDIUMWindows Desired State Configuration (DSC) Information Disclosure VulnerabilityEPSS 1.2%CVE-2021-1648HIGHMicrosoft splwow64 Elevation of Privilege VulnerabilityEPSS 1.2%CVE-2023-36804HIGHWindows GDI Elevation of Privilege VulnerabilityEPSS 1.2%CVE-2020-1455MEDIUMMicrosoft SQL Server Management Studio Denial of Service VulnerabilityEPSS 1.2%CVE-2022-21895HIGHWindows User Profile Service Elevation of Privilege VulnerabilityEPSS 1.2%CVE-2021-43242HIGHMicrosoft SharePoint Server Spoofing VulnerabilityEPSS 1.2%CVE-2022-35745HIGHWindows Secure Socket Tunneling Protocol (SSTP) Remote Code Execution VulnerabilityEPSS 1.2%CVE-2021-38639HIGHWin32k Elevation of Privilege VulnerabilityEPSS 1.2%CVE-2022-35753HIGHWindows Secure Socket Tunneling Protocol (SSTP) Remote Code Execution VulnerabilityEPSS 1.2%CVE-2022-35752HIGHWindows Secure Socket Tunneling Protocol (SSTP) Remote Code Execution VulnerabilityEPSS 1.2%CVE-2020-1358—An information disclosure vulnerability exists when the Windows Resource Policy component improperly handles memory.To exploit this vulnerabEPSS 1.2%CVE-2020-1361—An information disclosure vulnerability exists in the way that the WalletService handles memory.To exploit the vulnerability, an attacker woEPSS 1.2%CVE-2020-1420—An information disclosure vulnerability exists when Windows Error Reporting improperly handles file operations.To exploit this vulnerabilityEPSS 1.2%CVE-2024-43600HIGHMicrosoft Office Elevation of Privilege VulnerabilityEPSS 1.2%CVE-2021-31978MEDIUMMicrosoft Defender Denial of Service VulnerabilityEPSS 1.2%CVE-2020-1330—An information disclosure vulnerability exists when Windows Mobile Device Management (MDM) Diagnostics improperly handles junctions, aka 'WiEPSS 1.2%CVE-2020-1426—An information disclosure vulnerability exists when the Windows kernel improperly handles objects in memory, aka 'Windows Kernel InformationEPSS 1.2%