CVE-2025-21205
- EPSS 0.07%
- Published 08.04.2025 17:23:37
- Last modified 10.07.2025 15:53:24
Heap-based buffer overflow in Windows Telephony Service allows an unauthorized attacker to execute code over a network.
- EPSS 0.03%
- Published 08.04.2025 17:23:36
- Last modified 07.07.2025 18:57:42
Time-of-check time-of-use (toctou) race condition in Windows Local Security Authority (LSA) allows an authorized attacker to elevate privileges locally.
CVE-2025-21197
- EPSS 0.12%
- Published 08.04.2025 17:23:36
- Last modified 10.07.2025 15:52:05
Improper access control in Windows NTFS allows an authorized attacker to disclose file path information under a folder where the attacker doesn't have permission to list content.
CVE-2025-21174
- EPSS 9.77%
- Published 08.04.2025 17:23:35
- Last modified 08.07.2025 16:12:07
Uncontrolled resource consumption in Windows Standards-Based Storage Management Service allows an unauthorized attacker to deny service over a network.
CVE-2025-24073
- EPSS 0.1%
- Published 08.04.2025 17:23:35
- Last modified 03.07.2025 13:04:30
Improper input validation in Windows DWM Core Library allows an authorized attacker to elevate privileges locally.
CVE-2025-24074
- EPSS 0.1%
- Published 08.04.2025 17:23:34
- Last modified 03.07.2025 13:03:00
Improper input validation in Windows DWM Core Library allows an authorized attacker to elevate privileges locally.
CVE-2025-29824
- EPSS 0.45%
- Published 08.04.2025 17:23:34
- Last modified 14.05.2025 21:11:09
Use after free in Windows Common Log File System Driver allows an authorized attacker to elevate privileges locally.
CVE-2025-27742
- EPSS 0.05%
- Published 08.04.2025 17:23:22
- Last modified 10.07.2025 15:12:31
Out-of-bounds read in Windows NTFS allows an unauthorized attacker to disclose information locally.
CVE-2025-27741
- EPSS 0.06%
- Published 08.04.2025 17:23:21
- Last modified 10.07.2025 15:11:22
Out-of-bounds read in Windows NTFS allows an unauthorized attacker to elevate privileges locally.
CVE-2025-27479
- EPSS 11.33%
- Published 08.04.2025 17:23:20
- Last modified 08.07.2025 19:13:08
Insufficient resource pool in Windows Kerberos allows an unauthorized attacker to deny service over a network.