Vulnerabilidades en microsoft
9326 resultadosAnálisis Vexday
Microsoft apresenta 41 vulnerabilidades registradas, com 29 publicadas nos últimos 90 dias, indicando ritmo elevado de descobertas recentes. Oito vulnerabilidades críticas foram identificadas, predominantemente relacionadas a traversal de diretório (CWE-22), mas nenhuma está sob exploração ativa conhecida no momento. O volume recente de falhas requer atenção contínua em patching, especialmente considerando a superfície de ataque do ecossistema Microsoft.
CVE-2023-36576MEDIUMWindows Kernel Information Disclosure VulnerabilityEPSS 1.0%CVE-2022-22026HIGHWindows Client Server Run-time Subsystem (CSRSS) Elevation of Privilege VulnerabilityEPSS 1.0%CVE-2025-21352MEDIUMInternet Connection Sharing (ICS) Denial of Service VulnerabilityEPSS 1.0%CVE-2025-21254MEDIUMInternet Connection Sharing (ICS) Denial of Service VulnerabilityEPSS 1.0%CVE-2022-24511MEDIUMMicrosoft Office Word Tampering VulnerabilityEPSS 1.0%CVE-2023-33142MEDIUMMicrosoft SharePoint Server Elevation of Privilege VulnerabilityEPSS 1.0%CVE-2020-16885HIGHWindows Storage VSP Driver Elevation of Privilege VulnerabilityEPSS 1.0%CVE-2020-0877—An elevation of privilege vulnerability exists in Windows when the Win32k component fails to properly handle objects in memory, aka 'Win32k EPSS 1.0%CVE-2024-30063MEDIUMWindows Distributed File System (DFS) Remote Code Execution VulnerabilityEPSS 1.0%CVE-2023-38139HIGHWindows Kernel Elevation of Privilege VulnerabilityEPSS 1.0%CVE-2019-1341—An elevation of privilege vulnerability exists when umpo.dll of the Power Service, improperly handles a Registry Restore Key function, aka 'EPSS 1.0%CVE-2025-64666HIGHMicrosoft Exchange Server Elevation of Privilege VulnerabilityEPSS 1.0%CVE-2024-49117HIGHWindows Hyper-V Remote Code Execution VulnerabilityEPSS 1.0%CVE-2022-21879MEDIUMWindows Kernel Elevation of Privilege VulnerabilityEPSS 1.0%CVE-2021-34468HIGHMicrosoft SharePoint Server Remote Code Execution VulnerabilityEPSS 1.0%CVE-2026-59862HIGHKiota: Code Generation Literal Injection in the Python GeneratorEPSS 1.0%CVE-2020-1418—An elevation of privilege vulnerability exists when the Windows Diagnostics Execution Service fails to properly sanitize input, leading to aEPSS 1.0%CVE-2020-0865—An elevation of privilege vulnerability exists when the Windows Work Folder Service improperly handles file operations, aka 'Windows Work FoEPSS 1.0%CVE-2020-0797—An elevation of privilege vulnerability exists when the Windows Work Folder Service improperly handles file operations, aka 'Windows Work FoEPSS 1.0%CVE-2025-21212MEDIUMInternet Connection Sharing (ICS) Denial of Service VulnerabilityEPSS 1.0%