Concurrent execution using shared resource with improper synchronization ('race condition') in Inbox COM Objects allows an unauthorized attacker to execute code locally.
Metrics
Affected Vendors & Products
References
History
Tue, 14 Oct 2025 20:15:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Metrics |
ssvc
|
Tue, 14 Oct 2025 17:15:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Description | Concurrent execution using shared resource with improper synchronization ('race condition') in Inbox COM Objects allows an unauthorized attacker to execute code locally. | |
Title | Internet Information Services (IIS) Inbox COM Objects (Global Memory) Remote Code Execution Vulnerability | |
Weaknesses | CWE-362 CWE-416 |
|
References |
| |
Metrics |
cvssV3_1
|

Status: PUBLISHED
Assigner: microsoft
Published:
Updated: 2025-10-14T23:55:42.424Z
Reserved: 2025-09-11T19:36:03.689Z
Link: CVE-2025-59282

Updated: 2025-10-14T19:51:24.286Z

Status : Awaiting Analysis
Published: 2025-10-14T17:16:11.110
Modified: 2025-10-14T19:35:56.913
Link: CVE-2025-59282

No data.

No data.