Home/Product/microsoft windows server 2012
Product

microsoft windows server 2012

500 known vulnerabilities across versions
Vulnerabilities are listed by affected version. Select any CVE for the full briefing and its intelligence graph.
CVE-2026-42825
all versions
Use after free in Windows Telephony Service allows an authorized attacker to elevate privileges locally.
7.0HIGH
CVE-2026-41095
all versions
Use after free in Data Deduplication allows an authorized attacker to elevate privileges locally.
7.8HIGH
CVE-2026-41089
all versions
Stack-based buffer overflow in Windows Netlogon allows an unauthorized attacker to execute code over a network.
9.8CRITICAL
CVE-2026-40414
all versions
Windows TCP/IP Denial of Service Vulnerability
7.4HIGH
CVE-2026-40413
all versions
Windows TCP/IP Denial of Service Vulnerability
7.4HIGH
CVE-2026-40410
all versions
Use after free in Windows SMB Client allows an authorized attacker to elevate privileges locally.
7.0HIGH
CVE-2026-40408
all versions
Use after free in Windows Kernel-Mode Drivers allows an authorized attacker to elevate privileges locally.
7.8HIGH
CVE-2026-40407
all versions
Heap-based buffer overflow in Windows Common Log File System Driver allows an authorized attacker to elevate privileges locally.
7.8HIGH
CVE-2026-40406
all versions
Use after free in Windows TCP/IP allows an unauthorized attacker to disclose information over a network.
7.5HIGH
CVE-2026-40403
all versions
Heap-based buffer overflow in Windows Win32K - GRFX allows an authorized attacker to execute code locally.
8.8HIGH
CVE-2026-40401
all versions
Windows TCP/IP Denial of Service Vulnerability
7.1HIGH
CVE-2026-40398
all versions
Heap-based buffer overflow in Windows Remote Desktop allows an authorized attacker to elevate privileges locally.
7.8HIGH
CVE-2026-40397
all versions
Heap-based buffer overflow in Windows Common Log File System Driver allows an authorized attacker to elevate privileges locally.
7.8HIGH
CVE-2026-40382
all versions
Use after free in Windows Telephony Service allows an authorized attacker to elevate privileges locally.
7.8HIGH
CVE-2026-40380
all versions
Heap-based buffer overflow in Volume Manager Extension Driver allows an authorized attacker to execute code with a physical attack
6.2MEDIUM
CVE-2026-40377
all versions
Heap-based buffer overflow in Windows Cryptographic Services allows an authorized attacker to elevate privileges locally.
7.8HIGH
CVE-2026-35424
all versions
Missing release of memory after effective lifetime in Windows Internet Key Exchange (IKE) Protocol allows an unauthorized attacker
7.5HIGH
CVE-2026-35423
all versions
Out-of-bounds read in Telnet Client allows an unauthorized attacker to disclose information over a network.
5.4MEDIUM
CVE-2026-35422
all versions
Authentication bypass using an alternate path or channel in Windows TCP/IP allows an authorized attacker to bypass a security feat
6.5MEDIUM
CVE-2026-35421
all versions
Heap-based buffer overflow in Windows GDI allows an unauthorized attacker to execute code locally.
7.8HIGH
CVE-2026-35420
all versions
Heap-based buffer overflow in Windows Kernel allows an authorized attacker to elevate privileges locally.
7.8HIGH
CVE-2026-35416
all versions
Access of resource using incompatible type ('type confusion') in Windows Ancillary Function Driver for WinSock allows an authorize
7.0HIGH
CVE-2026-35415
all versions
Integer overflow or wraparound in Windows Storage Spaces Controller allows an authorized attacker to elevate privileges locally.
7.8HIGH
CVE-2026-34351
all versions
Concurrent execution using shared resource with improper synchronization ('race condition') in Windows TCP/IP allows an authorized
7.8HIGH
CVE-2026-34347
all versions
Use after free in Windows Win32K - GRFX allows an authorized attacker to elevate privileges locally.
7.0HIGH
CVE-2026-34344
all versions
Access of resource using incompatible type ('type confusion') in Windows Ancillary Function Driver for WinSock allows an authorize
7.8HIGH
CVE-2026-34343
all versions
Heap-based buffer overflow in Windows Application Identity (AppID) Subsystem allows an authorized attacker to elevate privileges l
7.8HIGH
CVE-2026-34342
all versions
Concurrent execution using shared resource with improper synchronization ('race condition') in Windows Print Spooler Components al
7.0HIGH
CVE-2026-34341
all versions
Double free in Windows Link-Layer Discovery Protocol (LLDP) allows an authorized attacker to elevate privileges locally.
7.0HIGH
CVE-2026-34338
all versions
Use after free in Windows Telephony Service allows an authorized attacker to elevate privileges locally.
7.8HIGH
CVE-2026-34334
all versions
Concurrent execution using shared resource with improper synchronization ('race condition') in Windows TCP/IP allows an authorized
7.8HIGH
CVE-2026-34333
all versions
Use after free in Windows Win32K - GRFX allows an authorized attacker to elevate privileges locally.
7.8HIGH
CVE-2026-34331
all versions
Concurrent execution using shared resource with improper synchronization ('race condition') in Windows Win32K - GRFX allows an aut
7.0HIGH
CVE-2026-34330
all versions
Concurrent execution using shared resource with improper synchronization ('race condition') in Windows Win32K - GRFX allows an aut
7.8HIGH
CVE-2026-34329
all versions
Heap-based buffer overflow in Windows Message Queuing allows an unauthorized attacker to execute code over an adjacent network.
8.8HIGH
CVE-2026-33838
all versions
Double free in Windows Message Queuing allows an authorized attacker to elevate privileges locally.
7.8HIGH
CVE-2026-33837
all versions
Heap-based buffer overflow in Windows TCP/IP allows an authorized attacker to elevate privileges locally.
7.8HIGH
CVE-2026-33834
all versions
Improper access control in Windows Event Logging Service allows an authorized attacker to elevate privileges locally.
7.8HIGH
CVE-2026-32209
all versions
Improper access control in Windows Filtering Platform (WFP) allows an authorized attacker to bypass a security feature locally.
4.4MEDIUM
CVE-2026-32170
all versions
Double free in Windows Rich Text Edit allows an authorized attacker to elevate privileges locally.
6.7MEDIUM
CVE-2026-32161
all versions
Concurrent execution using shared resource with improper synchronization ('race condition') in Windows Native WiFi Miniport Driver
7.5HIGH
CVE-2026-21530
all versions
Double free in Windows Rich Text Edit allows an authorized attacker to elevate privileges locally.
6.7MEDIUM
CVE-2026-33829
all versions
Exposure of sensitive information to an unauthorized actor in Windows Snipping Tool allows an unauthorized attacker to perform spo
4.3MEDIUM
CVE-2026-33827
all versions
Concurrent execution using shared resource with improper synchronization ('race condition') in Windows TCP/IP allows an unauthoriz
8.1HIGH
CVE-2026-33826
all versions
Improper input validation in Windows Active Directory allows an authorized attacker to execute code over an adjacent network.
8.0HIGH
CVE-2026-33104
all versions
Concurrent execution using shared resource with improper synchronization ('race condition') in Windows Win32K - GRFX allows an aut
7.0HIGH
CVE-2026-33100
all versions
Use after free in Windows Ancillary Function Driver for WinSock allows an authorized attacker to elevate privileges locally.
7.0HIGH
CVE-2026-33099
all versions
Use after free in Windows Ancillary Function Driver for WinSock allows an authorized attacker to elevate privileges locally.
7.0HIGH
CVE-2026-32225
all versions
Protection mechanism failure in Windows Shell allows an unauthorized attacker to bypass a security feature over a network.
8.8HIGH
CVE-2026-32217
all versions
Insertion of sensitive information into log file in Windows Kernel allows an authorized attacker to disclose information locally.
5.5MEDIUM
CVE-2026-32214
all versions
Improper access control in Universal Plug and Play (upnp.dll) allows an authorized attacker to disclose information locally.
5.5MEDIUM
CVE-2026-32212
all versions
Improper link resolution before file access ('link following') in Universal Plug and Play (upnp.dll) allows an authorized attacker
5.5MEDIUM
CVE-2026-32202
all versions
Protection mechanism failure in Windows Shell allows an unauthorized attacker to perform spoofing over a network.
4.3MEDIUM
CVE-2026-32183
all versions
Improper neutralization of special elements used in a command ('command injection') in Windows Snipping Tool allows an unauthorize
7.8HIGH
CVE-2026-32157
all versions
Use after free in Remote Desktop Client allows an unauthorized attacker to execute code over a network.
8.8HIGH
CVE-2026-32156
all versions
Use after free in Windows Universal Plug and Play (UPnP) Device Host allows an unauthorized attacker to execute code locally.
7.4HIGH
CVE-2026-32151
all versions
Exposure of sensitive information to an unauthorized actor in Windows Shell allows an authorized attacker to disclose information
6.5MEDIUM
CVE-2026-32150
all versions
Concurrent execution using shared resource with improper synchronization ('race condition') in Function Discovery Service (fdwsd.d
7.0HIGH
CVE-2026-32093
all versions
Concurrent execution using shared resource with improper synchronization ('race condition') in Function Discovery Service (fdwsd.d
7.0HIGH
CVE-2026-32087
all versions
Heap-based buffer overflow in Function Discovery Service (fdwsd.dll) allows an authorized attacker to elevate privileges locally.
7.0HIGH
CVE-2026-32086
all versions
Concurrent execution using shared resource with improper synchronization ('race condition') in Function Discovery Service (fdwsd.d
7.0HIGH
CVE-2026-32084
all versions
Exposure of sensitive information to an unauthorized actor in Windows File Explorer allows an authorized attacker to disclose info
5.5MEDIUM
CVE-2026-32083
all versions
Concurrent execution using shared resource with improper synchronization ('race condition') in Windows SSDP Service allows an auth
7.0HIGH
CVE-2026-32082
all versions
Concurrent execution using shared resource with improper synchronization ('race condition') in Windows SSDP Service allows an auth
7.0HIGH
CVE-2026-32077
all versions
Untrusted pointer dereference in Windows Universal Plug and Play (UPnP) Device Host allows an authorized attacker to elevate privi
7.8HIGH
CVE-2026-32075
all versions
Use after free in Windows Universal Plug and Play (UPnP) Device Host allows an authorized attacker to elevate privileges locally.
7.0HIGH
CVE-2026-32073
all versions
Use after free in Windows Ancillary Function Driver for WinSock allows an authorized attacker to elevate privileges locally.
7.0HIGH
CVE-2026-32070
all versions
Use after free in Windows Common Log File System Driver allows an authorized attacker to elevate privileges locally.
7.0HIGH
CVE-2026-32068
all versions
Concurrent execution using shared resource with improper synchronization ('race condition') in Windows SSDP Service allows an auth
7.0HIGH
CVE-2026-27930
all versions
Out-of-bounds read in Windows GDI allows an unauthorized attacker to disclose information locally.
5.5MEDIUM
CVE-2026-27929
all versions
Time-of-check time-of-use (toctou) race condition in Windows LUAFV allows an authorized attacker to elevate privileges locally.
7.0HIGH
CVE-2026-27925
all versions
Use after free in Windows Universal Plug and Play (UPnP) Device Host allows an unauthorized attacker to disclose information over
6.5MEDIUM
CVE-2026-27923
all versions
Use after free in Desktop Window Manager allows an authorized attacker to elevate privileges locally.
7.8HIGH
CVE-2026-27922
all versions
Use after free in Windows Ancillary Function Driver for WinSock allows an authorized attacker to elevate privileges locally.
7.0HIGH
CVE-2026-27921
all versions
Concurrent execution using shared resource with improper synchronization ('race condition') in Windows TCP/IP allows an authorized
7.0HIGH
CVE-2026-27920
all versions
Untrusted pointer dereference in Windows Universal Plug and Play (UPnP) Device Host allows an authorized attacker to elevate privi
7.8HIGH
CVE-2026-27919
all versions
Untrusted pointer dereference in Windows Universal Plug and Play (UPnP) Device Host allows an authorized attacker to elevate privi
7.8HIGH
CVE-2026-27917
all versions
Use after free in Windows WFP NDIS Lightweight Filter Driver (wfplwfs.sys) allows an authorized attacker to elevate privileges loc
7.0HIGH
CVE-2026-27916
all versions
Use after free in Windows Universal Plug and Play (UPnP) Device Host allows an authorized attacker to elevate privileges locally.
7.8HIGH
CVE-2026-27915
all versions
Use after free in Windows Universal Plug and Play (UPnP) Device Host allows an authorized attacker to elevate privileges locally.
7.8HIGH
CVE-2026-27914
all versions
Improper access control in Microsoft Management Console allows an authorized attacker to elevate privileges locally.
7.8HIGH
CVE-2026-27913
all versions
Improper input validation in Windows BitLocker allows an unauthorized attacker to bypass a security feature locally.
7.7HIGH
CVE-2026-27912
all versions
Improper authorization in Windows Kerberos allows an authorized attacker to elevate privileges over an adjacent network.
8.0HIGH
CVE-2026-27910
all versions
Improper handling of insufficient permissions or privileges in Windows Installer allows an authorized attacker to elevate privileg
7.8HIGH
CVE-2026-27909
all versions
Use after free in Microsoft Windows Search Component allows an authorized attacker to elevate privileges locally.
7.8HIGH
CVE-2026-27908
all versions
Use after free in Windows TDI Translation Driver (tdx.sys) allows an authorized attacker to elevate privileges locally.
7.0HIGH
CVE-2026-26183
all versions
Improper access control in Windows RPC API allows an authorized attacker to elevate privileges locally.
7.8HIGH
CVE-2026-26182
all versions
Use after free in Windows Ancillary Function Driver for WinSock allows an authorized attacker to elevate privileges locally.
7.0HIGH
CVE-2026-26180
all versions
Heap-based buffer overflow in Windows Kernel allows an authorized attacker to elevate privileges locally.
7.8HIGH
CVE-2026-26177
all versions
Use after free in Windows Ancillary Function Driver for WinSock allows an authorized attacker to elevate privileges locally.
7.0HIGH
CVE-2026-26176
all versions
Heap-based buffer overflow in Windows Client Side Caching driver (csc.sys) allows an authorized attacker to elevate privileges loc
7.8HIGH
CVE-2026-26174
all versions
Concurrent execution using shared resource with improper synchronization ('race condition') in Windows Server Update Service allow
7.0HIGH
CVE-2026-26173
all versions
Concurrent execution using shared resource with improper synchronization ('race condition') in Windows Ancillary Function Driver f
7.0HIGH
CVE-2026-26168
all versions
Concurrent execution using shared resource with improper synchronization ('race condition') in Windows Ancillary Function Driver f
7.8HIGH
CVE-2026-26163
all versions
Double free in Windows Kernel allows an authorized attacker to elevate privileges locally.
7.8HIGH
CVE-2026-26162
all versions
Access of resource using incompatible type ('type confusion') in Windows OLE allows an authorized attacker to elevate privileges l
7.8HIGH
CVE-2026-26160
all versions
Missing authentication for critical function in Windows Remote Desktop Licensing Service allows an authorized attacker to elevate
7.8HIGH
CVE-2026-26159
all versions
Missing authentication for critical function in Windows Remote Desktop Licensing Service allows an authorized attacker to elevate
7.8HIGH
CVE-2026-26154
all versions
Improper input validation in Windows Server Update Service allows an unauthorized attacker to perform tampering over a network.
7.5HIGH
CVE-2026-26152
all versions
Insecure storage of sensitive information in Windows Cryptographic Services allows an authorized attacker to elevate privileges lo
7.0HIGH
CVE-2026-26151
all versions
Insufficient ui warning of dangerous operations in Windows Remote Desktop allows an unauthorized attacker to perform spoofing over
7.1HIGH
CVE-2026-26128
all versions
Improper authentication in Windows SMB Server allows an authorized attacker to elevate privileges locally.
7.8HIGH
CVE-2026-26111
< 6.2.9200.25973
Integer overflow or wraparound in Windows Routing and Remote Access Service (RRAS) allows an authorized attacker to execute code o
8.0HIGH
CVE-2026-25190
all versions
Untrusted search path in Windows GDI allows an unauthorized attacker to execute code locally.
7.8HIGH
CVE-2026-25188
all versions
Heap-based buffer overflow in Windows Telephony Service allows an unauthorized attacker to elevate privileges over an adjacent net
8.8HIGH
CVE-2026-25187
all versions
Improper link resolution before file access ('link following') in Winlogon allows an authorized attacker to elevate privileges loc
7.8HIGH
CVE-2026-25186
all versions
Exposure of sensitive information to an unauthorized actor in Windows Accessibility Infrastructure (ATBroker.exe) allows an author
5.5MEDIUM
CVE-2026-25185
all versions
Exposure of sensitive information to an unauthorized actor in Windows Shell Link Processing allows an unauthorized attacker to per
5.3MEDIUM
CVE-2026-25181
all versions
Out-of-bounds read in Windows GDI+ allows an unauthorized attacker to disclose information over a network.
7.5HIGH
CVE-2026-25180
all versions
Out-of-bounds read in Microsoft Graphics Component allows an unauthorized attacker to disclose information locally.
5.5MEDIUM
CVE-2026-25179
all versions
Improper validation of specified type of input in Windows Ancillary Function Driver for WinSock allows an authorized attacker to e
7.0HIGH
CVE-2026-25178
all versions
Use after free in Windows Ancillary Function Driver for WinSock allows an authorized attacker to elevate privileges locally.
7.0HIGH
CVE-2026-25177
all versions
Improper restriction of names for files and other resources in Active Directory Domain Services allows an authorized attacker to e
8.8HIGH
CVE-2026-25176
all versions
Improper access control in Windows Ancillary Function Driver for WinSock allows an authorized attacker to elevate privileges local
7.8HIGH
CVE-2026-25175
all versions
Out-of-bounds read in Windows NTFS allows an authorized attacker to elevate privileges locally.
7.8HIGH
CVE-2026-25174
all versions
Out-of-bounds read in Windows Extensible File Allocation allows an authorized attacker to elevate privileges locally.
7.8HIGH
CVE-2026-25173
all versions
Integer overflow or wraparound in Windows Routing and Remote Access Service (RRAS) allows an authorized attacker to execute code o
8.0HIGH
CVE-2026-25172
all versions
Integer overflow or wraparound in Windows Routing and Remote Access Service (RRAS) allows an authorized attacker to execute code o
8.0HIGH
CVE-2026-25171
all versions
Use after free in Windows Authentication Methods allows an authorized attacker to elevate privileges locally.
7.0HIGH
CVE-2026-25169
all versions
Divide by zero in Microsoft Graphics Component allows an unauthorized attacker to deny service locally.
6.2MEDIUM
CVE-2026-25168
all versions
Null pointer dereference in Microsoft Graphics Component allows an unauthorized attacker to deny service locally.
6.2MEDIUM
CVE-2026-25165
all versions
Null pointer dereference in Windows Performance Counters allows an authorized attacker to elevate privileges locally.
7.8HIGH
CVE-2026-24297
all versions
Concurrent execution using shared resource with improper synchronization ('race condition') in Windows Kerberos allows an unauthor
6.5MEDIUM
CVE-2026-24296
all versions
Concurrent execution using shared resource with improper synchronization ('race condition') in Windows Device Association Service
7.0HIGH
CVE-2026-24294
all versions
Improper authentication in Windows SMB Server allows an authorized attacker to elevate privileges locally.
7.8HIGH
CVE-2026-24291
all versions
Incorrect permission assignment for critical resource in Windows Accessibility Infrastructure (ATBroker.exe) allows an authorized
7.8HIGH
CVE-2026-24289
all versions
Use after free in Windows Kernel allows an authorized attacker to elevate privileges locally.
7.8HIGH
CVE-2026-24285
all versions
Use after free in Windows Win32K allows an authorized attacker to elevate privileges locally.
7.0HIGH
CVE-2026-23674
all versions
Improper resolution of path equivalence in Windows MapUrlToZone allows an unauthorized attacker to bypass a security feature over
7.5HIGH
CVE-2026-23673
all versions
Out-of-bounds read in Windows Resilient File System (ReFS) allows an authorized attacker to elevate privileges locally.
7.8HIGH
CVE-2026-23672
all versions
Windows Universal Disk Format File System Driver (UDFS) Elevation of Privilege Vulnerability
7.8HIGH
CVE-2026-23669
all versions
Use after free in RPC Runtime allows an authorized attacker to execute code over a network.
8.8HIGH
CVE-2026-23668
all versions
Concurrent execution using shared resource with improper synchronization ('race condition') in Microsoft Graphics Component allows
7.0HIGH
CVE-2026-21533
all versions
Improper privilege management in Windows Remote Desktop allows an authorized attacker to elevate privileges locally.
7.8HIGH
CVE-2026-21525
all versions
Null pointer dereference in Windows Remote Access Connection Manager allows an unauthorized attacker to deny service locally.
6.2MEDIUM
CVE-2026-21513
all versions
Protection mechanism failure in MSHTML Framework allows an unauthorized attacker to bypass a security feature over a network.
8.8HIGH
CVE-2026-21510
all versions
Protection mechanism failure in Windows Shell allows an unauthorized attacker to bypass a security feature over a network.
8.8HIGH
CVE-2026-21508
all versions
Improper authentication in Windows Storage allows an authorized attacker to elevate privileges locally.
7.0HIGH
CVE-2026-21253
all versions
Use after free in Mailslot File System allows an authorized attacker to elevate privileges locally.
7.0HIGH
CVE-2026-21249
all versions
External control of file name or path in Windows NTLM allows an unauthorized attacker to perform spoofing locally.
3.3LOW
CVE-2026-21246
all versions
Heap-based buffer overflow in Microsoft Graphics Component allows an authorized attacker to elevate privileges locally.
7.8HIGH
CVE-2026-21239
all versions
Heap-based buffer overflow in Windows Kernel allows an authorized attacker to elevate privileges locally.
7.8HIGH
CVE-2026-21238
all versions
Improper access control in Windows Ancillary Function Driver for WinSock allows an authorized attacker to elevate privileges local
7.8HIGH
CVE-2026-21236
all versions
Heap-based buffer overflow in Windows Ancillary Function Driver for WinSock allows an authorized attacker to elevate privileges lo
7.8HIGH
CVE-2026-21235
all versions
Use after free in Microsoft Graphics Component allows an authorized attacker to elevate privileges locally.
7.3HIGH
CVE-2026-21231
all versions
Concurrent execution using shared resource with improper synchronization ('race condition') in Windows Kernel allows an authorized
7.8HIGH
CVE-2026-21222
all versions
Insertion of sensitive information into log file in Windows Kernel allows an authorized attacker to disclose information locally.
5.5MEDIUM
CVE-2026-20846
all versions
Buffer over-read in Windows GDI+ allows an unauthorized attacker to deny service over a network.
7.5HIGH
CVE-2026-21265
all versions
Windows Secure Boot stores Microsoft certificates in the UEFI KEK and DB. These original certificates are approaching expiration,
6.4MEDIUM
CVE-2026-20940
all versions
Heap-based buffer overflow in Windows Cloud Files Mini Filter Driver allows an authorized attacker to elevate privileges locally.
7.8HIGH
CVE-2026-20936
all versions
Out-of-bounds read in Windows NDIS allows an authorized attacker to disclose information with a physical attack.
4.3MEDIUM
CVE-2026-20934
all versions
Concurrent execution using shared resource with improper synchronization ('race condition') in Windows SMB Server allows an author
7.5HIGH
CVE-2026-20931
all versions
External control of file name or path in Windows Telephony Service allows an authorized attacker to elevate privileges over an adj
8.0HIGH
CVE-2026-20929
all versions
Improper access control in Windows HTTP.sys allows an authorized attacker to elevate privileges over a network.
7.5HIGH
CVE-2026-20927
all versions
Concurrent execution using shared resource with improper synchronization ('race condition') in Windows SMB Server allows an author
5.3MEDIUM
CVE-2026-20926
all versions
Concurrent execution using shared resource with improper synchronization ('race condition') in Windows SMB Server allows an author
7.5HIGH
CVE-2026-20925
all versions
External control of file name or path in Windows NTLM allows an unauthorized attacker to perform spoofing over a network.
6.5MEDIUM
CVE-2026-20922
all versions
Heap-based buffer overflow in Windows NTFS allows an authorized attacker to execute code locally.
7.8HIGH
CVE-2026-20921
all versions
Concurrent execution using shared resource with improper synchronization ('race condition') in Windows SMB Server allows an author
7.5HIGH
CVE-2026-20919
all versions
Concurrent execution using shared resource with improper synchronization ('race condition') in Windows SMB Server allows an author
7.5HIGH
CVE-2026-20875
all versions
Null pointer dereference in Windows Local Security Authority Subsystem Service (LSASS) allows an unauthorized attacker to deny ser
7.5HIGH
CVE-2026-20872
all versions
External control of file name or path in Windows NTLM allows an unauthorized attacker to perform spoofing over a network.
6.5MEDIUM
CVE-2026-20869
all versions
Concurrent execution using shared resource with improper synchronization ('race condition') in Windows Local Session Manager (LSM)
7.0HIGH
CVE-2026-20868
all versions
Heap-based buffer overflow in Windows Routing and Remote Access Service (RRAS) allows an unauthorized attacker to execute code ove
8.8HIGH
CVE-2026-20860
all versions
Access of resource using incompatible type ('type confusion') in Windows Ancillary Function Driver for WinSock allows an authorize
7.8HIGH
CVE-2026-20856
all versions
Improper input validation in Windows Server Update Service allows an unauthorized attacker to execute code over a network.
8.1HIGH
CVE-2026-20849
all versions
Reliance on untrusted inputs in a security decision in Windows Kerberos allows an authorized attacker to elevate privileges over a
7.5HIGH
CVE-2026-20848
all versions
Concurrent execution using shared resource with improper synchronization ('race condition') in Windows SMB Server allows an author
7.5HIGH
CVE-2026-20847
all versions
Exposure of sensitive information to an unauthorized actor in Windows Shell allows an authorized attacker to perform spoofing over
6.5MEDIUM
CVE-2026-20843
all versions
Improper access control in Windows Routing and Remote Access Service (RRAS) allows an authorized attacker to elevate privileges lo
7.8HIGH
CVE-2026-20840
all versions
Heap-based buffer overflow in Windows NTFS allows an authorized attacker to execute code locally.
7.8HIGH
CVE-2026-20839
all versions
Improper access control in Windows Client-Side Caching (CSC) Service allows an authorized attacker to disclose information locally
5.5MEDIUM
CVE-2026-20834
all versions
Absolute path traversal in Windows Shell allows an unauthorized attacker to perform spoofing with a physical attack.
4.6MEDIUM
CVE-2026-20833
all versions
Use of a broken or risky cryptographic algorithm in Windows Kerberos allows an authorized attacker to disclose information locally
5.5MEDIUM
CVE-2026-20831
all versions
Time-of-check time-of-use (toctou) race condition in Windows Ancillary Function Driver for WinSock allows an authorized attacker t
7.8HIGH
CVE-2026-20828
all versions
Out-of-bounds read in Windows Internet Connection Sharing (ICS) allows an unauthorized attacker to disclose information with a phy
4.6MEDIUM
CVE-2026-20824
all versions
Protection mechanism failure in Windows Remote Assistance allows an unauthorized attacker to bypass a security feature locally.
5.5MEDIUM
CVE-2026-20821
all versions
Exposure of sensitive information to an unauthorized actor in Windows Remote Procedure Call allows an unauthorized attacker to dis
6.2MEDIUM
CVE-2026-20820
all versions
Heap-based buffer overflow in Windows Common Log File System Driver allows an authorized attacker to elevate privileges locally.
7.8HIGH
CVE-2026-20816
all versions
Time-of-check time-of-use (toctou) race condition in Windows Installer allows an authorized attacker to elevate privileges locally
7.8HIGH
CVE-2026-20809
all versions
Time-of-check time-of-use (toctou) race condition in Windows Kernel Memory allows an authorized attacker to elevate privileges loc
7.8HIGH
CVE-2026-20805
all versions
Exposure of sensitive information to an unauthorized actor in Desktop Windows Manager allows an authorized attacker to disclose in
5.5MEDIUM
CVE-2026-0386
all versions
Improper access control in Windows Deployment Services allows an unauthorized attacker to execute code over an adjacent network.
7.5HIGH
CVE-2025-64678
all versions
Heap-based buffer overflow in Windows Routing and Remote Access Service (RRAS) allows an unauthorized attacker to execute code ove
8.8HIGH
CVE-2025-62571
all versions
Improper input validation in Windows Installer allows an authorized attacker to elevate privileges locally.
7.8HIGH
CVE-2025-62567
all versions
Integer underflow (wrap or wraparound) in Windows Hyper-V allows an authorized attacker to deny service over a network.
5.3MEDIUM
CVE-2025-62549
all versions
Untrusted pointer dereference in Windows Routing and Remote Access Service (RRAS) allows an unauthorized attacker to execute code
8.8HIGH
CVE-2025-62474
all versions
Improper access control in Windows Remote Access Connection Manager allows an authorized attacker to elevate privileges locally.
7.8HIGH
CVE-2025-62473
all versions
Buffer over-read in Windows Routing and Remote Access Service (RRAS) allows an unauthorized attacker to disclose information over
6.5MEDIUM
CVE-2025-62472
all versions
Use of uninitialized resource in Windows Remote Access Connection Manager allows an authorized attacker to elevate privileges loca
7.8HIGH
CVE-2025-62470
all versions
Heap-based buffer overflow in Windows Common Log File System Driver allows an authorized attacker to elevate privileges locally.
7.8HIGH
CVE-2025-62466
all versions
Null pointer dereference in Windows Client-Side Caching (CSC) Service allows an authorized attacker to elevate privileges locally.
7.8HIGH
CVE-2025-62458
all versions
Heap-based buffer overflow in Windows Win32K - GRFX allows an authorized attacker to elevate privileges locally.
7.8HIGH
CVE-2025-62455
all versions
Improper input validation in Windows Message Queuing allows an authorized attacker to elevate privileges locally.
7.8HIGH
CVE-2025-54100
all versions
Improper neutralization of special elements used in a command ('command injection') in Windows PowerShell allows an unauthorized a
7.8HIGH
CVE-2025-62452
all versions
Heap-based buffer overflow in Windows Routing and Remote Access Service (RRAS) allows an authorized attacker to execute code over
8.0HIGH
CVE-2025-62217
all versions
Concurrent execution using shared resource with improper synchronization ('race condition') in Windows Ancillary Function Driver f
7.0HIGH
CVE-2025-62213
all versions
Use after free in Windows Ancillary Function Driver for WinSock allows an authorized attacker to elevate privileges locally.
7.0HIGH
CVE-2025-60724
all versions
Heap-based buffer overflow in Microsoft Graphics Component allows an unauthorized attacker to execute code over a network.
9.8CRITICAL
CVE-2025-60720
all versions
Buffer over-read in Windows TDX.sys allows an authorized attacker to elevate privileges locally.
7.8HIGH
CVE-2025-60719
all versions
Untrusted pointer dereference in Windows Ancillary Function Driver for WinSock allows an authorized attacker to elevate privileges
7.0HIGH
CVE-2025-60715
all versions
Heap-based buffer overflow in Windows Routing and Remote Access Service (RRAS) allows an authorized attacker to execute code over
8.0HIGH
CVE-2025-60714
all versions
Heap-based buffer overflow in Windows OLE allows an unauthorized attacker to execute code locally.
7.8HIGH
CVE-2025-60709
all versions
Out-of-bounds read in Windows Common Log File System Driver allows an authorized attacker to elevate privileges locally.
7.8HIGH
CVE-2025-60705
all versions
Improper access control in Windows Client-Side Caching (CSC) Service allows an authorized attacker to elevate privileges locally.
7.8HIGH
CVE-2025-60704
all versions
Missing cryptographic step in Windows Kerberos allows an unauthorized attacker to elevate privileges over a network.
7.5HIGH
CVE-2025-60703
all versions
Untrusted pointer dereference in Windows Remote Desktop allows an authorized attacker to elevate privileges locally.
7.8HIGH
CVE-2025-59514
all versions
Improper privilege management in Microsoft Streaming Service allows an authorized attacker to elevate privileges locally.
7.8HIGH
CVE-2025-59512
all versions
Improper access control in Customer Experience Improvement Program (CEIP) allows an authorized attacker to elevate privileges loca
7.8HIGH
CVE-2025-59510
all versions
Improper link resolution before file access ('link following') in Windows Routing and Remote Access Service (RRAS) allows an autho
5.5MEDIUM
CVE-2025-59506
all versions
Concurrent execution using shared resource with improper synchronization ('race condition') in Windows DirectX allows an authorize
7.0HIGH
CVE-2025-59505
all versions
Double free in Windows Smart Card allows an authorized attacker to elevate privileges locally.
7.8HIGH
CVE-2025-59295
all versions
Heap-based buffer overflow in Internet Explorer allows an unauthorized attacker to execute code over a network.
8.8HIGH
CVE-2025-59287
all versions
Deserialization of untrusted data in Windows Server Update Service allows an unauthorized attacker to execute code over a network.
9.8CRITICAL
CVE-2025-59282
all versions
Concurrent execution using shared resource with improper synchronization ('race condition') in Inbox COM Objects allows an unautho
7.0HIGH
CVE-2025-59280
all versions
Improper authentication in Windows SMB Client allows an unauthorized attacker to perform tampering over a network.
3.1LOW
CVE-2025-59278
all versions
Improper validation of specified type of input in Windows Authentication Methods allows an authorized attacker to elevate privileg
7.8HIGH
CVE-2025-59277
all versions
Improper validation of specified type of input in Windows Authentication Methods allows an authorized attacker to elevate privileg
7.8HIGH
CVE-2025-59275
all versions
Improper validation of specified type of input in Windows Authentication Methods allows an authorized attacker to elevate privileg
7.8HIGH
CVE-2025-59259
all versions
Improper validation of specified type of input in Windows Local Session Manager (LSM) allows an authorized attacker to deny servic
6.5MEDIUM
CVE-2025-59258
all versions
Insertion of sensitive information into log file in Active Directory Federation Services allows an unauthorized attacker to disclo
6.2MEDIUM
CVE-2025-59253
all versions
Improper access control in Microsoft Windows Search Component allows an authorized attacker to deny service locally.
5.5MEDIUM
CVE-2025-59244
all versions
External control of file name or path in Windows Core Shell allows an unauthorized attacker to perform spoofing over a network.
6.5MEDIUM
CVE-2025-59242
all versions
Heap-based buffer overflow in Windows Ancillary Function Driver for WinSock allows an authorized attacker to elevate privileges lo
7.8HIGH
CVE-2025-59230
all versions
Improper access control in Windows Remote Access Connection Manager allows an authorized attacker to elevate privileges locally.
7.8HIGH
CVE-2025-59214
all versions
Exposure of sensitive information to an unauthorized actor in Windows File Explorer allows an unauthorized attacker to perform spo
6.5MEDIUM
CVE-2025-59211
all versions
Exposure of sensitive information to an unauthorized actor in Windows Push Notification Core allows an authorized attacker to disc
5.5MEDIUM
CVE-2025-59209
all versions
Exposure of sensitive information to an unauthorized actor in Windows Push Notification Core allows an authorized attacker to disc
5.5MEDIUM
CVE-2025-59208
all versions
Out-of-bounds read in Windows MapUrlToZone allows an unauthorized attacker to disclose information over a network.
7.1HIGH
CVE-2025-59205
all versions
Concurrent execution using shared resource with improper synchronization ('race condition') in Microsoft Graphics Component allows
7.0HIGH
CVE-2025-59202
all versions
Use after free in Windows Remote Desktop Services allows an authorized attacker to elevate privileges locally.
7.0HIGH
CVE-2025-59201
all versions
Improper access control in Network Connection Status Indicator (NCSI) allows an authorized attacker to elevate privileges locally.
7.8HIGH
CVE-2025-59198
all versions
Improper input validation in Microsoft Windows Search Component allows an authorized attacker to deny service locally.
5.0MEDIUM
CVE-2025-59196
all versions
Concurrent execution using shared resource with improper synchronization ('race condition') in Windows SSDP Service allows an auth
7.0HIGH
CVE-2025-59190
all versions
Improper input validation in Microsoft Windows Search Component allows an unauthorized attacker to deny service locally.
5.5MEDIUM
CVE-2025-59188
all versions
Exposure of sensitive information to an unauthorized actor in Windows Failover Cluster allows an authorized attacker to disclose i
5.5MEDIUM
CVE-2025-59187
all versions
Improper input validation in Windows Kernel allows an authorized attacker to elevate privileges locally.
7.8HIGH
CVE-2025-59185
all versions
External control of file name or path in Windows Core Shell allows an unauthorized attacker to perform spoofing over a network.
6.5MEDIUM
CVE-2025-58739
all versions
Exposure of sensitive information to an unauthorized actor in Windows File Explorer allows an unauthorized attacker to perform spo
6.5MEDIUM
CVE-2025-58737
all versions
Use after free in Windows Remote Desktop allows an unauthorized attacker to execute code locally.
7.0HIGH
CVE-2025-58736
all versions
Use after free in Inbox COM Objects allows an unauthorized attacker to execute code locally.
7.0HIGH
CVE-2025-58735
all versions
Use after free in Inbox COM Objects allows an unauthorized attacker to execute code locally.
7.0HIGH
CVE-2025-58733
all versions
Use after free in Inbox COM Objects allows an unauthorized attacker to execute code locally.
7.0HIGH
CVE-2025-58732
all versions
Use after free in Inbox COM Objects allows an unauthorized attacker to execute code locally.
7.0HIGH
CVE-2025-58730
all versions
Use after free in Inbox COM Objects allows an unauthorized attacker to execute code locally.
7.0HIGH
CVE-2025-58729
all versions
Improper validation of specified type of input in Windows Local Session Manager (LSM) allows an authorized attacker to deny servic
6.5MEDIUM
CVE-2025-58726
all versions
Improper access control in Windows SMB Server allows an authorized attacker to elevate privileges over a network.
7.5HIGH
CVE-2025-58725
all versions
Heap-based buffer overflow in Windows COM allows an authorized attacker to elevate privileges locally.
7.0HIGH
CVE-2025-58718
all versions
Use after free in Remote Desktop Client allows an unauthorized attacker to execute code over a network.
8.8HIGH
CVE-2025-58717
all versions
Out-of-bounds read in Windows Routing and Remote Access Service (RRAS) allows an unauthorized attacker to disclose information ove
6.5MEDIUM
CVE-2025-58714
all versions
Improper access control in Windows Ancillary Function Driver for WinSock allows an authorized attacker to elevate privileges local
7.8HIGH
CVE-2025-55701
all versions
Improper validation of specified type of input in Microsoft Windows allows an authorized attacker to elevate privileges locally.
7.8HIGH
CVE-2025-55700
all versions
Out-of-bounds read in Windows Routing and Remote Access Service (RRAS) allows an unauthorized attacker to disclose information ove
6.5MEDIUM
CVE-2025-55695
all versions
Out-of-bounds read in Windows WLAN Auto Config Service allows an authorized attacker to disclose information locally.
5.5MEDIUM
CVE-2025-55692
all versions
Improper input validation in Windows Error Reporting allows an authorized attacker to elevate privileges locally.
7.8HIGH
CVE-2025-55687
all versions
Concurrent execution using shared resource with improper synchronization ('race condition') in Windows Resilient File System (ReFS
7.4HIGH
CVE-2025-55678
all versions
Use after free in Windows DirectX allows an authorized attacker to elevate privileges locally.
7.0HIGH
CVE-2025-55335
all versions
Use after free in Windows NTFS allows an unauthorized attacker to elevate privileges locally.
7.4HIGH
CVE-2025-25004
all versions
Improper access control in Microsoft PowerShell allows an authorized attacker to elevate privileges locally.
7.3HIGH
CVE-2025-24990
all versions
Microsoft is aware of vulnerabilities in the third party Agere Modem driver that ships natively with supported Windows operating s
7.8HIGH
CVE-2025-24052
all versions
Microsoft is aware of vulnerabilities in the third party Agere Modem driver that ships natively with supported Windows operating s
7.8HIGH
CVE-2025-55234
all versions
SMB Server might be susceptible to relay attacks depending on the configuration. An attacker who successfully exploited these vuln
8.8HIGH
CVE-2025-55226
all versions
Concurrent execution using shared resource with improper synchronization ('race condition') in Graphics Kernel allows an authorize
6.7MEDIUM
CVE-2025-55225
all versions
Out-of-bounds read in Windows Routing and Remote Access Service (RRAS) allows an unauthorized attacker to disclose information ove
6.5MEDIUM
CVE-2025-54918
all versions
Improper authentication in Windows NTLM allows an authorized attacker to elevate privileges over a network.
8.8HIGH
CVE-2025-54917
all versions
Protection mechanism failure in Windows MapUrlToZone allows an unauthorized attacker to bypass a security feature over a network.
4.3MEDIUM
CVE-2025-54916
all versions
Stack-based buffer overflow in Windows NTFS allows an authorized attacker to execute code locally.
7.8HIGH
CVE-2025-54915
all versions
Access of resource using incompatible type ('type confusion') in Windows Defender Firewall Service allows an authorized attacker t
6.7MEDIUM
CVE-2025-54912
all versions
Use after free in Windows BitLocker allows an authorized attacker to elevate privileges locally.
7.8HIGH
CVE-2025-54911
all versions
Use after free in Windows BitLocker allows an authorized attacker to elevate privileges locally.
7.3HIGH
CVE-2025-54895
all versions
Integer overflow or wraparound in Windows SPNEGO Extended Negotiation allows an authorized attacker to elevate privileges locally.
7.8HIGH
CVE-2025-54894
all versions
Local Security Authority Subsystem Service Elevation of Privilege Vulnerability
7.8HIGH
CVE-2025-54113
all versions
Heap-based buffer overflow in Windows Routing and Remote Access Service (RRAS) allows an unauthorized attacker to execute code ove
8.8HIGH
CVE-2025-54110
all versions
Integer overflow or wraparound in Windows Kernel allows an authorized attacker to elevate privileges locally.
8.8HIGH
CVE-2025-54109
all versions
Access of resource using incompatible type ('type confusion') in Windows Defender Firewall Service allows an authorized attacker t
6.7MEDIUM
CVE-2025-54107
all versions
Improper resolution of path equivalence in Windows MapUrlToZone allows an unauthorized attacker to bypass a security feature over
4.3MEDIUM
CVE-2025-54106
all versions
Integer overflow or wraparound in Windows Routing and Remote Access Service (RRAS) allows an unauthorized attacker to execute code
8.8HIGH
CVE-2025-54104
all versions
Access of resource using incompatible type ('type confusion') in Windows Defender Firewall Service allows an authorized attacker t
6.7MEDIUM
CVE-2025-54101
all versions
Use after free in Windows SMBv3 Client allows an authorized attacker to execute code over a network.
4.8MEDIUM
CVE-2025-54099
all versions
Stack-based buffer overflow in Windows Ancillary Function Driver for WinSock allows an authorized attacker to elevate privileges l
7.0HIGH
CVE-2025-54098
all versions
Improper access control in Windows Hyper-V allows an authorized attacker to elevate privileges locally.
7.8HIGH
CVE-2025-54097
all versions
Out-of-bounds read in Windows Routing and Remote Access Service (RRAS) allows an unauthorized attacker to disclose information ove
6.5MEDIUM
CVE-2025-54096
all versions
Out-of-bounds read in Windows Routing and Remote Access Service (RRAS) allows an unauthorized attacker to disclose information ove
6.5MEDIUM
CVE-2025-54095
all versions
Out-of-bounds read in Windows Routing and Remote Access Service (RRAS) allows an unauthorized attacker to disclose information ove
6.5MEDIUM
CVE-2025-54094
all versions
Access of resource using incompatible type ('type confusion') in Windows Defender Firewall Service allows an authorized attacker t
6.7MEDIUM
CVE-2025-54093
all versions
Time-of-check time-of-use (toctou) race condition in Windows TCP/IP allows an authorized attacker to elevate privileges locally.
7.0HIGH
CVE-2025-54091
all versions
Integer overflow or wraparound in Windows Hyper-V allows an authorized attacker to elevate privileges locally.
7.8HIGH
CVE-2025-53810
all versions
Access of resource using incompatible type ('type confusion') in Windows Defender Firewall Service allows an authorized attacker t
6.7MEDIUM
CVE-2025-53808
all versions
Access of resource using incompatible type ('type confusion') in Windows Defender Firewall Service allows an authorized attacker t
6.7MEDIUM
CVE-2025-53806
all versions
Buffer over-read in Windows Routing and Remote Access Service (RRAS) allows an unauthorized attacker to disclose information over
6.5MEDIUM
CVE-2025-53804
all versions
Exposure of sensitive information to an unauthorized actor in Windows Kernel allows an authorized attacker to disclose information
5.5MEDIUM
CVE-2025-53803
all versions
Generation of error message containing sensitive information in Windows Kernel allows an authorized attacker to disclose informati
5.5MEDIUM
CVE-2025-53799
all versions
Use of uninitialized resource in Windows Imaging Component allows an unauthorized attacker to disclose information locally.
5.5MEDIUM
CVE-2025-53798
all versions
Buffer over-read in Windows Routing and Remote Access Service (RRAS) allows an unauthorized attacker to disclose information over
6.5MEDIUM
CVE-2025-53797
all versions
Buffer over-read in Windows Routing and Remote Access Service (RRAS) allows an unauthorized attacker to disclose information over
6.5MEDIUM
CVE-2025-53796
all versions
Buffer over-read in Windows Routing and Remote Access Service (RRAS) allows an unauthorized attacker to disclose information over
6.5MEDIUM
CVE-2025-55231
all versions
Concurrent execution using shared resource with improper synchronization ('race condition') in Windows Storage allows an unauthori
7.5HIGH
CVE-2025-55230
all versions
Untrusted pointer dereference in Windows MBT Transport driver allows an authorized attacker to elevate privileges locally.
7.8HIGH
CVE-2025-53778
all versions
Improper authentication in Windows NTLM allows an authorized attacker to elevate privileges over a network.
8.8HIGH
CVE-2025-53766
all versions
Heap-based buffer overflow in Windows GDI+ allows an unauthorized attacker to execute code over a network.
9.8CRITICAL
CVE-2025-53726
all versions
Access of resource using incompatible type ('type confusion') in Windows Push Notifications allows an authorized attacker to eleva
7.8HIGH
CVE-2025-53725
all versions
Access of resource using incompatible type ('type confusion') in Windows Push Notifications allows an authorized attacker to eleva
7.8HIGH
CVE-2025-53724
all versions
Access of resource using incompatible type ('type confusion') in Windows Push Notifications allows an authorized attacker to eleva
7.8HIGH
CVE-2025-53723
all versions
Numeric truncation error in Windows Hyper-V allows an authorized attacker to elevate privileges locally.
7.8HIGH
CVE-2025-53722
all versions
Uncontrolled resource consumption in Windows Remote Desktop Services allows an unauthorized attacker to deny service over a networ
7.5HIGH
CVE-2025-53720
all versions
Heap-based buffer overflow in Windows Routing and Remote Access Service (RRAS) allows an authorized attacker to execute code over
8.0HIGH
CVE-2025-53719
all versions
Use of uninitialized resource in Windows Routing and Remote Access Service (RRAS) allows an authorized attacker to disclose inform
5.7MEDIUM
CVE-2025-53718
all versions
Use after free in Windows Ancillary Function Driver for WinSock allows an authorized attacker to elevate privileges locally.
7.0HIGH
CVE-2025-53155
all versions
Heap-based buffer overflow in Windows Hyper-V allows an authorized attacker to elevate privileges locally.
7.8HIGH
CVE-2025-53154
all versions
Null pointer dereference in Windows Ancillary Function Driver for WinSock allows an authorized attacker to elevate privileges loca
7.8HIGH
CVE-2025-53153
all versions
Use of uninitialized resource in Windows Routing and Remote Access Service (RRAS) allows an authorized attacker to disclose inform
5.7MEDIUM
CVE-2025-53152
all versions
Use after free in Desktop Windows Manager allows an authorized attacker to execute code locally.
7.8HIGH
CVE-2025-53149
all versions
Heap-based buffer overflow in Kernel Streaming WOW Thunk Service Driver allows an authorized attacker to elevate privileges locall
7.8HIGH
CVE-2025-53148
all versions
Use of uninitialized resource in Windows Routing and Remote Access Service (RRAS) allows an authorized attacker to disclose inform
5.7MEDIUM
CVE-2025-53147
all versions
Use after free in Windows Ancillary Function Driver for WinSock allows an authorized attacker to elevate privileges locally.
7.0HIGH
CVE-2025-53145
all versions
Access of resource using incompatible type ('type confusion') in Windows Message Queuing allows an authorized attacker to execute
8.8HIGH
CVE-2025-53144
all versions
Access of resource using incompatible type ('type confusion') in Windows Message Queuing allows an authorized attacker to execute
8.8HIGH
CVE-2025-53143
all versions
Access of resource using incompatible type ('type confusion') in Windows Message Queuing allows an authorized attacker to execute
8.8HIGH
CVE-2025-53141
all versions
Null pointer dereference in Windows Ancillary Function Driver for WinSock allows an authorized attacker to elevate privileges loca
7.8HIGH
CVE-2025-53140
all versions
Use after free in Kernel Transaction Manager allows an authorized attacker to elevate privileges locally.
7.0HIGH
CVE-2025-53138
all versions
Use of uninitialized resource in Windows Routing and Remote Access Service (RRAS) allows an authorized attacker to disclose inform
5.7MEDIUM
CVE-2025-53137
all versions
Use after free in Windows Ancillary Function Driver for WinSock allows an authorized attacker to elevate privileges locally.
7.0HIGH
CVE-2025-53136
all versions
Exposure of sensitive information to an unauthorized actor in Windows NT OS Kernel allows an authorized attacker to disclose infor
5.5MEDIUM
CVE-2025-53135
all versions
Concurrent execution using shared resource with improper synchronization ('race condition') in Windows DirectX allows an authorize
7.0HIGH
CVE-2025-53134
all versions
Concurrent execution using shared resource with improper synchronization ('race condition') in Windows Ancillary Function Driver f
7.0HIGH
CVE-2025-53132
all versions
Concurrent execution using shared resource with improper synchronization ('race condition') in Windows Win32K - GRFX allows an aut
7.8HIGH
CVE-2025-50177
all versions
Use after free in Windows Message Queuing allows an unauthorized attacker to execute code over a network.
8.1HIGH
CVE-2025-50173
all versions
Weak authentication in Windows Installer allows an authorized attacker to elevate privileges locally.
7.8HIGH
CVE-2025-50167
all versions
Concurrent execution using shared resource with improper synchronization ('race condition') in Windows Hyper-V allows an authorize
7.0HIGH
CVE-2025-50166
all versions
Integer overflow or wraparound in Windows Distributed Transaction Coordinator allows an authorized attacker to disclose informatio
6.5MEDIUM
CVE-2025-50164
all versions
Heap-based buffer overflow in Windows Routing and Remote Access Service (RRAS) allows an authorized attacker to execute code over
8.0HIGH
CVE-2025-50163
all versions
Heap-based buffer overflow in Windows Routing and Remote Access Service (RRAS) allows an unauthorized attacker to execute code ove
8.8HIGH
CVE-2025-50162
all versions
Heap-based buffer overflow in Windows Routing and Remote Access Service (RRAS) allows an authorized attacker to execute code over
8.0HIGH
CVE-2025-50161
all versions
Heap-based buffer overflow in Windows Win32K - GRFX allows an authorized attacker to elevate privileges locally.
7.3HIGH
CVE-2025-50160
all versions
Heap-based buffer overflow in Windows Routing and Remote Access Service (RRAS) allows an authorized attacker to execute code over
8.0HIGH
CVE-2025-50159
all versions
Use after free in Remote Access Point-to-Point Protocol (PPP) EAP-TLS allows an authorized attacker to elevate privileges locally.
7.3HIGH
CVE-2025-50158
all versions
Time-of-check time-of-use (toctou) race condition in Windows NTFS allows an unauthorized attacker to disclose information locally.
7.0HIGH
CVE-2025-50157
all versions
Use of uninitialized resource in Windows Routing and Remote Access Service (RRAS) allows an authorized attacker to disclose inform
5.7MEDIUM
CVE-2025-50156
all versions
Use of uninitialized resource in Windows Routing and Remote Access Service (RRAS) allows an authorized attacker to disclose inform
5.7MEDIUM
CVE-2025-50155
all versions
Access of resource using incompatible type ('type confusion') in Windows Push Notifications allows an authorized attacker to eleva
7.8HIGH
CVE-2025-50154
all versions
Exposure of sensitive information to an unauthorized actor in Windows File Explorer allows an unauthorized attacker to perform spo
6.5MEDIUM
CVE-2025-50153
all versions
Use after free in Desktop Windows Manager allows an authorized attacker to elevate privileges locally.
7.8HIGH
CVE-2025-49762
all versions
Concurrent execution using shared resource with improper synchronization ('race condition') in Windows Ancillary Function Driver f
7.0HIGH
CVE-2025-49761
all versions
Use after free in Windows Kernel allows an authorized attacker to elevate privileges locally.
7.8HIGH
CVE-2025-49757
all versions
Heap-based buffer overflow in Windows Routing and Remote Access Service (RRAS) allows an unauthorized attacker to execute code ove
8.8HIGH
CVE-2025-49743
all versions
Concurrent execution using shared resource with improper synchronization ('race condition') in Microsoft Graphics Component allows
6.7MEDIUM
CVE-2025-49753
all versions
Heap-based buffer overflow in Windows Routing and Remote Access Service (RRAS) allows an unauthorized attacker to execute code ove
8.8HIGH
CVE-2025-49742
all versions
Integer overflow or wraparound in Microsoft Graphics Component allows an authorized attacker to execute code locally.
7.8HIGH
CVE-2025-49735
all versions
Use after free in Windows KDC Proxy Service (KPSSVC) allows an unauthorized attacker to execute code over a network.
8.1HIGH
CVE-2025-49732
all versions
Heap-based buffer overflow in Microsoft Graphics Component allows an authorized attacker to elevate privileges locally.
7.8HIGH
CVE-2025-49730
all versions
Time-of-check time-of-use (toctou) race condition in Microsoft Windows QoS scheduler allows an authorized attacker to elevate priv
7.8HIGH
CVE-2025-49729
all versions
Heap-based buffer overflow in Windows Routing and Remote Access Service (RRAS) allows an unauthorized attacker to execute code ove
8.8HIGH
CVE-2025-49727
all versions
Heap-based buffer overflow in Windows Win32K - GRFX allows an authorized attacker to elevate privileges locally.
7.0HIGH
CVE-2025-49722
all versions
Uncontrolled resource consumption in Windows Print Spooler Components allows an authorized attacker to deny service over an adjace
5.7MEDIUM
CVE-2025-49721
all versions
Heap-based buffer overflow in Windows Fast FAT Driver allows an unauthorized attacker to elevate privileges locally.
7.8HIGH
CVE-2025-49716
all versions
Uncontrolled resource consumption in Windows Netlogon allows an unauthorized attacker to deny service over a network.
7.5HIGH
CVE-2025-49689
all versions
Integer overflow or wraparound in Virtual Hard Disk (VHDX) allows an unauthorized attacker to elevate privileges locally.
7.8HIGH
CVE-2025-49688
all versions
Double free in Windows Routing and Remote Access Service (RRAS) allows an unauthorized attacker to execute code over a network.
8.8HIGH
CVE-2025-49687
all versions
Out-of-bounds read in Microsoft Input Method Editor (IME) allows an authorized attacker to elevate privileges locally.
8.8HIGH
CVE-2025-49686
all versions
Null pointer dereference in Windows TCP/IP allows an authorized attacker to elevate privileges locally.
7.8HIGH
CVE-2025-49684
all versions
Buffer over-read in Storage Port Driver allows an authorized attacker to disclose information locally.
5.5MEDIUM
CVE-2025-49683
all versions
Integer overflow or wraparound in Virtual Hard Disk (VHDX) allows an unauthorized attacker to execute code locally.
7.8HIGH
CVE-2025-49681
all versions
Out-of-bounds read in Windows Routing and Remote Access Service (RRAS) allows an unauthorized attacker to disclose information ove
6.5MEDIUM
CVE-2025-49679
all versions
Numeric truncation error in Windows Shell allows an authorized attacker to elevate privileges locally.
7.8HIGH
CVE-2025-49678
all versions
Null pointer dereference in Windows NTFS allows an authorized attacker to elevate privileges locally.
7.0HIGH
CVE-2025-49676
all versions
Heap-based buffer overflow in Windows Routing and Remote Access Service (RRAS) allows an unauthorized attacker to execute code ove
8.8HIGH
CVE-2025-49675
all versions
Use after free in Kernel Streaming WOW Thunk Service Driver allows an authorized attacker to elevate privileges locally.
7.8HIGH
CVE-2025-49674
all versions
Heap-based buffer overflow in Windows Routing and Remote Access Service (RRAS) allows an unauthorized attacker to execute code ove
8.8HIGH
CVE-2025-49673
all versions
Heap-based buffer overflow in Windows Routing and Remote Access Service (RRAS) allows an unauthorized attacker to execute code ove
8.8HIGH
CVE-2025-49672
all versions
Heap-based buffer overflow in Windows Routing and Remote Access Service (RRAS) allows an unauthorized attacker to execute code ove
8.8HIGH
CVE-2025-49671
all versions
Exposure of sensitive information to an unauthorized actor in Windows Routing and Remote Access Service (RRAS) allows an unauthori
6.5MEDIUM
CVE-2025-49670
all versions
Heap-based buffer overflow in Windows Routing and Remote Access Service (RRAS) allows an unauthorized attacker to execute code ove
6.5MEDIUM
CVE-2025-49669
all versions
Heap-based buffer overflow in Windows Routing and Remote Access Service (RRAS) allows an unauthorized attacker to execute code ove
8.8HIGH
CVE-2025-49668
all versions
Heap-based buffer overflow in Windows Routing and Remote Access Service (RRAS) allows an unauthorized attacker to execute code ove
8.8HIGH
CVE-2025-49667
all versions
Double free in Windows Win32K - ICOMP allows an authorized attacker to elevate privileges locally.
7.8HIGH
CVE-2025-49665
all versions
Concurrent execution using shared resource with improper synchronization ('race condition') in Workspace Broker allows an authoriz
7.8HIGH
CVE-2025-49664
all versions
Exposure of sensitive information to an unauthorized actor in Windows User-Mode Driver Framework Host allows an authorized attacke
5.5MEDIUM
CVE-2025-49663
all versions
Heap-based buffer overflow in Windows Routing and Remote Access Service (RRAS) allows an unauthorized attacker to execute code ove
8.8HIGH
CVE-2025-49661
all versions
Untrusted pointer dereference in Windows Ancillary Function Driver for WinSock allows an authorized attacker to elevate privileges
7.8HIGH
CVE-2025-49660
all versions
Use after free in Windows Event Tracing allows an authorized attacker to elevate privileges locally.
7.8HIGH
CVE-2025-49659
all versions
Buffer over-read in Windows TDX.sys allows an authorized attacker to elevate privileges locally.
7.8HIGH
CVE-2025-49658
all versions
Out-of-bounds read in Windows TDX.sys allows an authorized attacker to disclose information locally.
5.5MEDIUM
CVE-2025-49657
all versions
Heap-based buffer overflow in Windows Routing and Remote Access Service (RRAS) allows an unauthorized attacker to execute code ove
8.8HIGH
CVE-2025-48824
all versions
Heap-based buffer overflow in Windows Routing and Remote Access Service (RRAS) allows an unauthorized attacker to execute code ove
8.8HIGH
CVE-2025-48821
all versions
Use after free in Windows Universal Plug and Play (UPnP) Device Host allows an authorized attacker to elevate privileges over an a
7.1HIGH
CVE-2025-48819
all versions
Sensitive data storage in improperly locked memory in Windows Universal Plug and Play (UPnP) Device Host allows an authorized atta
7.1HIGH
CVE-2025-48817
all versions
Relative path traversal in Remote Desktop Client allows an unauthorized attacker to execute code over a network.
8.8HIGH
CVE-2025-48816
all versions
Integer overflow or wraparound in HID class driver allows an authorized attacker to elevate privileges locally.
7.8HIGH
CVE-2025-48815
all versions
Access of resource using incompatible type ('type confusion') in Windows SSDP Service allows an authorized attacker to elevate pri
7.8HIGH
CVE-2025-48814
all versions
Missing authentication for critical function in Windows Remote Desktop Licensing Service allows an unauthorized attacker to bypass
7.5HIGH
CVE-2025-48808
all versions
Exposure of sensitive information to an unauthorized actor in Windows Kernel allows an authorized attacker to disclose information
5.5MEDIUM
CVE-2025-48806
all versions
Use after free in Microsoft MPEG-2 Video Extension allows an authorized attacker to execute code locally.
7.8HIGH
CVE-2025-48805
all versions
Heap-based buffer overflow in Microsoft MPEG-2 Video Extension allows an authorized attacker to execute code locally.
7.8HIGH
CVE-2025-48804
all versions
Acceptance of extraneous untrusted data with trusted data in Windows BitLocker allows an unauthorized attacker to bypass a securit
6.8MEDIUM
CVE-2025-48001
all versions
Time-of-check time-of-use (toctou) race condition in Windows BitLocker allows an unauthorized attacker to bypass a security featur
6.8MEDIUM
CVE-2025-47998
all versions
Heap-based buffer overflow in Windows Routing and Remote Access Service (RRAS) allows an unauthorized attacker to execute code ove
8.8HIGH
CVE-2025-47996
all versions
Integer underflow (wrap or wraparound) in Windows MBT Transport driver allows an authorized attacker to elevate privileges locally
7.8HIGH
CVE-2025-47987
all versions
Heap-based buffer overflow in Windows Cred SSProvider Protocol allows an authorized attacker to elevate privileges locally.
7.8HIGH
CVE-2025-47986
all versions
Use after free in Universal Print Management Service allows an authorized attacker to elevate privileges locally.
8.8HIGH
CVE-2025-47985
all versions
Untrusted pointer dereference in Windows Event Tracing allows an authorized attacker to elevate privileges locally.
7.8HIGH
CVE-2025-47984
all versions
Protection mechanism failure in Windows GDI allows an unauthorized attacker to disclose information over a network.
7.5HIGH
CVE-2025-47981
all versions
Heap-based buffer overflow in Windows SPNEGO Extended Negotiation allows an unauthorized attacker to execute code over a network.
9.8CRITICAL
CVE-2025-47980
all versions
Exposure of sensitive information to an unauthorized actor in Windows Imaging Component allows an unauthorized attacker to disclos
6.2MEDIUM
CVE-2025-47976
all versions
Use after free in Windows SSDP Service allows an authorized attacker to elevate privileges locally.
7.8HIGH
CVE-2025-47975
all versions
Double free in Windows SSDP Service allows an authorized attacker to elevate privileges locally.
7.0HIGH
CVE-2025-47973
all versions
Buffer over-read in Virtual Hard Disk (VHDX) allows an unauthorized attacker to elevate privileges locally.
7.8HIGH
CVE-2025-47971
all versions
Buffer over-read in Virtual Hard Disk (VHDX) allows an unauthorized attacker to elevate privileges locally.
7.8HIGH
CVE-2025-47955
all versions
Improper privilege management in Windows Remote Access Connection Manager allows an authorized attacker to elevate privileges loca
7.8HIGH
CVE-2025-47160
all versions
Protection mechanism failure in Windows Shell allows an unauthorized attacker to bypass a security feature over a network.
5.4MEDIUM
CVE-2025-33075
all versions
Improper link resolution before file access ('link following') in Windows Installer allows an authorized attacker to elevate privi
7.8HIGH
CVE-2025-33073
all versions
Improper access control in Windows SMB allows an authorized attacker to elevate privileges over a network.
8.8HIGH
CVE-2025-33071
all versions
Use after free in Windows KDC Proxy Service (KPSSVC) allows an unauthorized attacker to execute code over a network.
8.1HIGH
CVE-2025-33070
all versions
Use of uninitialized resource in Windows Netlogon allows an unauthorized attacker to elevate privileges over a network.
8.1HIGH
CVE-2025-33068
all versions
Uncontrolled resource consumption in Windows Standards-Based Storage Management Service allows an unauthorized attacker to deny se
7.5HIGH
CVE-2025-33066
all versions
Heap-based buffer overflow in Windows Routing and Remote Access Service (RRAS) allows an unauthorized attacker to execute code ove
8.8HIGH
CVE-2025-33064
all versions
Heap-based buffer overflow in Windows Routing and Remote Access Service (RRAS) allows an authorized attacker to execute code over
8.8HIGH
CVE-2025-33060
all versions
Out-of-bounds read in Windows Storage Management Provider allows an authorized attacker to disclose information locally.
5.5MEDIUM
CVE-2025-33057
all versions
Null pointer dereference in Windows Local Security Authority (LSA) allows an authorized attacker to deny service over a network.
6.5MEDIUM
CVE-2025-33056
all versions
Improper access control in Microsoft Local Security Authority Server (lsasrv) allows an unauthorized attacker to deny service over
7.5HIGH
CVE-2025-33053
all versions
External control of file name or path in Internet Shortcut Files allows an unauthorized attacker to execute code over a network.
8.8HIGH
CVE-2025-32724
all versions
Uncontrolled resource consumption in Windows Local Security Authority Subsystem Service (LSASS) allows an unauthorized attacker to
7.5HIGH
CVE-2025-32722
all versions
Improper access control in Windows Storage Port Driver allows an authorized attacker to disclose information locally.
5.5MEDIUM
CVE-2025-32720
all versions
Out-of-bounds read in Windows Storage Management Provider allows an authorized attacker to disclose information locally.
5.5MEDIUM
CVE-2025-32718
all versions
Integer overflow or wraparound in Windows SMB allows an authorized attacker to elevate privileges locally.
7.8HIGH
CVE-2025-32716
all versions
Out-of-bounds read in Windows Media allows an authorized attacker to elevate privileges locally.
7.8HIGH
CVE-2025-32715
all versions
Out-of-bounds read in Remote Desktop Client allows an unauthorized attacker to disclose information over a network.
6.5MEDIUM
CVE-2025-32714
all versions
Improper access control in Windows Installer allows an authorized attacker to elevate privileges locally.
7.8HIGH
CVE-2025-32713
all versions
Heap-based buffer overflow in Windows Common Log File System Driver allows an authorized attacker to elevate privileges locally.
7.8HIGH
CVE-2025-32712
all versions
Use after free in Windows Win32K - GRFX allows an authorized attacker to elevate privileges locally.
7.8HIGH
CVE-2025-32710
all versions
Use after free in Windows Remote Desktop Services allows an unauthorized attacker to execute code over a network.
8.1HIGH
CVE-2025-47827
all versions
In IGEL OS before 11, Secure Boot can be bypassed because the igel-flash-driver module improperly verifies a cryptographic signatu
4.6MEDIUM
CVE-2025-32709
all versions
Null pointer dereference in Windows Ancillary Function Driver for WinSock allows an authorized attacker to elevate privileges loca
7.8HIGH
CVE-2025-32707
all versions
Out-of-bounds read in Windows NTFS allows an unauthorized attacker to elevate privileges locally.
7.8HIGH
CVE-2025-32706
all versions
Improper input validation in Windows Common Log File System Driver allows an authorized attacker to elevate privileges locally.
7.8HIGH
CVE-2025-32701
all versions
Use after free in Windows Common Log File System Driver allows an authorized attacker to elevate privileges locally.
7.8HIGH
CVE-2025-30397
all versions
Access of resource using incompatible type ('type confusion') in Microsoft Scripting Engine allows an unauthorized attacker to exe
7.5HIGH
CVE-2025-30394
all versions
Sensitive data storage in improperly locked memory in Remote Desktop Gateway Service allows an unauthorized attacker to deny servi
5.9MEDIUM
CVE-2025-30388
all versions
Heap-based buffer overflow in Windows Win32K - GRFX allows an unauthorized attacker to execute code locally.
7.8HIGH
CVE-2025-30385
all versions
Use after free in Windows Common Log File System Driver allows an authorized attacker to elevate privileges locally.
7.8HIGH
CVE-2025-29974
all versions
Integer underflow (wrap or wraparound) in Windows Kernel allows an unauthorized attacker to disclose information over an adjacent
5.7MEDIUM
CVE-2025-29969
all versions
Time-of-check time-of-use (toctou) race condition in Windows Fundamentals allows an authorized attacker to execute code over a net
7.5HIGH
CVE-2025-29968
all versions
Improper input validation in Active Directory Certificate Services (AD CS) allows an authorized attacker to deny service over a ne
6.5MEDIUM
CVE-2025-29967
all versions
Heap-based buffer overflow in Remote Desktop Gateway Service allows an unauthorized attacker to execute code over a network.
8.8HIGH
CVE-2025-29966
all versions
Heap-based buffer overflow in Windows Remote Desktop allows an unauthorized attacker to execute code over a network.
8.8HIGH
CVE-2025-29962
all versions
Heap-based buffer overflow in Windows Media allows an unauthorized attacker to execute code over a network.
8.8HIGH
CVE-2025-29961
all versions
Out-of-bounds read in Windows Routing and Remote Access Service (RRAS) allows an unauthorized attacker to disclose information ove
6.5MEDIUM
CVE-2025-29960
all versions
Out-of-bounds read in Windows Routing and Remote Access Service (RRAS) allows an unauthorized attacker to disclose information ove
6.5MEDIUM
CVE-2025-29959
all versions
Use of uninitialized resource in Windows Routing and Remote Access Service (RRAS) allows an unauthorized attacker to disclose info
6.5MEDIUM
CVE-2025-29958
all versions
Use of uninitialized resource in Windows Routing and Remote Access Service (RRAS) allows an unauthorized attacker to disclose info
6.5MEDIUM
CVE-2025-29957
all versions
Uncontrolled resource consumption in Windows Deployment Services allows an unauthorized attacker to deny service locally.
6.2MEDIUM
CVE-2025-29956
all versions
Buffer over-read in Windows SMB allows an authorized attacker to disclose information over a network.
5.4MEDIUM
CVE-2025-29954
all versions
Uncontrolled resource consumption in Windows LDAP - Lightweight Directory Access Protocol allows an unauthorized attacker to deny
5.9MEDIUM
CVE-2025-29839
all versions
Out-of-bounds read in Windows File Server allows an unauthorized attacker to disclose information locally.
4.0MEDIUM
CVE-2025-29837
all versions
Improper link resolution before file access ('link following') in Windows Installer allows an authorized attacker to disclose info
5.5MEDIUM
CVE-2025-29836
all versions
Out-of-bounds read in Windows Routing and Remote Access Service (RRAS) allows an unauthorized attacker to disclose information ove
6.5MEDIUM
CVE-2025-29835
all versions
Out-of-bounds read in Windows Routing and Remote Access Service (RRAS) allows an unauthorized attacker to disclose information ove
6.5MEDIUM
CVE-2025-29833
all versions
Time-of-check time-of-use (toctou) race condition in Windows Virtual Machine Bus allows an unauthorized attacker to execute code l
7.7HIGH
CVE-2025-29832
all versions
Out-of-bounds read in Windows Routing and Remote Access Service (RRAS) allows an unauthorized attacker to disclose information ove
6.5MEDIUM
CVE-2025-29831
all versions
Use after free in Remote Desktop Gateway Service allows an unauthorized attacker to execute code over a network.
7.5HIGH
CVE-2025-29830
all versions
Use of uninitialized resource in Windows Routing and Remote Access Service (RRAS) allows an unauthorized attacker to disclose info
6.5MEDIUM
CVE-2025-27468
all versions
Improper privilege management in Windows Secure Kernel Mode allows an authorized attacker to elevate privileges locally.
7.0HIGH
CVE-2025-24063
all versions
Heap-based buffer overflow in Windows Kernel allows an authorized attacker to elevate privileges locally.
7.8HIGH
CVE-2025-29824
all versions
Use after free in Windows Common Log File System Driver allows an authorized attacker to elevate privileges locally.
7.8HIGH
CVE-2025-29810
all versions
Improper access control in Active Directory Domain Services allows an authorized attacker to elevate privileges over a network.
7.5HIGH
CVE-2025-27742
all versions
Out-of-bounds read in Windows NTFS allows an unauthorized attacker to disclose information locally.
5.5MEDIUM
CVE-2025-27741
all versions
Out-of-bounds read in Windows NTFS allows an unauthorized attacker to elevate privileges locally.
7.8HIGH
CVE-2025-27740
all versions
Weak authentication in Windows Active Directory Certificate Services allows an authorized attacker to elevate privileges over a ne
8.8HIGH
CVE-2025-27738
all versions
Improper access control in Windows Resilient File System (ReFS) allows an authorized attacker to disclose information over a netwo
6.5MEDIUM
CVE-2025-27737
all versions
Improper input validation in Windows Security Zone Mapping allows an unauthorized attacker to bypass a security feature locally.
8.6HIGH
CVE-2025-27733
all versions
Out-of-bounds read in Windows NTFS allows an unauthorized attacker to elevate privileges locally.
7.8HIGH
CVE-2025-27732
all versions
Sensitive data storage in improperly locked memory in Windows Win32K - GRFX allows an authorized attacker to elevate privileges lo
7.0HIGH
CVE-2025-27727
all versions
Improper link resolution before file access ('link following') in Windows Installer allows an authorized attacker to elevate privi
7.8HIGH
CVE-2025-27487
all versions
Heap-based buffer overflow in Remote Desktop Client allows an authorized attacker to execute code over a network.
8.0HIGH
CVE-2025-27486
all versions
Uncontrolled resource consumption in Windows Standards-Based Storage Management Service allows an unauthorized attacker to deny se
7.5HIGH
CVE-2025-27485
all versions
Uncontrolled resource consumption in Windows Standards-Based Storage Management Service allows an unauthorized attacker to deny se
7.5HIGH
CVE-2025-27484
all versions
Sensitive data storage in improperly locked memory in Windows Universal Plug and Play (UPnP) Device Host allows an authorized atta
7.5HIGH
CVE-2025-27483
all versions
Out-of-bounds read in Windows NTFS allows an unauthorized attacker to elevate privileges locally.
7.8HIGH
CVE-2025-27481
all versions
Stack-based buffer overflow in Windows Telephony Service allows an unauthorized attacker to execute code over a network.
8.8HIGH
CVE-2025-27480
all versions
Use after free in Remote Desktop Gateway Service allows an unauthorized attacker to execute code over a network.
8.1HIGH
CVE-2025-27479
all versions
Insufficient resource pool in Windows Kerberos allows an unauthorized attacker to deny service over a network.
7.5HIGH
CVE-2025-27478
all versions
Heap-based buffer overflow in Windows Local Security Authority (LSA) allows an authorized attacker to elevate privileges locally.
7.0HIGH
CVE-2025-27477
all versions
Heap-based buffer overflow in Windows Telephony Service allows an unauthorized attacker to execute code over a network.
8.8HIGH
CVE-2025-27474
all versions
Use of uninitialized resource in Windows Routing and Remote Access Service (RRAS) allows an unauthorized attacker to disclose info
6.5MEDIUM
CVE-2025-27473
all versions
Uncontrolled resource consumption in Windows HTTP.sys allows an unauthorized attacker to deny service over a network.
7.5HIGH
CVE-2025-27472
all versions
Protection mechanism failure in Windows Mark of the Web (MOTW) allows an unauthorized attacker to bypass a security feature over a
5.4MEDIUM
CVE-2025-27471
all versions
Sensitive data storage in improperly locked memory in Microsoft Streaming Service allows an unauthorized attacker to deny service
5.9MEDIUM
CVE-2025-27470
all versions
Uncontrolled resource consumption in Windows Standards-Based Storage Management Service allows an unauthorized attacker to deny se
7.5HIGH
CVE-2025-27469
all versions
Uncontrolled resource consumption in Windows LDAP - Lightweight Directory Access Protocol allows an unauthorized attacker to deny
7.5HIGH
CVE-2025-26688
all versions
Stack-based buffer overflow in Microsoft Virtual Hard Drive allows an authorized attacker to elevate privileges locally.
7.8HIGH
CVE-2025-26687
all versions
Use after free in Windows Win32K - GRFX allows an unauthorized attacker to elevate privileges over a network.
7.5HIGH
CVE-2025-26686
all versions
Sensitive data storage in improperly locked memory in Windows TCP/IP allows an unauthorized attacker to execute code over a networ
7.5HIGH
CVE-2025-26680
all versions
Uncontrolled resource consumption in Windows Standards-Based Storage Management Service allows an unauthorized attacker to deny se
7.5HIGH
CVE-2025-26679
all versions
Use after free in RPC Endpoint Mapper Service allows an authorized attacker to elevate privileges locally.
7.8HIGH
CVE-2025-26676
all versions
Buffer over-read in Windows Routing and Remote Access Service (RRAS) allows an unauthorized attacker to disclose information over
6.5MEDIUM
CVE-2025-26673
all versions
Uncontrolled resource consumption in Windows LDAP - Lightweight Directory Access Protocol allows an unauthorized attacker to deny
7.5HIGH
CVE-2025-26672
all versions
Buffer over-read in Windows Routing and Remote Access Service (RRAS) allows an unauthorized attacker to disclose information over
6.5MEDIUM
CVE-2025-26671
all versions
Use after free in Windows Remote Desktop Services allows an unauthorized attacker to execute code over a network.
8.1HIGH
CVE-2025-26670
all versions
Use after free in Windows LDAP - Lightweight Directory Access Protocol allows an unauthorized attacker to execute code over a netw
8.1HIGH
CVE-2025-26669
all versions
Out-of-bounds read in Windows Routing and Remote Access Service (RRAS) allows an unauthorized attacker to disclose information ove
8.8HIGH
CVE-2025-26668
all versions
Heap-based buffer overflow in Windows Routing and Remote Access Service (RRAS) allows an unauthorized attacker to execute code ove
7.5HIGH
Vulnerabilities
CISA KEV catalog
CWE weaknesses
CAPEC attack patterns
Package vulnerabilities
Threat intelligence
Threat actors
Tools & malware
ATT&CK techniques
IOCs
Detection & defense
Sigma rules
YARA rules
Atomic Red Team tests
D3FEND countermeasures
Compliance
NIST 800-53
ISO 27001:2022
SOC 2 TSC
PCI-DSS v4.0
CIS Controls v8.1
About
All capabilities
Live statistics
Data sources
Privacy policy
Terms of service
threatengine.sh  ·  Open-source threat intelligence platform  ·  100+ authoritative sources  ·  Every fact traces to its origin