CVE-2025-24996
- EPSS 0.24%
- Published 11.03.2025 16:59:03
- Last modified 03.07.2025 17:14:06
External control of file name or path in Windows NTLM allows an unauthorized attacker to perform spoofing over a network.
CVE-2025-24995
- EPSS 0.14%
- Published 11.03.2025 16:59:02
- Last modified 03.07.2025 17:19:40
Heap-based buffer overflow in Kernel Streaming WOW Thunk Service Driver allows an authorized attacker to elevate privileges locally.
CVE-2025-21180
- EPSS 0.17%
- Published 11.03.2025 16:59:01
- Last modified 03.07.2025 15:04:03
Heap-based buffer overflow in Windows exFAT File System allows an unauthorized attacker to execute code locally.
CVE-2025-24987
- EPSS 0.16%
- Published 11.03.2025 16:59:00
- Last modified 07.07.2025 17:33:06
Out-of-bounds read in Windows USB Video Driver allows an authorized attacker to elevate privileges with a physical attack.
CVE-2025-24044
- EPSS 0.14%
- Published 11.03.2025 16:58:52
- Last modified 07.07.2025 15:29:46
Use after free in Windows Win32 Kernel Subsystem allows an authorized attacker to elevate privileges locally.
CVE-2025-24035
- EPSS 0.36%
- Published 11.03.2025 16:58:51
- Last modified 03.07.2025 13:54:34
Sensitive data storage in improperly locked memory in Windows Remote Desktop Services allows an unauthorized attacker to execute code over a network.
CVE-2025-26634
- EPSS 0.24%
- Published 11.03.2025 16:50:49
- Last modified 03.07.2025 15:55:30
Heap-based buffer overflow in Windows Core Messaging allows an authorized attacker to elevate privileges over a network.
CVE-2024-6769
- EPSS 25.21%
- Published 26.09.2024 21:15:07
- Last modified 29.08.2025 21:15:35
A DLL Hijacking caused by drive remapping combined with a poisoning of the activation cache in Microsoft Windows 10, Windows 11, Windows Server 2016, Windows Server 2019, and Windows Server 2022 allows a malicious authenticated attacker to elevate fr...
CVE-2024-6768
- EPSS 21.93%
- Published 12.08.2024 19:15:17
- Last modified 15.09.2025 18:15:36
A Denial of Service in CLFS.sys in Microsoft Windows 10, Windows 11, Windows Server 2016, Windows Server 2019, and Windows Server 2022 allows a malicious authenticated low-privilege user to cause a Blue Screen of Death via a forced call to the KeBugC...
CVE-2023-44216
- EPSS 0.49%
- Published 27.09.2023 15:19:39
- Last modified 21.11.2024 08:25:27
PVRIC (PowerVR Image Compression) on Imagination 2018 and later GPU devices offers software-transparent compression that enables cross-origin pixel-stealing attacks against feTurbulence and feBlend in the SVG Filter specification, aka a GPU.zip issue...