Microsoft

Windows 11 25h2

1816 Schwachstellen gefunden.

Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
Medienbericht
  • EPSS 0.72%
  • Veröffentlicht 08.09.2026 17:18:49
  • Zuletzt bearbeitet 24.09.2026 23:19:11

Out-of-bounds read in Windows Remote Desktop Services allows an authorized attacker to elevate privileges over a network.

Medienbericht
  • EPSS 0.51%
  • Veröffentlicht 08.09.2026 17:18:34
  • Zuletzt bearbeitet 25.09.2026 22:18:37

Insertion of sensitive information into externally-accessible file or directory in Windows Storage allows an authorized attacker to disclose information locally.

Medienbericht
  • EPSS 0.19%
  • Veröffentlicht 08.09.2026 17:18:30
  • Zuletzt bearbeitet 10.09.2026 15:24:21

Time-of-check time-of-use (toctou) race condition in Windows MIDI Service Module allows an authorized attacker to elevate privileges locally.

Medienbericht
  • EPSS 0.2%
  • Veröffentlicht 08.09.2026 17:18:28
  • Zuletzt bearbeitet 11.09.2026 18:54:07

Use after free in Windows Security Health Service allows an authorized attacker to elevate privileges locally.

Medienbericht
  • EPSS 0.48%
  • Veröffentlicht 08.09.2026 17:18:27
  • Zuletzt bearbeitet 11.09.2026 18:57:20

Out-of-bounds read in Microsoft Windows SCSI Class System File allows an unauthorized attacker to disclose information with a physical attack.

Medienbericht
  • EPSS 0.4%
  • Veröffentlicht 08.09.2026 17:18:27
  • Zuletzt bearbeitet 11.09.2026 18:55:06

Out-of-bounds read in Windows CD-ROM Driver allows an authorized attacker to disclose information locally.

Medienbericht
  • EPSS 0.94%
  • Veröffentlicht 08.09.2026 17:18:26
  • Zuletzt bearbeitet 24.09.2026 23:19:06

Integer underflow (wrap or wraparound) in Microsoft Windows SCSI Class System File allows an unauthorized attacker to disclose information over a network.

Medienbericht
  • EPSS 0.51%
  • Veröffentlicht 08.09.2026 17:18:26
  • Zuletzt bearbeitet 11.09.2026 20:05:41

Out-of-bounds read in Xbox allows an unauthorized attacker to disclose information with a physical attack.

Medienbericht
  • EPSS 0.45%
  • Veröffentlicht 08.09.2026 17:18:25
  • Zuletzt bearbeitet 11.09.2026 18:58:25

Untrusted pointer dereference in Microsoft Windows SCSI Class System File allows an unauthorized attacker to elevate privileges with a physical attack.

Medienbericht
  • EPSS 0.24%
  • Veröffentlicht 08.09.2026 17:18:24
  • Zuletzt bearbeitet 09.09.2026 17:17:43

Heap-based buffer overflow in Windows Biometric Service allows an authorized attacker to elevate privileges locally.