« Volver al listado

Microsoft

Microsoft Defender FOR Endpoint: vulnerabilidades y CVE

Microsoft Defender FOR Endpoint tiene 16 vulnerabilidades publicadas, 7 de ellas en los últimos 12 meses. 0 son críticas y 0 figuran en el catálogo de explotación activa de CISA.

CVE16
Últimos 12 meses7
Críticas0
Explotadas activamente0

Todas las vulnerabilidades en el catálogo →⭐ Seguir esta tecnología

Últimas vulnerabilidades

CVESeveridadEPSSExplotación activaPublicadaDescripción
CVE-2026-54123Media (5.5)0.48%—11 ago 2026
Exposure of sensitive information to an unauthorized actor in Microsoft Defender for Endpoint allows an authorized attacker to disclose information locally.
CVE-2026-56178Alta (7)0.23%—14 jul 2026
Time-of-check time-of-use (toctou) race condition in Microsoft Defender for Endpoint allows an authorized attacker to elevate privileges locally.
CVE-2026-50658Alta (7)0.20%—14 jul 2026
Time-of-check time-of-use (toctou) race condition in Microsoft Defender allows an authorized attacker to elevate privileges locally.
CVE-2026-50657Media (5.5)0.40%—14 jul 2026
Exposure of private personal information to an unauthorized actor in Microsoft Defender allows an authorized attacker to disclose information locally.
CVE-2026-45647Alta (7)0.23%—9 jun 2026
Time-of-check time-of-use (toctou) race condition in Microsoft Defender for Endpoint allows an authorized attacker to elevate privileges locally.
CVE-2026-21537Alta (8.8)0.53%—10 feb 2026
Improper control of generation of code ('code injection') in Microsoft Defender for Linux allows an unauthorized attacker to execute code over an adjacent network.
CVE-2025-59497Media (4.7)0.21%—14 oct 2025
Time-of-check time-of-use (toctou) race condition in Microsoft Defender for Linux allows an authorized attacker to deny service locally.
CVE-2025-47161Alta (7.8)0.80%—15 may 2025
Improper access control in Microsoft Defender for Endpoint allows an authorized attacker to elevate privileges locally.
CVE-2025-26684Media (6.7)0.42%—13 may 2025
External control of file name or path in Microsoft Defender for Endpoint allows an authorized attacker to elevate privileges locally.
CVE-2024-49071Media (6.5)1.1%—12 dic 2024
Improper authorization of an index that contains sensitive information from a Global Files search in Windows Defender allows an authorized attacker to disclose information over a network.
CVE-2024-49057Alta (8.1)1.7%—12 dic 2024
Microsoft Defender for Endpoint on Android Spoofing Vulnerability
CVE-2024-43614Media (5.5)0.65%—8 oct 2024
Relative path traversal in Microsoft Defender for Endpoint allows an authorized attacker to perform spoofing locally.
CVE-2024-21315Alta (7.8)0.64%—13 feb 2024
Microsoft Defender for Endpoint Protection Elevation of Privilege Vulnerability
CVE-2022-35828Alta (7.8)0.53%—13 sept 2022
Microsoft Defender for Endpoint for Mac Elevation of Privilege Vulnerability
CVE-2022-33637Media (6.5)1.7%—12 jul 2022
Microsoft Defender for Endpoint Tampering Vulnerability
CVE-2022-23278Media (5.9)1.9%—9 mar 2022
Microsoft Defender for Endpoint Spoofing Vulnerability

🎯 Cómo se explota (técnicas ATT&CK)

  1. T1068 Exploitation for Privilege Escalation4
  2. T1548 Abuse Elevation Control Mechanism4
  3. T1059 Command and Scripting Interpreter1
  4. T1203 Exploitation for Client Execution1
  5. T1210 Exploitation of Remote Services1
  6. T1578 Modify Cloud Compute Infrastructure1

Número de CVE de esta tecnología asignadas a cada técnica de explotación o de impacto principal.

📰 Noticias relacionadas

Otros productos de Microsoft