Microsoft

Windows 11 25h2

1816 Schwachstellen gefunden.

Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
Medienbericht
  • EPSS 0.15%
  • Veröffentlicht 14.07.2026 17:05:50
  • Zuletzt bearbeitet 22.07.2026 16:17:29

Concurrent execution using shared resource with improper synchronization ('race condition') in Windows Clipboard Server allows an authorized attacker to elevate privileges locally.

Medienbericht
  • EPSS 0.26%
  • Veröffentlicht 14.07.2026 17:05:50
  • Zuletzt bearbeitet 22.07.2026 16:17:30

Improperly implemented security check for standard in Windows Secure Boot allows an authorized attacker to bypass a security feature locally.

Medienbericht
  • EPSS 0.27%
  • Veröffentlicht 14.07.2026 17:05:49
  • Zuletzt bearbeitet 22.07.2026 16:17:29

Heap-based buffer overflow in Windows NTFS allows an unauthorized attacker to execute code locally.

Medienbericht
  • EPSS 0.33%
  • Veröffentlicht 14.07.2026 17:05:48
  • Zuletzt bearbeitet 22.07.2026 16:17:29

Improper link resolution before file access ('link following') in Universal Plug and Play (upnp.dll) allows an authorized attacker to disclose information locally.

Medienbericht
  • EPSS 0.62%
  • Veröffentlicht 14.07.2026 17:05:47
  • Zuletzt bearbeitet 22.07.2026 16:17:29

Heap-based buffer overflow in Active Directory Domain Services allows an authorized attacker to execute code over a network.

Medienbericht
  • EPSS 0.15%
  • Veröffentlicht 14.07.2026 17:05:45
  • Zuletzt bearbeitet 22.07.2026 16:17:22

Concurrent execution using shared resource with improper synchronization ('race condition') in Windows Push Notifications allows an authorized attacker to elevate privileges locally.

Medienbericht
  • EPSS 0.82%
  • Veröffentlicht 14.07.2026 17:05:44
  • Zuletzt bearbeitet 22.07.2026 16:17:18

Memory allocation with excessive size value in Windows Local Security Authority Subsystem Service (LSASS) allows an unauthorized attacker to deny service over a network.

Medienbericht
  • EPSS 0.91%
  • Veröffentlicht 14.07.2026 17:05:43
  • Zuletzt bearbeitet 22.07.2026 16:17:17

Protection mechanism failure in Windows Event Logging Service allows an authorized attacker to disclose information over a network.

Medienbericht
  • EPSS 0.82%
  • Veröffentlicht 14.07.2026 17:05:43
  • Zuletzt bearbeitet 22.07.2026 16:17:22

Missing release of memory after effective lifetime in Windows Cryptographic Services allows an unauthorized attacker to deny service over a network.

Medienbericht
  • EPSS 0.7%
  • Veröffentlicht 14.07.2026 17:05:42
  • Zuletzt bearbeitet 17.09.2026 23:17:03

Relative path traversal in Windows PowerShell allows an authorized attacker to execute code over a network.