Vulnerabilidades en microsoft
9331 resultadosAnálisis Vexday
Microsoft apresenta 41 vulnerabilidades registradas, com 29 publicadas nos últimos 90 dias, indicando ritmo elevado de descobertas recentes. Oito vulnerabilidades críticas foram identificadas, predominantemente relacionadas a traversal de diretório (CWE-22), mas nenhuma está sob exploração ativa conhecida no momento. O volume recente de falhas requer atenção contínua em patching, especialmente considerando a superfície de ataque do ecossistema Microsoft.
CVE-2020-0935—An elevation of privilege vulnerability exists when the OneDrive for Windows Desktop application improperly handles symbolic links, aka 'OneEPSS 0.8%CVE-2019-1445—A spoofing vulnerability exists when Office Online does not validate origin in cross-origin communications handlers correctly, aka 'MicrosofEPSS 0.8%CVE-2019-1447—A spoofing vulnerability exists when Office Online does not validate origin in cross-origin communications handlers correctly, aka 'MicrosofEPSS 0.8%CVE-2023-38161HIGHWindows GDI Elevation of Privilege VulnerabilityEPSS 0.8%CVE-2020-17007HIGHWindows Error Reporting Elevation of Privilege VulnerabilityEPSS 0.8%CVE-2024-38166HIGHMicrosoft Dynamics 365 Cross-site Scripting VulnerabilityEPSS 0.8%CVE-2026-20931HIGHWindows Telephony Service Elevation of Privilege VulnerabilityEPSS 0.8%CVE-2023-32051HIGHRaw Image Extension Remote Code Execution VulnerabilityEPSS 0.8%CVE-2021-43246MEDIUMWindows Hyper-V Denial of Service VulnerabilityEPSS 0.8%CVE-2020-0630—An elevation of privilege vulnerability exists in the way that the Windows Search Indexer handles objects in memory, aka 'Windows Search IndEPSS 0.7%CVE-2020-0632—An elevation of privilege vulnerability exists in the way that the Windows Search Indexer handles objects in memory, aka 'Windows Search IndEPSS 0.7%CVE-2020-0620—An elevation of privilege vulnerability exists when Microsoft Cryptographic Services improperly handles files, aka 'Microsoft Cryptographic EPSS 0.7%CVE-2020-0629—An elevation of privilege vulnerability exists in the way that the Windows Search Indexer handles objects in memory, aka 'Windows Search IndEPSS 0.7%CVE-2023-23420HIGHWindows Kernel Elevation of Privilege VulnerabilityEPSS 0.7%CVE-2020-0626—An elevation of privilege vulnerability exists in the way that the Windows Search Indexer handles objects in memory, aka 'Windows Search IndEPSS 0.7%CVE-2025-49669HIGHWindows Routing and Remote Access Service (RRAS) Remote Code Execution VulnerabilityEPSS 0.7%CVE-2025-49753HIGHWindows Routing and Remote Access Service (RRAS) Remote Code Execution VulnerabilityEPSS 0.7%CVE-2025-49668HIGHWindows Routing and Remote Access Service (RRAS) Remote Code Execution VulnerabilityEPSS 0.7%CVE-2021-26875HIGHWindows Win32k Elevation of Privilege VulnerabilityEPSS 0.7%CVE-2025-49674HIGHWindows Routing and Remote Access Service (RRAS) Remote Code Execution VulnerabilityEPSS 0.7%