Vulnerabilidades en microsoft
9326 resultadosAnálisis Vexday
Microsoft apresenta 41 vulnerabilidades registradas, com 29 publicadas nos últimos 90 dias, indicando ritmo elevado de descobertas recentes. Oito vulnerabilidades críticas foram identificadas, predominantemente relacionadas a traversal de diretório (CWE-22), mas nenhuma está sob exploração ativa conhecida no momento. O volume recente de falhas requer atenção contínua em patching, especialmente considerando a superfície de ataque do ecossistema Microsoft.
CVE-2025-21404MEDIUMMicrosoft Edge (Chromium-based) Spoofing VulnerabilityEPSS 1.0%CVE-2022-34702HIGHWindows Secure Socket Tunneling Protocol (SSTP) Remote Code Execution VulnerabilityEPSS 1.0%CVE-2019-0727—An elevation of privilege vulnerability exists when the Diagnostics Hub Standard Collector or the Visual Studio Standard Collector allows fiEPSS 1.0%CVE-2025-59254HIGHMicrosoft DWM Core Library Elevation of Privilege VulnerabilityEPSS 1.0%CVE-2023-21695HIGHMicrosoft Protected Extensible Authentication Protocol (PEAP) Remote Code Execution VulnerabilityEPSS 1.0%CVE-2019-1272—An elevation of privilege vulnerability exists when Windows improperly handles calls to Advanced Local Procedure Call (ALPC).An attacker whoEPSS 1.0%CVE-2021-43237HIGHWindows Setup Elevation of Privilege VulnerabilityEPSS 1.0%CVE-2019-1413—A security feature bypass vulnerability exists when Microsoft Edge improperly handles extension requests and fails to request host permissioEPSS 1.0%CVE-2024-43601HIGHVisual Studio Code for Linux Remote Code Execution VulnerabilityEPSS 1.0%CVE-2026-26121HIGHAzure IOT Explorer Spoofing VulnerabilityEPSS 1.0%CVE-2019-1169HIGHWin32k Elevation of Privilege VulnerabilityEPSS 1.0%CVE-2019-1414—An elevation of privilege vulnerability exists in Visual Studio Code when it exposes a debug listener to users of a local computer, aka 'VisEPSS 1.0%CVE-2026-20854HIGHWindows Local Security Authority Subsystem Service (LSASS) Remote Code Execution VulnerabilityEPSS 1.0%CVE-2026-20922HIGHWindows NTFS Remote Code Execution VulnerabilityEPSS 1.0%CVE-2024-26181MEDIUMWindows Kernel Denial of Service VulnerabilityEPSS 1.0%CVE-2022-23266HIGHMicrosoft Defender for IoT Elevation of Privilege VulnerabilityEPSS 1.0%CVE-2025-55243HIGHMicrosoft OfficePlus Spoofing VulnerabilityEPSS 1.0%CVE-2019-0942—An elevation of privilege vulnerability exists in the Unified Write Filter (UWF) feature for Windows 10 when it improperly restricts access EPSS 1.0%CVE-2020-0798—An elevation of privilege vulnerability exists in the Windows Installer when the Windows Installer fails to properly sanitize input leading EPSS 1.0%CVE-2024-43477HIGHMicrosoft Entra ID Elevation of Privilege VulnerabilityEPSS 1.0%