Microsoft

Windows 11 24h2

1921 Schwachstellen gefunden.

Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
  • EPSS 0.4%
  • Veröffentlicht 14.10.2025 17:00:55
  • Zuletzt bearbeitet 23.10.2025 15:45:29

Out-of-bounds read in Windows Kernel allows an authorized attacker to elevate privileges locally.

  • EPSS 0.45%
  • Veröffentlicht 14.10.2025 17:00:54
  • Zuletzt bearbeitet 20.10.2025 20:06:19

Improper access control in Microsoft PowerShell allows an authorized attacker to elevate privileges locally.

  • EPSS 0.32%
  • Veröffentlicht 14.10.2025 17:00:54
  • Zuletzt bearbeitet 20.10.2025 20:13:38

Reliance on untrusted inputs in a security decision in Windows Virtualization-Based Security (VBS) Enclave allows an authorized attacker to elevate privileges locally.

  • EPSS 0.23%
  • Veröffentlicht 14.10.2025 17:00:53
  • Zuletzt bearbeitet 23.10.2025 15:48:52

Use of a key past its expiration date in Virtual Secure Mode allows an authorized attacker to perform spoofing locally.

  • EPSS 0.99%
  • Veröffentlicht 14.10.2025 17:00:53
  • Zuletzt bearbeitet 22.10.2025 16:37:25

Uncontrolled resource consumption in Windows Remote Procedure Call allows an unauthorized attacker to deny service over a network.

  • EPSS 0.59%
  • Veröffentlicht 14.10.2025 17:00:51
  • Zuletzt bearbeitet 22.10.2025 16:44:40

Exposure of sensitive information to an unauthorized actor in Windows Taskbar Live allows an unauthorized attacker to disclose information with a physical attack.

  • EPSS 1.85%
  • Veröffentlicht 14.10.2025 17:00:51
  • Zuletzt bearbeitet 17.10.2025 15:30:47

Heap-based buffer overflow in Internet Explorer allows an unauthorized attacker to execute code over a network.

  • EPSS 0.37%
  • Veröffentlicht 14.10.2025 17:00:49
  • Zuletzt bearbeitet 22.10.2025 16:45:05

Use after free in Windows Bluetooth Service allows an authorized attacker to elevate privileges locally.

  • EPSS 0.59%
  • Veröffentlicht 14.10.2025 17:00:48
  • Zuletzt bearbeitet 10.02.2026 18:16:18

Concurrent execution using shared resource with improper synchronization ('race condition') in Inbox COM Objects allows an unauthorized attacker to execute code locally.

  • EPSS 0.97%
  • Veröffentlicht 14.10.2025 17:00:48
  • Zuletzt bearbeitet 27.10.2025 19:39:57

Exposure of sensitive information to an unauthorized actor in Windows NTLM allows an unauthorized attacker to perform spoofing locally.