Microsoft

Windows 11 25h2

1189 Schwachstellen gefunden.

Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
Medienbericht
  • EPSS 0.22%
  • Veröffentlicht 11.08.2026 17:05:40
  • Zuletzt bearbeitet 16.08.2026 19:16:41

Missing authentication for critical function in Windows RPC API allows an authorized attacker to elevate privileges locally.

Medienbericht
  • EPSS 0.43%
  • Veröffentlicht 11.08.2026 17:05:39
  • Zuletzt bearbeitet 14.08.2026 18:21:06

Improper link resolution before file access ('link following') in Windows Management Services allows an authorized attacker to deny service locally.

Medienbericht
  • EPSS 0.31%
  • Veröffentlicht 11.08.2026 17:05:38
  • Zuletzt bearbeitet 16.08.2026 19:17:27

Heap-based buffer overflow in Windows Installer allows an authorized attacker to elevate privileges locally.

Medienbericht
  • EPSS 0.24%
  • Veröffentlicht 11.08.2026 17:05:37
  • Zuletzt bearbeitet 16.08.2026 19:17:27

Heap-based buffer overflow in Windows Installer allows an authorized attacker to elevate privileges locally.

Medienbericht
  • EPSS 0.31%
  • Veröffentlicht 11.08.2026 17:05:37
  • Zuletzt bearbeitet 16.08.2026 19:17:27

Stack-based buffer overflow in Windows Installer allows an authorized attacker to elevate privileges locally.

Medienbericht
  • EPSS 3.42%
  • Veröffentlicht 11.08.2026 17:05:36
  • Zuletzt bearbeitet 14.08.2026 18:06:11

Improper access control in Windows Cross Device Service allows an authorized attacker to elevate privileges locally.

Medienbericht
  • EPSS 0.31%
  • Veröffentlicht 11.08.2026 17:05:36
  • Zuletzt bearbeitet 16.08.2026 19:17:27

Stack-based buffer overflow in Windows Installer allows an authorized attacker to elevate privileges locally.

Medienbericht
  • EPSS 0.2%
  • Veröffentlicht 11.08.2026 17:05:35
  • Zuletzt bearbeitet 13.08.2026 17:23:50

Use after free in Windows Autopilot allows an authorized attacker to elevate privileges locally.

Medienbericht
  • EPSS 0.44%
  • Veröffentlicht 11.08.2026 17:05:34
  • Zuletzt bearbeitet 16.08.2026 19:16:47

Concurrent execution using shared resource with improper synchronization ('race condition') in Remote Desktop Client allows an unauthorized attacker to execute code over a network.

Medienbericht
  • EPSS 0.32%
  • Veröffentlicht 11.08.2026 17:05:31
  • Zuletzt bearbeitet 17.08.2026 18:56:28

Heap-based buffer overflow in Windows DNS allows an authorized attacker to elevate privileges locally.