- EPSS 0.06%
- Published 08.07.2025 16:57:03
- Last modified 14.07.2025 17:21:11
Concurrent execution using shared resource with improper synchronization ('race condition') in Microsoft Input Method Editor (IME) allows an authorized attacker to elevate privileges over a network.
CVE-2025-47971
- EPSS 0.08%
- Published 08.07.2025 16:57:02
- Last modified 14.07.2025 17:29:00
Buffer over-read in Virtual Hard Disk (VHDX) allows an unauthorized attacker to elevate privileges locally.
CVE-2025-47159
- EPSS 0.09%
- Published 08.07.2025 16:57:00
- Last modified 14.07.2025 17:30:26
Protection mechanism failure in Windows Virtualization-Based Security (VBS) Enclave allows an authorized attacker to elevate privileges locally.
CVE-2025-33070
- EPSS 0.21%
- Published 10.06.2025 17:02:35
- Last modified 08.07.2025 15:04:13
Use of uninitialized resource in Windows Netlogon allows an unauthorized attacker to elevate privileges over a network.
CVE-2025-33073
- EPSS 4.28%
- Published 10.06.2025 17:02:35
- Last modified 15.09.2025 19:15:35
Improper access control in Windows SMB allows an authorized attacker to elevate privileges over a network.
CVE-2025-33056
- EPSS 0.14%
- Published 10.06.2025 17:02:33
- Last modified 10.07.2025 16:03:28
Improper access control in Microsoft Local Security Authority Server (lsasrv) allows an unauthorized attacker to deny service over a network.
CVE-2025-33057
- EPSS 0.22%
- Published 10.06.2025 17:02:33
- Last modified 10.07.2025 16:03:16
Null pointer dereference in Windows Local Security Authority (LSA) allows an authorized attacker to deny service over a network.
CVE-2025-33055
- EPSS 0.06%
- Published 10.06.2025 17:02:32
- Last modified 08.07.2025 16:21:47
Out-of-bounds read in Windows Storage Management Provider allows an authorized attacker to disclose information locally.
CVE-2025-33052
- EPSS 0.14%
- Published 10.06.2025 17:02:31
- Last modified 10.07.2025 16:16:15
Use of uninitialized resource in Windows DWM Core Library allows an authorized attacker to disclose information locally.
CVE-2025-33053
- EPSS 24.57%
- Published 10.06.2025 17:02:31
- Last modified 16.09.2025 14:21:01
External control of file name or path in Internet Shortcut Files allows an unauthorized attacker to execute code over a network.