CVE-2025-29959
- EPSS 0.38%
- Published 13.05.2025 16:58:28
- Last modified 19.05.2025 14:22:49
Use of uninitialized resource in Windows Routing and Remote Access Service (RRAS) allows an unauthorized attacker to disclose information over a network.
CVE-2025-29810
- EPSS 0.02%
- Published 08.04.2025 17:24:17
- Last modified 10.07.2025 15:01:41
Improper access control in Active Directory Domain Services allows an authorized attacker to elevate privileges over a network.
CVE-2025-29809
- EPSS 0.33%
- Published 08.04.2025 17:24:15
- Last modified 10.07.2025 14:48:27
Insecure storage of sensitive information in Windows Kerberos allows an authorized attacker to bypass a security feature locally.
CVE-2025-27738
- EPSS 0.12%
- Published 08.04.2025 17:24:11
- Last modified 10.07.2025 15:47:42
Improper access control in Windows Resilient File System (ReFS) allows an authorized attacker to disclose information over a network.
CVE-2025-27737
- EPSS 0.08%
- Published 08.04.2025 17:24:10
- Last modified 10.07.2025 15:46:02
Improper input validation in Windows Security Zone Mapping allows an unauthorized attacker to bypass a security feature locally.
- EPSS 0.03%
- Published 08.04.2025 17:24:09
- Last modified 10.07.2025 15:43:55
Insufficient verification of data authenticity in Windows Virtualization-Based Security (VBS) Enclave allows an authorized attacker to bypass a security feature locally.
CVE-2025-27736
- EPSS 0.05%
- Published 08.04.2025 17:24:09
- Last modified 10.07.2025 15:44:50
Exposure of sensitive information to an unauthorized actor in Windows Power Dependency Coordinator allows an authorized attacker to disclose information locally.
- EPSS 0.03%
- Published 08.04.2025 17:24:08
- Last modified 08.07.2025 17:10:00
Sensitive data storage in improperly locked memory in Windows Win32K - GRFX allows an authorized attacker to elevate privileges locally.
CVE-2025-27733
- EPSS 0.06%
- Published 08.04.2025 17:24:08
- Last modified 10.07.2025 15:41:32
Out-of-bounds read in Windows NTFS allows an unauthorized attacker to elevate privileges locally.
CVE-2025-27727
- EPSS 0.17%
- Published 08.04.2025 17:24:05
- Last modified 08.07.2025 16:28:26
Improper link resolution before file access ('link following') in Windows Installer allows an authorized attacker to elevate privileges locally.