CVE-2025-48813
- EPSS 0.02%
- Veröffentlicht 14.10.2025 17:00:53
- Zuletzt bearbeitet 23.10.2025 15:48:52
Use of a key past its expiration date in Virtual Secure Mode allows an authorized attacker to perform spoofing locally.
CVE-2025-59502
- EPSS 7.26%
- Veröffentlicht 14.10.2025 17:00:53
- Zuletzt bearbeitet 22.10.2025 16:37:25
Uncontrolled resource consumption in Windows Remote Procedure Call allows an unauthorized attacker to deny service over a network.
CVE-2025-59294
- EPSS 0.05%
- Veröffentlicht 14.10.2025 17:00:51
- Zuletzt bearbeitet 22.10.2025 16:44:40
Exposure of sensitive information to an unauthorized actor in Windows Taskbar Live allows an unauthorized attacker to disclose information with a physical attack.
- EPSS 0.33%
- Veröffentlicht 14.10.2025 17:00:48
- Zuletzt bearbeitet 10.02.2026 18:16:18
Concurrent execution using shared resource with improper synchronization ('race condition') in Inbox COM Objects allows an unauthorized attacker to execute code locally.
CVE-2025-59284
- EPSS 0.04%
- Veröffentlicht 14.10.2025 17:00:48
- Zuletzt bearbeitet 27.10.2025 19:39:57
Exposure of sensitive information to an unauthorized actor in Windows NTLM allows an unauthorized attacker to perform spoofing locally.
CVE-2025-59259
- EPSS 0.17%
- Veröffentlicht 14.10.2025 17:00:45
- Zuletzt bearbeitet 20.10.2025 19:49:50
Improper validation of specified type of input in Windows Local Session Manager (LSM) allows an authorized attacker to deny service over a network.
CVE-2025-59277
- EPSS 0.08%
- Veröffentlicht 14.10.2025 17:00:45
- Zuletzt bearbeitet 27.10.2025 20:11:46
Improper validation of specified type of input in Windows Authentication Methods allows an authorized attacker to elevate privileges locally.
CVE-2025-59257
- EPSS 0.17%
- Veröffentlicht 14.10.2025 17:00:44
- Zuletzt bearbeitet 20.10.2025 19:49:05
Improper validation of specified type of input in Windows Local Session Manager (LSM) allows an authorized attacker to deny service over a network.
CVE-2025-59255
- EPSS 0.05%
- Veröffentlicht 14.10.2025 17:00:43
- Zuletzt bearbeitet 17.10.2025 15:28:45
Heap-based buffer overflow in Windows DWM Core Library allows an authorized attacker to elevate privileges locally.
CVE-2025-49708
- EPSS 0.08%
- Veröffentlicht 14.10.2025 17:00:40
- Zuletzt bearbeitet 23.10.2025 15:45:57
Use after free in Microsoft Graphics Component allows an authorized attacker to elevate privileges over a network.