« Volver al listado

Microsoft

Microsoft Defender FOR Endpoint: vulnerabilidades y CVE

Microsoft Defender FOR Endpoint tiene 16 vulnerabilidades publicadas, 7 de ellas en los últimos 12 meses. 0 son críticas y 0 figuran en el catálogo de explotación activa de CISA.

CVE16
Últimos 12 meses7
Críticas0
Explotadas activamente0

Todas las vulnerabilidades en el catálogo →⭐ Seguir esta tecnología

Últimas vulnerabilidades

CVESeveridadEPSSExplotación activaPublicadaDescripción
CVE-2026-54123Media (5.5)0.48%—11 ago 2026
Exposure of sensitive information to an unauthorized actor in Microsoft Defender for Endpoint allows an authorized attacker to disclose information locally.
CVE-2026-56178Alta (7)0.23%—14 jul 2026
Time-of-check time-of-use (toctou) race condition in Microsoft Defender for Endpoint allows an authorized attacker to elevate privileges locally.
CVE-2026-50658Alta (7)0.20%—14 jul 2026
Time-of-check time-of-use (toctou) race condition in Microsoft Defender allows an authorized attacker to elevate privileges locally.
CVE-2026-50657Media (5.5)0.40%—14 jul 2026
Exposure of private personal information to an unauthorized actor in Microsoft Defender allows an authorized attacker to disclose information locally.
CVE-2026-45647Alta (7)0.23%—9 jun 2026
Time-of-check time-of-use (toctou) race condition in Microsoft Defender for Endpoint allows an authorized attacker to elevate privileges locally.
CVE-2026-21537Alta (8.8)0.53%—10 feb 2026
Improper control of generation of code ('code injection') in Microsoft Defender for Linux allows an unauthorized attacker to execute code over an adjacent network.
CVE-2025-59497Media (4.7)0.21%—14 oct 2025
Time-of-check time-of-use (toctou) race condition in Microsoft Defender for Linux allows an authorized attacker to deny service locally.
CVE-2025-47161Alta (7.8)0.80%—15 may 2025
Improper access control in Microsoft Defender for Endpoint allows an authorized attacker to elevate privileges locally.
CVE-2025-26684Media (6.7)0.42%—13 may 2025
External control of file name or path in Microsoft Defender for Endpoint allows an authorized attacker to elevate privileges locally.
CVE-2024-49071Media (6.5)1.1%—12 dic 2024
Improper authorization of an index that contains sensitive information from a Global Files search in Windows Defender allows an authorized attacker to disclose information over a network.
CVE-2024-49057Alta (8.1)1.7%—12 dic 2024
Microsoft Defender for Endpoint on Android Spoofing Vulnerability
CVE-2024-43614Media (5.5)0.65%—8 oct 2024
Relative path traversal in Microsoft Defender for Endpoint allows an authorized attacker to perform spoofing locally.
CVE-2024-21315Alta (7.8)0.64%—13 feb 2024
Microsoft Defender for Endpoint Protection Elevation of Privilege Vulnerability
CVE-2022-35828Alta (7.8)0.53%—13 sept 2022
Microsoft Defender for Endpoint for Mac Elevation of Privilege Vulnerability
CVE-2022-33637Media (6.5)1.7%—12 jul 2022
Microsoft Defender for Endpoint Tampering Vulnerability
CVE-2022-23278Media (5.9)1.9%—9 mar 2022
Microsoft Defender for Endpoint Spoofing Vulnerability

Otros productos de Microsoft