Vulnerabilidades en microsoft

9326 resultados
Análisis Vexday

Microsoft apresenta 41 vulnerabilidades registradas, com 29 publicadas nos últimos 90 dias, indicando ritmo elevado de descobertas recentes. Oito vulnerabilidades críticas foram identificadas, predominantemente relacionadas a traversal de diretório (CWE-22), mas nenhuma está sob exploração ativa conhecida no momento. O volume recente de falhas requer atenção contínua em patching, especialmente considerando a superfície de ataque do ecossistema Microsoft.

CVE-2019-1382An elevation of privilege vulnerability exists when ActiveX Installer service may allow access to files without proper authentication, aka 'EPSS 1.2%CVE-2025-29828HIGHWindows Schannel Remote Code Execution VulnerabilityEPSS 1.2%CVE-2023-21686HIGHMicrosoft WDAC OLE DB provider for SQL Server Remote Code Execution VulnerabilityEPSS 1.1%CVE-2019-0656An elevation of privilege vulnerability exists when the Windows kernel fails to properly handle objects in memory, aka 'Windows Kernel ElevaEPSS 1.1%CVE-2024-43487MEDIUMWindows Mark of the Web Security Feature Bypass VulnerabilityEPSS 1.1%CVE-2024-43488HIGHVisual Studio Code extension for Arduino Remote Code Execution VulnerabilityEPSS 1.1%CVE-2023-21808HIGH.NET and Visual Studio Remote Code Execution VulnerabilityEPSS 1.1%CVE-2023-29337HIGHNuGet Client Remote Code Execution VulnerabilityEPSS 1.1%CVE-2025-9611HIGHMicrosoft Playwright MCP Server < 0.0.40 DNS Rebinding via Missing Origin Header ValidationEPSS 1.1%CVE-2025-21417HIGHWindows Telephony Service Remote Code Execution VulnerabilityEPSS 1.1%CVE-2024-38053HIGHWindows Layer-2 Bridge Network Driver Remote Code Execution VulnerabilityEPSS 1.1%CVE-2025-27744HIGHMicrosoft Office Elevation of Privilege VulnerabilityEPSS 1.1%CVE-2025-30391HIGHMicrosoft Dynamics Information Disclosure VulnerabilityEPSS 1.1%CVE-2025-50156MEDIUMWindows Routing and Remote Access Service (RRAS) Information Disclosure VulnerabilityEPSS 1.1%CVE-2022-41061HIGHMicrosoft Word Remote Code Execution VulnerabilityEPSS 1.1%CVE-2024-21395HIGHMicrosoft Dynamics 365 (on-premises) Cross-site Scripting VulnerabilityEPSS 1.1%CVE-2026-20929HIGHWindows HTTP.sys Elevation of Privilege VulnerabilityEPSS 1.1%CVE-2024-30093HIGHWindows Storage Elevation of Privilege VulnerabilityEPSS 1.1%CVE-2021-31187HIGHWindows WalletService Elevation of Privilege VulnerabilityEPSS 1.1%CVE-2023-21560MEDIUMWindows Boot Manager Security Feature Bypass VulnerabilityEPSS 1.1%