Vulnerabilidades en microsoft
9326 resultadosAnálisis Vexday
Microsoft apresenta 41 vulnerabilidades registradas, com 29 publicadas nos últimos 90 dias, indicando ritmo elevado de descobertas recentes. Oito vulnerabilidades críticas foram identificadas, predominantemente relacionadas a traversal de diretório (CWE-22), mas nenhuma está sob exploração ativa conhecida no momento. O volume recente de falhas requer atenção contínua em patching, especialmente considerando a superfície de ataque do ecossistema Microsoft.
CVE-2020-1207—An elevation of privilege vulnerability exists in Windows when the Windows kernel-mode driver fails to properly handle objects in memory, akEPSS 1.2%CVE-2022-35796HIGHMicrosoft Edge (Chromium-based) Elevation of Privilege VulnerabilityEPSS 1.2%CVE-2026-20921HIGHWindows SMB Server Elevation of Privilege VulnerabilityEPSS 1.2%CVE-2025-49666HIGHWindows Server Setup and Boot Event Collection Remote Code Execution VulnerabilityEPSS 1.2%CVE-2020-17102MEDIUMWebP Image Extensions Information Disclosure VulnerabilityEPSS 1.2%CVE-2024-49128HIGHWindows Remote Desktop Services Remote Code Execution VulnerabilityEPSS 1.2%CVE-2024-49119HIGHWindows Remote Desktop Services Remote Code Execution VulnerabilityEPSS 1.2%CVE-2020-1475HIGHWindows Server Resource Management Service Elevation of Privilege VulnerabilityEPSS 1.2%CVE-2018-1008—An elevation of privilege vulnerability exists in Windows Adobe Type Manager Font Driver (ATMFD.dll) when it fails to properly handle objectEPSS 1.2%CVE-2022-30164HIGHKerberos AppContainer Security Feature Bypass VulnerabilityEPSS 1.2%CVE-2025-29828HIGHWindows Schannel Remote Code Execution VulnerabilityEPSS 1.2%CVE-2019-1382—An elevation of privilege vulnerability exists when ActiveX Installer service may allow access to files without proper authentication, aka 'EPSS 1.2%CVE-2019-0976—A tampering vulnerability exists in the NuGet Package Manager for Linux and Mac that could allow an authenticated attacker to modify contentEPSS 1.2%CVE-2023-21686HIGHMicrosoft WDAC OLE DB provider for SQL Server Remote Code Execution VulnerabilityEPSS 1.1%CVE-2019-0656—An elevation of privilege vulnerability exists when the Windows kernel fails to properly handle objects in memory, aka 'Windows Kernel ElevaEPSS 1.1%CVE-2024-43487MEDIUMWindows Mark of the Web Security Feature Bypass VulnerabilityEPSS 1.1%CVE-2025-21417HIGHWindows Telephony Service Remote Code Execution VulnerabilityEPSS 1.1%CVE-2025-9611HIGHMicrosoft Playwright MCP Server < 0.0.40 DNS Rebinding via Missing Origin Header ValidationEPSS 1.1%CVE-2023-21808HIGH.NET and Visual Studio Remote Code Execution VulnerabilityEPSS 1.1%CVE-2023-29337HIGHNuGet Client Remote Code Execution VulnerabilityEPSS 1.1%