CVE-2025-27738
- EPSS 0.12%
- Published 08.04.2025 17:24:11
- Last modified 10.07.2025 15:47:42
Improper access control in Windows Resilient File System (ReFS) allows an authorized attacker to disclose information over a network.
CVE-2025-27737
- EPSS 0.08%
- Published 08.04.2025 17:24:10
- Last modified 10.07.2025 15:46:02
Improper input validation in Windows Security Zone Mapping allows an unauthorized attacker to bypass a security feature locally.
- EPSS 0.03%
- Published 08.04.2025 17:24:08
- Last modified 08.07.2025 17:10:00
Sensitive data storage in improperly locked memory in Windows Win32K - GRFX allows an authorized attacker to elevate privileges locally.
CVE-2025-27733
- EPSS 0.06%
- Published 08.04.2025 17:24:08
- Last modified 10.07.2025 15:41:32
Out-of-bounds read in Windows NTFS allows an unauthorized attacker to elevate privileges locally.
CVE-2025-27727
- EPSS 0.17%
- Published 08.04.2025 17:24:05
- Last modified 08.07.2025 16:28:26
Improper link resolution before file access ('link following') in Windows Installer allows an authorized attacker to elevate privileges locally.
CVE-2025-27486
- EPSS 8.67%
- Published 08.04.2025 17:24:02
- Last modified 08.07.2025 17:14:17
Uncontrolled resource consumption in Windows Standards-Based Storage Management Service allows an unauthorized attacker to deny service over a network.
- EPSS 0.21%
- Published 08.04.2025 17:24:01
- Last modified 07.07.2025 18:25:39
Heap-based buffer overflow in Remote Desktop Client allows an authorized attacker to execute code over a network.
CVE-2025-27483
- EPSS 0.06%
- Published 08.04.2025 17:24:00
- Last modified 08.07.2025 19:14:56
Out-of-bounds read in Windows NTFS allows an unauthorized attacker to elevate privileges locally.
CVE-2025-27481
- EPSS 0.07%
- Published 08.04.2025 17:23:59
- Last modified 08.07.2025 19:14:14
Stack-based buffer overflow in Windows Telephony Service allows an unauthorized attacker to execute code over a network.
CVE-2025-27480
- EPSS 0.13%
- Published 08.04.2025 17:23:58
- Last modified 08.07.2025 19:13:43
Use after free in Remote Desktop Gateway Service allows an unauthorized attacker to execute code over a network.