- EPSS 0.39%
- Veröffentlicht 08.04.2025 17:24:09
- Zuletzt bearbeitet 10.07.2025 15:43:55
Insufficient verification of data authenticity in Windows Virtualization-Based Security (VBS) Enclave allows an authorized attacker to bypass a security feature locally.
CVE-2025-27736
- EPSS 0.85%
- Veröffentlicht 08.04.2025 17:24:09
- Zuletzt bearbeitet 10.07.2025 15:44:50
Exposure of sensitive information to an unauthorized actor in Windows Power Dependency Coordinator allows an authorized attacker to disclose information locally.
- EPSS 0.34%
- Veröffentlicht 08.04.2025 17:24:08
- Zuletzt bearbeitet 08.07.2025 17:10:00
Sensitive data storage in improperly locked memory in Windows Win32K - GRFX allows an authorized attacker to elevate privileges locally.
CVE-2025-27733
- EPSS 0.7%
- Veröffentlicht 08.04.2025 17:24:08
- Zuletzt bearbeitet 10.07.2025 15:41:32
Out-of-bounds read in Windows NTFS allows an unauthorized attacker to elevate privileges locally.
CVE-2025-27727
- EPSS 0.93%
- Veröffentlicht 08.04.2025 17:24:05
- Zuletzt bearbeitet 08.07.2025 16:28:26
Improper link resolution before file access ('link following') in Windows Installer allows an authorized attacker to elevate privileges locally.
CVE-2025-27491
- EPSS 1.5%
- Veröffentlicht 08.04.2025 17:24:04
- Zuletzt bearbeitet 08.07.2025 17:16:00
Use after free in Windows Hyper-V allows an authorized attacker to execute code over a network.
CVE-2025-27486
- EPSS 1.92%
- Veröffentlicht 08.04.2025 17:24:02
- Zuletzt bearbeitet 08.07.2025 17:14:17
Uncontrolled resource consumption in Windows Standards-Based Storage Management Service allows an unauthorized attacker to deny service over a network.
- EPSS 1.41%
- Veröffentlicht 08.04.2025 17:24:01
- Zuletzt bearbeitet 07.07.2025 18:25:39
Heap-based buffer overflow in Remote Desktop Client allows an authorized attacker to execute code over a network.
CVE-2025-27483
- EPSS 0.73%
- Veröffentlicht 08.04.2025 17:24:00
- Zuletzt bearbeitet 08.07.2025 19:14:56
Out-of-bounds read in Windows NTFS allows an unauthorized attacker to elevate privileges locally.
CVE-2025-27481
- EPSS 1.17%
- Veröffentlicht 08.04.2025 17:23:59
- Zuletzt bearbeitet 08.07.2025 19:14:14
Stack-based buffer overflow in Windows Telephony Service allows an unauthorized attacker to execute code over a network.