Vulnerabilidades en microsoft
9326 resultadosAnálisis Vexday
Microsoft apresenta 41 vulnerabilidades registradas, com 29 publicadas nos últimos 90 dias, indicando ritmo elevado de descobertas recentes. Oito vulnerabilidades críticas foram identificadas, predominantemente relacionadas a traversal de diretório (CWE-22), mas nenhuma está sob exploração ativa conhecida no momento. O volume recente de falhas requer atenção contínua em patching, especialmente considerando a superfície de ataque do ecossistema Microsoft.
CVE-2026-23674HIGHMapUrlToZone Security Feature Bypass VulnerabilityEPSS 1.2%CVE-2025-24996MEDIUMNTLM Hash Disclosure Spoofing VulnerabilityEPSS 1.2%CVE-2023-29345MEDIUMMicrosoft Edge (Chromium-based) Security Feature Bypass VulnerabilityEPSS 1.2%CVE-2023-35387HIGHWindows Bluetooth A2DP driver Elevation of Privilege VulnerabilityEPSS 1.2%CVE-2023-41764MEDIUMMicrosoft Office Spoofing VulnerabilityEPSS 1.2%CVE-2023-21799HIGHMicrosoft WDAC OLE DB provider for SQL Server Remote Code Execution VulnerabilityEPSS 1.2%CVE-2023-21797HIGHMicrosoft ODBC Driver Remote Code Execution VulnerabilityEPSS 1.2%CVE-2023-21798HIGHMicrosoft ODBC Driver Remote Code Execution VulnerabilityEPSS 1.2%CVE-2018-8119—A spoofing vulnerability exists when the Azure IoT Device Provisioning AMQP Transport library improperly validates certificates over the AMQEPSS 1.2%CVE-2023-38186HIGHWindows Mobile Device Management Elevation of Privilege VulnerabilityEPSS 1.2%CVE-2024-20673HIGHMicrosoft Office Remote Code Execution VulnerabilityEPSS 1.2%CVE-2022-30194HIGHWindows WebBrowser Control Remote Code Execution VulnerabilityEPSS 1.2%CVE-2026-35424HIGHInternet Key Exchange (IKE) Protocol Denial of Service VulnerabilityEPSS 1.2%CVE-2024-30100HIGHMicrosoft SharePoint Server Remote Code Execution VulnerabilityEPSS 1.2%CVE-2021-42323LOWAzure RTOS Information Disclosure VulnerabilityEPSS 1.2%CVE-2023-35619MEDIUMMicrosoft Outlook for Mac Spoofing VulnerabilityEPSS 1.2%CVE-2025-21294HIGHMicrosoft Digest Authentication Remote Code Execution VulnerabilityEPSS 1.2%CVE-2018-8415—A tampering vulnerability exists in PowerShell that could allow an attacker to execute unlogged code, aka "Microsoft PowerShell Tampering VuEPSS 1.2%CVE-2022-22035HIGHWindows Point-to-Point Tunneling Protocol Remote Code Execution VulnerabilityEPSS 1.2%CVE-2023-24897HIGH.NET, .NET Framework, and Visual Studio Remote Code Execution VulnerabilityEPSS 1.2%