CVE-2025-26648
- EPSS 0.57%
- Veröffentlicht 08.04.2025 17:23:47
- Zuletzt bearbeitet 10.07.2025 15:58:18
Sensitive data storage in improperly locked memory in Windows Kernel allows an authorized attacker to elevate privileges locally.
CVE-2025-26641
- EPSS 44.42%
- Veröffentlicht 08.04.2025 17:23:46
- Zuletzt bearbeitet 10.07.2025 15:55:55
Uncontrolled resource consumption in Windows Cryptographic Services allows an unauthorized attacker to deny service over a network.
CVE-2025-21221
- EPSS 0.73%
- Veröffentlicht 08.04.2025 17:23:39
- Zuletzt bearbeitet 10.07.2025 15:54:09
Heap-based buffer overflow in Windows Telephony Service allows an unauthorized attacker to execute code over a network.
CVE-2025-21222
- EPSS 0.73%
- Veröffentlicht 08.04.2025 17:23:39
- Zuletzt bearbeitet 03.07.2025 13:17:51
Heap-based buffer overflow in Windows Telephony Service allows an unauthorized attacker to execute code over a network.
CVE-2025-21204
- EPSS 7.33%
- Veröffentlicht 08.04.2025 17:23:38
- Zuletzt bearbeitet 09.07.2025 16:41:26
Improper link resolution before file access ('link following') in Windows Update Stack allows an authorized attacker to elevate privileges locally.
CVE-2025-21203
- EPSS 1.53%
- Veröffentlicht 08.04.2025 17:23:37
- Zuletzt bearbeitet 10.07.2025 15:52:59
Buffer over-read in Windows Routing and Remote Access Service (RRAS) allows an unauthorized attacker to disclose information over a network.
CVE-2025-21205
- EPSS 0.73%
- Veröffentlicht 08.04.2025 17:23:37
- Zuletzt bearbeitet 10.07.2025 15:53:24
Heap-based buffer overflow in Windows Telephony Service allows an unauthorized attacker to execute code over a network.
- EPSS 0.2%
- Veröffentlicht 08.04.2025 17:23:36
- Zuletzt bearbeitet 07.07.2025 18:57:42
Time-of-check time-of-use (toctou) race condition in Windows Local Security Authority (LSA) allows an authorized attacker to elevate privileges locally.
CVE-2025-21197
- EPSS 1.62%
- Veröffentlicht 08.04.2025 17:23:36
- Zuletzt bearbeitet 10.07.2025 15:52:05
Improper access control in Windows NTFS allows an authorized attacker to disclose file path information under a folder where the attacker doesn't have permission to list content.
CVE-2025-29824
- EPSS 0.83%
- Veröffentlicht 08.04.2025 17:23:34
- Zuletzt bearbeitet 27.10.2025 17:14:21
Use after free in Windows Common Log File System Driver allows an authorized attacker to elevate privileges locally.