CVE-2025-26688
- EPSS 0.55%
- Veröffentlicht 08.04.2025 17:23:14
- Zuletzt bearbeitet 09.07.2025 16:45:20
Stack-based buffer overflow in Microsoft Virtual Hard Drive allows an authorized attacker to elevate privileges locally.
CVE-2025-27471
- EPSS 1.17%
- Veröffentlicht 08.04.2025 17:23:14
- Zuletzt bearbeitet 08.07.2025 19:07:58
Sensitive data storage in improperly locked memory in Microsoft Streaming Service allows an unauthorized attacker to deny service over a network.
CVE-2025-26687
- EPSS 1.08%
- Veröffentlicht 08.04.2025 17:23:13
- Zuletzt bearbeitet 09.07.2025 16:44:36
Use after free in Windows Win32K - GRFX allows an unauthorized attacker to elevate privileges over a network.
CVE-2025-26686
- EPSS 1.5%
- Veröffentlicht 08.04.2025 17:23:12
- Zuletzt bearbeitet 09.07.2025 16:32:05
Sensitive data storage in improperly locked memory in Windows TCP/IP allows an unauthorized attacker to execute code over a network.
CVE-2025-26668
- EPSS 1.16%
- Veröffentlicht 08.04.2025 17:23:09
- Zuletzt bearbeitet 09.07.2025 14:14:33
Heap-based buffer overflow in Windows Routing and Remote Access Service (RRAS) allows an unauthorized attacker to execute code over a network.
CVE-2025-26669
- EPSS 1.41%
- Veröffentlicht 08.04.2025 17:23:08
- Zuletzt bearbeitet 09.07.2025 14:14:09
Out-of-bounds read in Windows Routing and Remote Access Service (RRAS) allows an unauthorized attacker to disclose information over a network.
- EPSS 0.32%
- Veröffentlicht 08.04.2025 17:23:06
- Zuletzt bearbeitet 09.07.2025 16:38:34
Sensitive data storage in improperly locked memory in Windows upnphost.dll allows an authorized attacker to elevate privileges locally.
CVE-2025-26663
- EPSS 1.88%
- Veröffentlicht 08.04.2025 17:23:04
- Zuletzt bearbeitet 10.07.2025 15:38:00
Use after free in Windows LDAP - Lightweight Directory Access Protocol allows an unauthorized attacker to execute code over a network.
CVE-2025-26645
- EPSS 3.38%
- Veröffentlicht 11.03.2025 16:59:25
- Zuletzt bearbeitet 07.07.2025 18:47:48
Relative path traversal in Remote Desktop Client allows an unauthorized attacker to execute code over a network.
- EPSS 30.39%
- Veröffentlicht 11.03.2025 16:59:24
- Zuletzt bearbeitet 24.09.2026 13:10:00
Improper neutralization in Microsoft Management Console allows an unauthorized attacker to bypass a security feature locally.