Search
Search Results (314266 CVEs found)
CVE | Vendors | Products | Updated | CVSS v3.1 |
---|---|---|---|---|
CVE-2025-20717 | 2025-10-15 | 7.8 High | ||
In wlan AP driver, there is a possible out of bounds write due to an incorrect bounds check. This could lead to local escalation of privilege if a malicious actor has already obtained the System privilege. User interaction is not needed for exploitation. Patch ID: WCNCR00419946; Issue ID: MSV-3582. | ||||
CVE-2025-59230 | 2025-10-15 | 7.8 High | ||
Improper access control in Windows Remote Access Connection Manager allows an authorized attacker to elevate privileges locally. | ||||
CVE-2025-59246 | 1 Microsoft | 1 Entra Id | 2025-10-15 | 9.8 Critical |
Azure Entra ID Elevation of Privilege Vulnerability | ||||
CVE-2025-59218 | 1 Microsoft | 1 Entra Id | 2025-10-15 | 9.6 Critical |
Azure Entra ID Elevation of Privilege Vulnerability | ||||
CVE-2025-59223 | 2025-10-15 | 7.8 High | ||
Use after free in Microsoft Office Excel allows an unauthorized attacker to execute code locally. | ||||
CVE-2025-59225 | 2025-10-15 | 7.8 High | ||
Use after free in Microsoft Office Excel allows an unauthorized attacker to execute code locally. | ||||
CVE-2025-59233 | 2025-10-15 | 7.8 High | ||
Access of resource using incompatible type ('type confusion') in Microsoft Office Excel allows an unauthorized attacker to execute code locally. | ||||
CVE-2025-59231 | 2025-10-15 | 7.8 High | ||
Access of resource using incompatible type ('type confusion') in Microsoft Office Excel allows an unauthorized attacker to execute code locally. | ||||
CVE-2025-59243 | 2025-10-15 | 7.8 High | ||
Use after free in Microsoft Office Excel allows an unauthorized attacker to execute code locally. | ||||
CVE-2025-59236 | 2025-10-15 | 8.4 High | ||
Use after free in Microsoft Office Excel allows an unauthorized attacker to execute code locally. | ||||
CVE-2025-59249 | 2025-10-15 | 8.8 High | ||
Weak authentication in Microsoft Exchange Server allows an authorized attacker to elevate privileges over a network. | ||||
CVE-2025-53782 | 2025-10-15 | 8.4 High | ||
Incorrect implementation of authentication algorithm in Microsoft Exchange Server allows an unauthorized attacker to elevate privileges locally. | ||||
CVE-2025-59227 | 2025-10-15 | 7.8 High | ||
Use after free in Microsoft Office allows an unauthorized attacker to execute code locally. | ||||
CVE-2025-59234 | 2025-10-15 | 7.8 High | ||
Use after free in Microsoft Office allows an unauthorized attacker to execute code locally. | ||||
CVE-2025-59226 | 2025-10-15 | 7.8 High | ||
Use after free in Microsoft Office Visio allows an unauthorized attacker to execute code locally. | ||||
CVE-2025-59238 | 2025-10-15 | 7.8 High | ||
Use after free in Microsoft Office PowerPoint allows an unauthorized attacker to execute code locally. | ||||
CVE-2025-59228 | 2025-10-15 | 8.8 High | ||
Improper input validation in Microsoft Office SharePoint allows an authorized attacker to execute code over a network. | ||||
CVE-2025-59237 | 2025-10-15 | 8.8 High | ||
Deserialization of untrusted data in Microsoft Office SharePoint allows an authorized attacker to execute code over a network. | ||||
CVE-2025-59222 | 2025-10-15 | 7.8 High | ||
Use after free in Microsoft Office Word allows an unauthorized attacker to execute code locally. | ||||
CVE-2025-59221 | 2025-10-15 | 7 High | ||
Use after free in Microsoft Office Word allows an unauthorized attacker to execute code locally. |