Vulnerabilidades en microsoft
9329 resultadosAnálisis Vexday
Microsoft apresenta 41 vulnerabilidades registradas, com 29 publicadas nos últimos 90 dias, indicando ritmo elevado de descobertas recentes. Oito vulnerabilidades críticas foram identificadas, predominantemente relacionadas a traversal de diretório (CWE-22), mas nenhuma está sob exploração ativa conhecida no momento. O volume recente de falhas requer atenção contínua em patching, especialmente considerando a superfície de ataque do ecossistema Microsoft.
CVE-2023-36020HIGHMicrosoft Dynamics 365 (on-premises) Cross-site Scripting VulnerabilityEPSS 1.0%CVE-2023-36393HIGHWindows User Interface Application Core Remote Code Execution VulnerabilityEPSS 1.0%CVE-2022-33635HIGHWindows GDI+ Remote Code Execution VulnerabilityEPSS 1.0%CVE-2023-21712HIGHWindows Point-to-Point Tunneling Protocol Remote Code Execution VulnerabilityEPSS 1.0%CVE-2024-26257HIGHMicrosoft Excel Remote Code Execution VulnerabilityEPSS 1.0%CVE-2019-1090—An elevation of privilege vulnerability exists in the way that the dnsrslvr.dll handles objects in memory, aka 'Windows dnsrlvr.dll ElevatioEPSS 1.0%CVE-2019-1067—An elevation of privilege vulnerability exists when the Windows kernel fails to properly handle objects in memory, aka 'Windows Kernel ElevaEPSS 1.0%CVE-2020-0779—An elevation of privilege vulnerability exists in the Windows Installer when MSI packages process symbolic links, aka 'Windows Installer EleEPSS 1.0%CVE-2025-59502HIGHRemote Procedure Call Denial of Service VulnerabilityEPSS 1.0%CVE-2019-0999—An elevation of privilege vulnerability exists when DirectX improperly handles objects in memory, aka 'DirectX Elevation of Privilege VulnerEPSS 1.0%CVE-2025-32722MEDIUMWindows Storage Port Driver Information Disclosure VulnerabilityEPSS 1.0%CVE-2024-30048HIGHDynamics 365 Customer Insights Spoofing VulnerabilityEPSS 1.0%CVE-2024-30047HIGHDynamics 365 Customer Insights Spoofing VulnerabilityEPSS 1.0%CVE-2018-8599—An elevation of privilege vulnerability exists when the Diagnostics Hub Standard Collector Service improperly impersonates certain file operEPSS 1.0%CVE-2020-16853HIGHOneDrive for Windows Elevation of Privilege VulnerabilityEPSS 1.0%CVE-2025-49681MEDIUMWindows Routing and Remote Access Service (RRAS) Information Disclosure VulnerabilityEPSS 1.0%CVE-2025-49671MEDIUMWindows Routing and Remote Access Service (RRAS) Information Disclosure VulnerabilityEPSS 1.0%CVE-2022-34723MEDIUMWindows DPAPI (Data Protection Application Programming Interface) Information Disclosure VulnerabilityEPSS 1.0%CVE-2024-49098MEDIUMWindows Wireless Wide Area Network Service (WwanSvc) Information Disclosure VulnerabilityEPSS 1.0%CVE-2024-49099MEDIUMWindows Wireless Wide Area Network Service (WwanSvc) Information Disclosure VulnerabilityEPSS 1.0%