Vulnerabilidades en microsoft

9331 resultados
Análisis Vexday

Microsoft apresenta 41 vulnerabilidades registradas, com 29 publicadas nos últimos 90 dias, indicando ritmo elevado de descobertas recentes. Oito vulnerabilidades críticas foram identificadas, predominantemente relacionadas a traversal de diretório (CWE-22), mas nenhuma está sob exploração ativa conhecida no momento. O volume recente de falhas requer atenção contínua em patching, especialmente considerando a superfície de ataque do ecossistema Microsoft.

CVE-2020-1396An elevation of privilege vulnerability exists when Windows improperly handles calls to Advanced Local Procedure Call (ALPC).An attacker whoEPSS 0.8%CVE-2020-1384An elevation of privilege vulnerability exists when the Windows Cryptography Next Generation (CNG) Key Isolation service improperly handles EPSS 0.8%CVE-2020-1414An elevation of privilege vulnerability exists when the Windows Runtime improperly handles objects in memory, aka 'Windows Runtime ElevationEPSS 0.8%CVE-2020-1390An elevation of privilege vulnerability exists in the way that the Windows Network Connections Service handles objects in memory, aka 'WindoEPSS 0.8%CVE-2023-36760HIGH3D Viewer Remote Code Execution VulnerabilityEPSS 0.8%CVE-2020-1413An elevation of privilege vulnerability exists when the Windows Runtime improperly handles objects in memory, aka 'Windows Runtime ElevationEPSS 0.8%CVE-2020-1387An elevation of privilege vulnerability exists in the way the Windows Push Notification Service handles objects in memory, aka 'Windows PushEPSS 0.8%CVE-2020-1415An elevation of privilege vulnerability exists when the Windows Runtime improperly handles objects in memory, aka 'Windows Runtime ElevationEPSS 0.8%CVE-2023-36404MEDIUMWindows Kernel Information Disclosure VulnerabilityEPSS 0.8%CVE-2025-26642HIGHMicrosoft Office Remote Code Execution VulnerabilityEPSS 0.8%CVE-2021-27086HIGHWindows Services and Controller App Elevation of Privilege VulnerabilityEPSS 0.8%CVE-2021-34457MEDIUMWindows Remote Access Connection Manager Information Disclosure VulnerabilityEPSS 0.8%CVE-2021-28435MEDIUMWindows Event Tracing Information Disclosure VulnerabilityEPSS 0.8%CVE-2021-33763MEDIUMWindows Remote Access Connection Manager Information Disclosure VulnerabilityEPSS 0.8%CVE-2021-31972MEDIUMEvent Tracing for Windows Information Disclosure VulnerabilityEPSS 0.8%CVE-2021-28318MEDIUMWindows GDI+ Information Disclosure VulnerabilityEPSS 0.8%CVE-2025-48802MEDIUMWindows SMB Server Spoofing VulnerabilityEPSS 0.8%CVE-2021-31960MEDIUMWindows Bind Filter Driver Information Disclosure VulnerabilityEPSS 0.8%CVE-2021-28441MEDIUMWindows Hyper-V Information Disclosure VulnerabilityEPSS 0.8%CVE-2020-1204An elevation of privilege vulnerability exists when Windows Mobile Device Management (MDM) Diagnostics improperly handles junctions, aka 'WiEPSS 0.8%