Microsoft

Windows Server 2025

2593 Schwachstellen gefunden.

Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
  • EPSS 1.72%
  • Veröffentlicht 14.07.2026 17:08:19
  • Zuletzt bearbeitet 16.07.2026 19:58:42

Use after free in Windows Kernel allows an authorized attacker to elevate privileges locally.

  • EPSS 0.31%
  • Veröffentlicht 14.07.2026 17:08:18
  • Zuletzt bearbeitet 22.07.2026 16:20:10

Heap-based buffer overflow in Microsoft Windows Search Component allows an authorized attacker to elevate privileges locally.

  • EPSS 0.37%
  • Veröffentlicht 14.07.2026 17:08:18
  • Zuletzt bearbeitet 21.07.2026 19:55:23

Improper neutralization of input during web page generation ('cross-site scripting') in Active Directory Federation Services (AD FS) allows an authorized attacker to perform spoofing over a network.

  • EPSS 0.31%
  • Veröffentlicht 14.07.2026 17:08:17
  • Zuletzt bearbeitet 21.07.2026 19:54:45

Integer overflow or wraparound in Windows Active Directory allows an authorized attacker to elevate privileges locally.

  • EPSS 0.2%
  • Veröffentlicht 14.07.2026 17:08:15
  • Zuletzt bearbeitet 16.07.2026 19:59:23

Null pointer dereference in Windows Kernel allows an authorized attacker to elevate privileges locally.

  • EPSS 0.26%
  • Veröffentlicht 14.07.2026 17:08:15
  • Zuletzt bearbeitet 22.07.2026 16:17:18

Use after free in Windows USB Print Driver allows an authorized attacker to elevate privileges locally.

  • EPSS 0.24%
  • Veröffentlicht 14.07.2026 17:08:14
  • Zuletzt bearbeitet 16.07.2026 20:01:27

Out-of-bounds read in Windows Kernel allows an authorized attacker to elevate privileges locally.

  • EPSS 0.15%
  • Veröffentlicht 14.07.2026 17:08:14
  • Zuletzt bearbeitet 22.07.2026 15:37:02

Use after free in Windows NTFS allows an authorized attacker to elevate privileges locally.

  • EPSS 0.31%
  • Veröffentlicht 14.07.2026 17:08:13
  • Zuletzt bearbeitet 22.07.2026 15:03:36

Heap-based buffer overflow in Windows NTFS allows an unauthorized attacker to elevate privileges with a physical attack.

  • EPSS 0.15%
  • Veröffentlicht 14.07.2026 17:08:13
  • Zuletzt bearbeitet 22.07.2026 15:26:44

Concurrent execution using shared resource with improper synchronization ('race condition') in Windows Telephony Service allows an authorized attacker to elevate privileges locally.