Vulnerabilidades en microsoft

9326 resultados
Análisis Vexday

Microsoft apresenta 41 vulnerabilidades registradas, com 29 publicadas nos últimos 90 dias, indicando ritmo elevado de descobertas recentes. Oito vulnerabilidades críticas foram identificadas, predominantemente relacionadas a traversal de diretório (CWE-22), mas nenhuma está sob exploração ativa conhecida no momento. O volume recente de falhas requer atenção contínua em patching, especialmente considerando a superfície de ataque do ecossistema Microsoft.

CVE-2020-1548HIGHWindows WaasMedic Service Information Disclosure VulnerabilityEPSS 1.2%CVE-2019-1267An elevation of privilege vulnerability exists in Microsoft Compatibility Appraiser where a configuration file, with local privileges, is vuEPSS 1.2%CVE-2024-20692MEDIUMMicrosoft Local Security Authority Subsystem Service Information Disclosure VulnerabilityEPSS 1.2%CVE-2022-34704MEDIUMWindows Defender Credential Guard Information Disclosure VulnerabilityEPSS 1.2%CVE-2019-1082An elevation of privilege vulnerability exists in Microsoft Windows where a certain DLL, with Local Service privilege, is vulnerable to raceEPSS 1.2%CVE-2018-8484An elevation of privilege vulnerability exists when the DirectX Graphics Kernel (DXGKRNL) driver improperly handles objects in memory, aka "EPSS 1.2%CVE-2025-33064HIGHWindows Routing and Remote Access Service (RRAS) Remote Code Execution VulnerabilityEPSS 1.2%CVE-2025-53728MEDIUMMicrosoft Dynamics 365 (On-Premises) Information Disclosure VulnerabilityEPSS 1.2%CVE-2026-50328HIGHWindows Server Update Service (WSUS) Tampering VulnerabilityEPSS 1.2%CVE-2024-30074HIGHWindows Link Layer Topology Discovery Protocol Remote Code Execution VulnerabilityEPSS 1.2%CVE-2019-0733A security feature bypass vulnerability exists in Windows Defender Application Control (WDAC) which could allow an attacker to bypass WDAC eEPSS 1.2%CVE-2021-1724MEDIUMMicrosoft Dynamics Business Central Cross-site Scripting VulnerabilityEPSS 1.2%CVE-2018-8329An Elevation of Privilege vulnerability exists in Windows Subsystem for Linux when it fails to properly handle objects in memory, aka "LinuxEPSS 1.2%CVE-2023-33130HIGHMicrosoft SharePoint Server Spoofing VulnerabilityEPSS 1.2%CVE-2024-43613HIGHAzure Database for PostgreSQL Flexible Server Extension Elevation of Privilege VulnerabilityEPSS 1.2%CVE-2024-49042HIGHAzure Database for PostgreSQL Flexible Server Extension Elevation of Privilege VulnerabilityEPSS 1.2%CVE-2026-50652HIGHAzure Active Directory Denial of Service VulnerabilityEPSS 1.2%CVE-2023-29335HIGHMicrosoft Word Security Feature Bypass VulnerabilityEPSS 1.2%CVE-2024-21325HIGHMicrosoft Printer Metadata Troubleshooter Tool Remote Code Execution VulnerabilityEPSS 1.2%CVE-2024-21376CRITICALMicrosoft Azure Kubernetes Service Confidential Container Remote Code Execution VulnerabilityEPSS 1.2%