Vulnerabilidades en microsoft

9325 resultados
Análisis Vexday

Microsoft apresenta 41 vulnerabilidades registradas, com 29 publicadas nos últimos 90 dias, indicando ritmo elevado de descobertas recentes. Oito vulnerabilidades críticas foram identificadas, predominantemente relacionadas a traversal de diretório (CWE-22), mas nenhuma está sob exploração ativa conhecida no momento. O volume recente de falhas requer atenção contínua em patching, especialmente considerando a superfície de ataque do ecossistema Microsoft.

CVE-2018-8117A security feature bypass vulnerability exists in the Microsoft Wireless Keyboard 850 which could allow an attacker to reuse an AES encryptiEPSS 1.2%CVE-2020-1367An information disclosure vulnerability exists when the Windows kernel improperly handles objects in memory, aka 'Windows Kernel InformationEPSS 1.2%CVE-2020-1391An information disclosure vulnerability exists when the Windows Agent Activation Runtime (AarSvc) fails to properly handle objects in memoryEPSS 1.2%CVE-2020-1072An information disclosure vulnerability exists when the Windows kernel improperly handles objects in memory, aka 'Windows Kernel InformationEPSS 1.2%CVE-2020-1330An information disclosure vulnerability exists when Windows Mobile Device Management (MDM) Diagnostics improperly handles junctions, aka 'WiEPSS 1.2%CVE-2020-1386An information vulnerability exists when Windows Connected User Experiences and Telemetry Service improperly discloses file information, akaEPSS 1.2%CVE-2020-1389An information disclosure vulnerability exists when the Windows kernel fails to properly initialize a memory address, aka 'Windows Kernel InEPSS 1.2%CVE-2020-1426An information disclosure vulnerability exists when the Windows kernel improperly handles objects in memory, aka 'Windows Kernel InformationEPSS 1.2%CVE-2023-35350HIGHWindows Active Directory Certificate Services (AD CS) Remote Code Execution VulnerabilityEPSS 1.2%CVE-2019-1378An elevation of privilege vulnerability exists in Windows 10 Update Assistant in the way it handles permissions.A locally authenticated attaEPSS 1.2%CVE-2019-1303An elevation of privilege vulnerability exists when the Windows AppX Deployment Server improperly handles junctions.To exploit this vulnerabEPSS 1.2%CVE-2024-49048HIGHTorchGeo Remote Code Execution VulnerabilityEPSS 1.2%CVE-2020-1038MEDIUMWindows Routing Utilities Denial of ServiceEPSS 1.2%CVE-2023-38169HIGHMicrosoft SQL OLE DB Remote Code Execution VulnerabilityEPSS 1.2%CVE-2025-26671HIGHWindows Remote Desktop Services Remote Code Execution VulnerabilityEPSS 1.2%CVE-2023-21720MEDIUMMicrosoft Edge (Chromium-based) Tampering VulnerabilityEPSS 1.2%CVE-2025-21177HIGHMicrosoft Dynamics 365 Sales Elevation of Privilege VulnerabilityEPSS 1.2%CVE-2021-36975HIGHWin32k Elevation of Privilege VulnerabilityEPSS 1.2%CVE-2018-8202An elevation of privilege vulnerability exists in .NET Framework which could allow an attacker to elevate their privilege level, aka ".NET FEPSS 1.2%CVE-2025-21173HIGH.NET Elevation of Privilege VulnerabilityEPSS 1.2%