Vulnerabilidades en microsoft
9326 resultadosAnálisis Vexday
Microsoft apresenta 41 vulnerabilidades registradas, com 29 publicadas nos últimos 90 dias, indicando ritmo elevado de descobertas recentes. Oito vulnerabilidades críticas foram identificadas, predominantemente relacionadas a traversal de diretório (CWE-22), mas nenhuma está sob exploração ativa conhecida no momento. O volume recente de falhas requer atenção contínua em patching, especialmente considerando a superfície de ataque do ecossistema Microsoft.
CVE-2025-29792HIGHMicrosoft Office Elevation of Privilege VulnerabilityEPSS 1.1%CVE-2022-41057HIGHWindows HTTP.sys Elevation of Privilege VulnerabilityEPSS 1.1%CVE-2018-8566—A security feature bypass vulnerability exists when Windows improperly suspends BitLocker Device Encryption, aka "BitLocker Security FeatureEPSS 1.1%CVE-2024-49090HIGHWindows Common Log File System Driver Elevation of Privilege VulnerabilityEPSS 1.1%CVE-2024-49065MEDIUMMicrosoft Office Remote Code Execution VulnerabilityEPSS 1.1%CVE-2021-26892MEDIUMWindows Extensible Firmware Interface Security Feature Bypass VulnerabilityEPSS 1.1%CVE-2020-17092HIGHWindows Network Connections Service Elevation of Privilege VulnerabilityEPSS 1.1%CVE-2024-26240HIGHSecure Boot Security Feature Bypass VulnerabilityEPSS 1.1%CVE-2025-49735HIGHWindows KDC Proxy Service (KPSSVC) Remote Code Execution VulnerabilityEPSS 1.1%CVE-2026-20967HIGHSystem Center Operations Manager (SCOM) Elevation of Privilege VulnerabilityEPSS 1.1%CVE-2025-29969HIGHMS-EVEN RPC Remote Code Execution VulnerabilityEPSS 1.1%CVE-2021-26886MEDIUMUser Profile Service Denial of Service VulnerabilityEPSS 1.1%CVE-2018-1036—An elevation of privilege vulnerability exists when NTFS improperly checks access, aka "NTFS Elevation of Privilege Vulnerability." This affEPSS 1.1%CVE-2024-43566HIGHMicrosoft Edge (Chromium-based) Remote Code Execution VulnerabilityEPSS 1.1%CVE-2022-21846CRITICALMicrosoft Exchange Server Remote Code Execution VulnerabilityEPSS 1.1%CVE-2026-56186HIGHWindows Secure Channel Information Disclosure VulnerabilityEPSS 1.1%CVE-2025-47966CRITICALPower Automate Elevation of Privilege VulnerabilityEPSS 1.1%CVE-2025-21393MEDIUMMicrosoft SharePoint Server Spoofing VulnerabilityEPSS 1.1%CVE-2022-21897HIGHWindows Common Log File System Driver Elevation of Privilege VulnerabilityEPSS 1.1%CVE-2026-32071HIGHWindows Local Security Authority Subsystem Service (LSASS) Denial of Service VulnerabilityEPSS 1.1%