Vulnerabilidades en microsoft
9325 resultadosAnálisis Vexday
Microsoft apresenta 41 vulnerabilidades registradas, com 29 publicadas nos últimos 90 dias, indicando ritmo elevado de descobertas recentes. Oito vulnerabilidades críticas foram identificadas, predominantemente relacionadas a traversal de diretório (CWE-22), mas nenhuma está sob exploração ativa conhecida no momento. O volume recente de falhas requer atenção contínua em patching, especialmente considerando a superfície de ataque do ecossistema Microsoft.
CVE-2018-8117—A security feature bypass vulnerability exists in the Microsoft Wireless Keyboard 850 which could allow an attacker to reuse an AES encryptiEPSS 1.2%CVE-2020-1367—An information disclosure vulnerability exists when the Windows kernel improperly handles objects in memory, aka 'Windows Kernel InformationEPSS 1.2%CVE-2020-1391—An information disclosure vulnerability exists when the Windows Agent Activation Runtime (AarSvc) fails to properly handle objects in memoryEPSS 1.2%CVE-2020-1072—An information disclosure vulnerability exists when the Windows kernel improperly handles objects in memory, aka 'Windows Kernel InformationEPSS 1.2%CVE-2020-1330—An information disclosure vulnerability exists when Windows Mobile Device Management (MDM) Diagnostics improperly handles junctions, aka 'WiEPSS 1.2%CVE-2020-1386—An information vulnerability exists when Windows Connected User Experiences and Telemetry Service improperly discloses file information, akaEPSS 1.2%CVE-2020-1389—An information disclosure vulnerability exists when the Windows kernel fails to properly initialize a memory address, aka 'Windows Kernel InEPSS 1.2%CVE-2020-1426—An information disclosure vulnerability exists when the Windows kernel improperly handles objects in memory, aka 'Windows Kernel InformationEPSS 1.2%CVE-2023-35350HIGHWindows Active Directory Certificate Services (AD CS) Remote Code Execution VulnerabilityEPSS 1.2%CVE-2019-1378—An elevation of privilege vulnerability exists in Windows 10 Update Assistant in the way it handles permissions.A locally authenticated attaEPSS 1.2%CVE-2019-1303—An elevation of privilege vulnerability exists when the Windows AppX Deployment Server improperly handles junctions.To exploit this vulnerabEPSS 1.2%CVE-2024-49048HIGHTorchGeo Remote Code Execution VulnerabilityEPSS 1.2%CVE-2020-1038MEDIUMWindows Routing Utilities Denial of ServiceEPSS 1.2%CVE-2023-38169HIGHMicrosoft SQL OLE DB Remote Code Execution VulnerabilityEPSS 1.2%CVE-2025-26671HIGHWindows Remote Desktop Services Remote Code Execution VulnerabilityEPSS 1.2%CVE-2023-21720MEDIUMMicrosoft Edge (Chromium-based) Tampering VulnerabilityEPSS 1.2%CVE-2025-21177HIGHMicrosoft Dynamics 365 Sales Elevation of Privilege VulnerabilityEPSS 1.2%CVE-2021-36975HIGHWin32k Elevation of Privilege VulnerabilityEPSS 1.2%CVE-2018-8202—An elevation of privilege vulnerability exists in .NET Framework which could allow an attacker to elevate their privilege level, aka ".NET FEPSS 1.2%CVE-2025-21173HIGH.NET Elevation of Privilege VulnerabilityEPSS 1.2%